[ANNOUNCE] cryptsetup 2.3.3
Milan Broz <[email protected]>
| Newsgroups | gmane.linux.kernel.device-mapper.dm-crypt |
|---|---|
| Message-ID | <[email protected]> |
The cryptsetup 2.3.3 stable release is available at
https://gitlab.com/cryptsetup/cryptsetup
Please note that release packages are located on kernel.org
https://www.kernel.org/pub/linux/utils/cryptsetup/v2.3/
Feedback and bug reports are welcomed.
Cryptsetup 2.3.3 Release Notes
==============================
Stable bug-fix release.
All users of cryptsetup 2.x should upgrade to this version.
Changes since version 2.3.2
~~~~~~~~~~~~~~~~~~~~~~~~~~~
* Fix BitLocker compatible device access that uses native 4kB sectors.
Devices formatted with storage that natively support 4096-bytes
sectors can also use this sector size for encryption units.
* Support large IV count (--iv-large-sectors) cryptsetup option
for plain device mapping.
The large IV count is supported in dm-crypt together with larger
sector encryption. It counts the Initialization Vector (IV) in
a larger sector size instead of 512-bytes sectors.
This option does not have any performance or security impact,
but it can be used for accessing incompatible existing disk images
from other systems.
Only open action with plain device type and sector size > 512 bytes
are supported.
* Fix a memory leak in BitLocker compatible handling.
* Allow EBOIV (Initialization Vector algorithm) use.
The EBOIV initialization vector is intended to be used internally
with BitLocker devices (for CBC mode). It can now be used also
outside of the BitLocker compatible code.
* Require both keyslot cipher and key size options.
If these LUKS2 keyslot parameters were not specified together,
cryptsetup silently failed.
* Update to man pages and FAQ.
_______________________________________________
dm-crypt mailing list
[email protected]
https://www.saout.de/mailman/listinfo/dm-crypt
signature.asc
(application/pgp-signature, 833 B)
-----BEGIN PGP SIGNATURE----- iQIzBAEBCAAdFiEEKikYJD/eRmSNBob52bBXe9k+mPwFAl7PixUACgkQ2bBXe9k+ mPxTgg//eULd3QOWJLdYbbQXdoXKUTg3/gTmI/dk2WAxu6AAYR4MGJ9+7YM7W7nM ZhCZt9wEAdcEidjzpOWUvECpQTH+EOuWEy63OdcZstYY7YV3K+xYD/x/4lzSISOx Yiug7eF2J8cy4hw/SPuA6h4G7oDqOuo0PaKiqLAccAXBhP5cpaA0NjSTprt7J/xF mQX5pc8BNMGTiPRkOcq3e9lXAopAAFJvC3k/UK2pNgfBQvHAxOgdPBChP7q5xmkq qDVBHC/yFpwNavWJIaRShm5qqTNqH3CUEWkpi7PKVO+/wMNFGvRwaN5A3Y3j/gNt r2PubV1cpT2GfFKsnuYzB0+naI70BJtM+mhvPISYPFYex0L4+9NhSp93K6Hr/DWP 60HH7Wu2tbFMPnDk9v+Rq3ZhRErdb1i+zapQv35Sa87QDvqmjdDXQS+N/91uzc7G 4LhTqLcYm0jvM/YojXzVHm2mJZddSLagKpfxgNqxQzdDMfyNcfYZ3qWOMMTEtpd8 NhHnTJ2rAHhH2Dx2SyMRn38sj96PEgnhtevsXp2iGc7Zmu8LBWPvyGbsmbOIjT/+ pdTOAXQbVn+hCa6VG5b5Pxp0GTIJ2t+KJ93VsiDcnWePji2KVGznTyvD+RqdeRNj TKs1YbGdXQI8qegaCBjdlFS/6G2c50gxUDqfbpl9dpaWaKlooxs= =xMGb -----END PGP SIGNATURE-----