<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>cryptohash.com &#187; Encryption</title>
	<atom:link href="http://www.cryptohash.com/index.php/tag/encryption/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.cryptohash.com</link>
	<description></description>
	<lastBuildDate>Mon, 22 Feb 2010 07:50:03 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Your Virtual TrueCrypt Vault</title>
		<link>http://www.cryptohash.com/index.php/2010/01/your-virtual-truecrypt-vault/</link>
		<comments>http://www.cryptohash.com/index.php/2010/01/your-virtual-truecrypt-vault/#comments</comments>
		<pubDate>Sun, 31 Jan 2010 13:21:24 +0000</pubDate>
		<dc:creator>CryptoHash</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Software]]></category>
		<category><![CDATA[Encryption]]></category>
		<category><![CDATA[Microsoft Windows]]></category>
		<category><![CDATA[TrueCrypt]]></category>
		<category><![CDATA[Virtual PC]]></category>

		<guid isPermaLink="false">http://www.cryptohash.com/?p=193</guid>
		<description><![CDATA[
These days there are plenty of reasons to have a second computer to do all those technologically &#8220;dangerous&#8221; tasks that could compromise a computer&#8217;s operating system integrity.
You might be downloading new software, either legally or illegally, which could contain spyware or viruses that could cause your PC or Mac to grind to a halt or [...]]]></description>
			<content:encoded><![CDATA[<p><img class="size-full wp-image-234 alignright" style="border: 0px;" title="Dirty Little Secret" src="http://www.cryptohash.com/wp-content/uploads/2010/01/dirty-little-secret.png" alt="" width="177" height="132" /></p>
<p>These days there are plenty of reasons to have a second computer to do all those technologically &#8220;dangerous&#8221; tasks that could compromise a computer&#8217;s operating system integrity.</p>
<p>You might be downloading new software, either legally or illegally, which could contain spyware or viruses that could cause your PC or Mac to grind to a halt or leak personal and financial information.</p>
<p>Personal privacy is also another good reason for second computer, especially when you have family members or work colleges accessing your computer. Nobody needs to know about the tell-tale novel you are writing or the &#8220;special interest&#8221; websites you like to visit and download software or media from.</p>
<p>Coming to your rescue are two unlikely partners that, working together, can provide you with a little piece of mind: <a href="http://www.microsoft.com/windows" target="_blank">Microsoft Windows</a> and <a href="http://truecrypt.org" target="_blank">TrueCrypt</a>.</p>
<h4>Virtually &#8220;Windows&#8221;</h4>
<p>Microsoft have been providing their users with some fairly reliable and free virtualisation technology for desktop machines called <a href="http://www.microsoft.com/virtual-pc" target="_blank">Virtual PC</a>. With the release of <a href="http://www.microsoft.com/windows" target="_blank">Windows 7</a>, users can now download a free copy of <a href="http://www.microsoft.com/windowsxp" target="_blank">Windows XP</a> (or install your own copy of any Windows version) and run their &#8220;legacy&#8221; applications in a virtual environment hosted by your laptop or desktop.</p>
<p>All Windows <em>virtual machines</em> save their operating system and user data within a <em>virtual hard drive</em> container. This virtual drive is stored as a single [large] file on your host machine, much like a Zip or RAR archive &#8230;</p>
<p>This means that you can test out new or dubious software in a protected, virtual environment that doesn&#8217;t effect your desktop environment. If there is a problem then you can simply delete the virtual image and copy in a new virtual operating system image to start again.</p>
<h4>A virtual life for the average user &#8230;</h4>
<p>Traditionally organisations have used virtual environments to test their software under controlled conditions (usually with <em>Virtual Server</em> or <em>Hyper-V</em>), but for a regular user with a few odds and ends to hide a <em>virtual machine</em> can help then lead a relatively secret <em>virtual life</em>. <span id="more-193"></span></p>
<p>Just imagine having another virtual computer, hidden within your desktop, that allows you roam the internet, work on documents and download files without allowing other people or family members to access it. Even better, you can copy your virtual computer&#8217;s <em>virtual hard drive</em> &#8220;file&#8221; to any other computer and use it &#8230; In essence you can take your virtual computer to work and home again, all on a USB drive or key.</p>
<h4>Opening your virtual can of worms &#8230;</h4>
<p>&#8230; is not what you want people to do. Within your new virtual machine you might want your secrets or your private work hidden from prying eyes. Simply because your using a <em>virtual computer</em> doesn&#8217;t mean someone can&#8217;t mount your <em>virtual hard drive</em> container and browse it like it was a USB drive they found on the street.</p>
<p>With a little Googling, you&#8217;ll probably realise that the average user&#8217;s operating system (Mac users included) can have their login screen security bypassed and data pried from their hard drives with a screwdriver and an IDE/SATA drive cable. Someone may not be able to log into you virtual machine but, with a little bit of knowledge, they could examine the virtual operating system to see what you&#8217;ve been up to and copy your files.</p>
<p>Your desktop computer can suffer from similar attacks so it would make sense to apply &#8220;real&#8221; computer privacy solutions to your virtual world. In one word: &#8220;Encryption&#8221;.</p>
<h4>Disk Encryption &#8230; Physical and Virtual!</h4>
<p><a href="http://www.truecrypt.org"><img class="alignright size-full wp-image-209" style="border: 0px;" title="TrueCrypt" src="http://www.cryptohash.com/wp-content/uploads/2010/01/truecrypt-logo.png" alt="" width="48" height="72" /></a> Without going into the numerous encryption options available, <a href="http://www.truecrypt.org" target="_blank">TrueCrypt</a> presents the best of many worlds. TrueCrypt is <em>free</em>, an <em>open source</em>, has a huge <em>community</em> following, provides whole <em>disk encryption</em> and supports AES and other cryptographically strong encryption algorithms. More importantly, we can TrueCrypt&#8217;s disk encryption with our Windows virtual machine.</p>
<h4>Setting up TrueCrypt with Disk Encryption</h4>
<p>There is plenty of documentation available via Googling and on the TrueCrypt website on how to enable disk encryption but the basic flow to get it up and running on your <em>virtual machine</em> is as follows:</p>
<ul>
<li>Log into your Windows virtual machine as a user with <em>Administrator</em> privledges.</li>
<li>Download the latest version of <em>TrueCrypt</em> installer package from their website (<a href="http://www.truecrypt.org" target="_blank">www.truecrypt.org</a>).</li>
<li>Launch the package and install as you would any other program.</li>
<li>Run <em>TrueCrypt</em> and select the &#8220;Encrypt System/Partition Drive&#8221; from the &#8220;System&#8221; menu.</li>
</ul>
<p style="text-align: center;"><img class="size-full wp-image-218  aligncenter" style="border: 0px;" title="TrueCrypt Disk Encryption" src="http://www.cryptohash.com/wp-content/uploads/2010/01/truecrypt-encrypt.png" alt="" width="320" height="246" /></p>
<p>From there you should be presented with a wizard to select your <em>encryption algorithm</em>, your <em>pass-phrase</em> and to create a <em>recovery disk</em>. TrueCrypt won&#8217;t let you encrypt your disk/partition without creating a recovery disk, just in case you forget you <em>pass-phrase</em> &#8230;</p>
<p style="text-align: center;"><img class="size-full wp-image-215  aligncenter" style="border: 0px;" title="TrueCrypt Installation" src="http://www.cryptohash.com/wp-content/uploads/2010/01/truecrypt-screen.png" alt="" width="455" height="276" /></p>
<p>Once you have memorised your pass-phrase, <strong><span style="color: #993300;">DESTROY THE TRUECRYPT RECOVERY DISK</span></strong>! If your recovery disk is laying around then it won&#8217;t matter how strong you <em>pass-phrase</em> was because anybody (family, work colleges or law-enforcement) can pop it into an optical drive then decrypt and access your operating system &#8230; Which leads us back to one of our initial problems.</p>
<p>For a YouTube tutorial, check out <a href="http://www.youtube.com/watch?v=Slh31sKHP5I" target="_blank">this video</a>.</p>
<h4>The TrueCrypt Bootloader</h4>
<p>Once you&#8217;ve been through TrueCrypt&#8217;s wizard and encrypted virtual machine&#8217;s partition, everything should appear normal. The only major difference you&#8217;ll notice is that when you start your virtual machine, you&#8217;ll be presented with a TrueCrypt <em>boot screen </em>to enter your secure <em>pass-phrase</em>. Get your pass-phrase correct and you log into windows, run your applications and you do what you normally do.</p>
<p style="text-align: center;"><img class="size-full wp-image-222    aligncenter" style="border: 4px solid black;" title="TrueCrypt Boot Loader" src="http://www.cryptohash.com/wp-content/uploads/2010/01/truecrypt-boot.gif" alt="" width="389" height="174" /></p>
<p style="text-align: left;">Forget your <em>pass-phrase</em> wrong and you are shite outta luck &#8230; unless you kept your TrueCrypt recovery disk.</p>
<h4>Overall results?</h4>
<p style="text-align: left;">No security solution is perfect, especially when there are so many factors we can&#8217;t control. From keystroke loggers to law enforcement monitoring your internet access from home and the IT department monitoring your internet access from work, we can&#8217;t control everything.</p>
<p style="text-align: left;">With the basic combination of <em>TrueCrypt</em> and <em>Virtual PC </em>you can control the storage of your data and hide your activities to a certain degree for both casual and persistent snoopers.</p>
<p style="text-align: left;">Remember, when you know you are in trouble just <em>forget your password</em> and <em>delete your virtual hard drive</em> file. Even if some authority was able to recover the deleted virtual machine file, they still need your password to get at the operating system and it&#8217;s data. Those really loooong <em>pass-phrases</em> are all to easy to forget sometimes, especially when you are under stress.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.cryptohash.com/index.php/2010/01/your-virtual-truecrypt-vault/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
	</channel>
</rss>

