Devora is a techological approach to switch cryptsetup password input into cryptographic keyfile input for unlocking the encrypted boot disk. Using keyfile, a more complex password input can be used without burdening the human brain memory.
Providing Alternative to Password Authentication
The problem with using cryptsetup in a hardware system, typically laptop hardware is that it forces user to remember 2 strong and human-unfriendly passwords:
- One strong password for decrypting cryptsetup encrypted disk.
- One strong password for usual user login.
The worse part is that password bank (also known as password vault or password manager) is not available during the bootloading stage. Hence, it’s down to only using a weaker, human-friendly password for cryptsetup which forms the weakest link for hardware security layer.
Alternatively, certified keys like Yubikey is a premium solution that is not affordable to everyone in the world (the price can be devastatingly high with weak currency).
Hence, Devora is set to provide a poor man solution until that individual can afford and upgrade the Devora into Yubikey solution.
Price: Free Forever
Devora is FREE (as in freedom and free beer) forever licensed under commercial friendly Apache 2.0 open source license.
ZORALab ourselves are using it extensively to ensure backward compatibility and scalable maintainability. Please enjoy!
Like it? Please feel free to visit: Official Website