[OLPC Security] wetware issues - brainstorming

Ivan Krstić krstic at solarsail.hcs.harvard.edu
Sun Feb 11 19:05:16 EST 2007


Carl-Daniel Hailfinger wrote:
> OK, and how does this fit with the concept of unencrypted primary
> backups? 

Violating privacy by accessing the backups is a lot more involved than
reviewing logs made by big-brother software on your own machine, at the
push of a button. Short of stealing the server's hard drive, the only
easy way to access the backups is to convince the teacher to authorize
another laptop to access them. Presumably that's enough of a hassle that
it would not be exactly done every day.

What's more, while we likely won't have time to implement P_PASSWORD for
gen1, we might have time to implement password protection for individual
files (or a lockbox of some kind).

-- 
Ivan Krstić <krstic at solarsail.hcs.harvard.edu> | GPG: 0x147C722D


More information about the Security mailing list