[Openstack] Encrypted virtual machines

Bryan D. Payne bdpayne at acm.org
Thu Apr 26 18:01:34 UTC 2012


> Data left on broken disks would be unreadable. --> You don't have to worry
> about data destruction before selling/throwing out your disks.

I can certainly see the goal here.  But this may be harder than you
think.  For example, if you encrypt the disk image, then launch the
VM, are you sure that any unencrypted data is NOT being written back
to the drive (e.g., through the host OS swap)?

-bryan




More information about the Openstack mailing list