Christian Pietsch 🍑 · @chpietsch
3659 followers · 12076 posts · Server digitalcourage.social

@mjg59

Thank you for sounding the alert!

I identified a minor issue with your otherwise nice explanation: According to my sources (man cryptsetup, ), all varieties are memory-hard. RFC 9106 is even titled “Argon2 Memory-Hard Function for Password Hashing and Proof-of-Work Applications”.

However, given that there are known attacks against , it seems wise to use instead. It is also what is recommended in the RFC.

As a user, I just checked the state of affairs there:

The cryptsetup that comes with QubesOS 3.x used , and those who did an in-place upgrade to 4.x still have that unless they converted to manually (as detailed in the migration guide).

The cryptsetup in QubesOS 4.x uses , but it still defaults to unfortunately.

#luks2 #luks1 #qubesos #Argon2id #argon2i #argon2 #rfc9106

Last updated 1 year ago