Go Back  FlyerTalk Forums > Travel&Dining > Travel Technology
Reload this Page >

Encrypting data on notebook

Community
Wiki Posts
Search

Encrypting data on notebook

Thread Tools
 
Search this Thread
 
Old Apr 11, 2006 | 10:00 am
  #1  
Original Poster
10 Countries Visited
20 Countries Visited
30 Countries Visited
All eyes on you!
 
Join Date: Sep 1999
Location: Charlotte, NC USA
Programs: AA EXP; Marriott Lifetime / Annual Titanium; Massively Missing Starwood
Posts: 5,445
Encrypting data on notebook

I am considering encrypting specific files / folders on my notebook, but don't want to get myself in a jam I cannot get out of. For those of you that have (or decided not to), what are the things to be careful of if there are any at all? If you've opted not to encrypt, why not?
dingo is offline  
Old Apr 11, 2006 | 12:11 pm
  #2  
 
Join Date: Jun 2005
Location: Tri-State Area
Posts: 4,728
Pgp

Originally Posted by dingo
I am considering encrypting specific files / folders on my notebook, but don't want to get myself in a jam I cannot get out of. For those of you that have (or decided not to), what are the things to be careful of if there are any at all? If you've opted not to encrypt, why not?
Google "PGP", get the free application (i.e. not professional/enterprise version) and you're all set. Takes a little time to read instructions, etc.

Works for iPods also...
dtsm is offline  
Old Apr 11, 2006 | 3:40 pm
  #3  
20 Years on Site
 
Join Date: Jan 2005
Programs: Dirt
Posts: 949
I highly recommend TrueCrypt . It can create an encrypted partition as a file or take over the whole disk such as a USB flash drive. It is straightfoward to use. Mount the encrypted partition on drive letter and enter your password. Any files saved to that drive is encrypted. Unmount the partition when done.

An alternative is the encrypted file system built-in Windows XP or 2000. Encrypting a file or directory is as easy as right click on the file and check "Encrypt this file" in the detail attribute window. The user needs to be diligent on backing up of his keys. If the users' profile got corrupted and keys were not backed up, the files are nearly impossible to recover. I have seen this happen...
msb0b is offline  
Old Apr 11, 2006 | 4:13 pm
  #4  
 
Join Date: Mar 2006
Location: Concord, CA
Programs: AA PLT, MileagePlus
Posts: 2,617
Originally Posted by dingo
I am considering encrypting specific files / folders on my notebook, but don't want to get myself in a jam I cannot get out of. For those of you that have (or decided not to), what are the things to be careful of if there are any at all? If you've opted not to encrypt, why not?
Is there a specific reason (appart from theft) that is prompting you to encrypt certain files? Do you find that you leave your laptop turned on and unattended for some time?

If none of the above is true, the best thing, and also easiest, would be to set up a BIOS password. Not easily breakable, unless the perpetrator, after digging up the diagrams from some underground online forum, was able to put together a little PCB with various diodes and cathodes mostly obtainable through your local Radio Shack.
DEVIS is offline  
Old Apr 11, 2006 | 5:02 pm
  #5  
 
Join Date: Sep 2003
Location: Rockville MD USA
Programs: UA former 1K MM
Posts: 2,184
If you have any data valuable enough to require encryption (as opposed to using the Windows XP user password at startup), then you should be hiring a data security expert as a consultant, rather than asking for advice from random amateurs like me.
redburgundy is offline  
Old Apr 11, 2006 | 5:30 pm
  #6  
 
Join Date: Aug 2005
Location: SNA Rwy 20L
Programs: QF Silver
Posts: 703
I'd second Msb0b's recommendation of using Truecrypt. When travelling I carry a list of personal contacts, credit card info & just stuff I wouldn't like to be made public knowledge if the laptop were stolen. I like the fact that after you enter your strong password once Truecrypt becomes unobtrusive and you just use your encrypted drive as if it were a native hard disk. The BIOS password is nice in the fact that it does make it more difficult to boot your computer, but it does nothing to protect the data...if you remove the hard drive and put it in an external USB enclosure (or another computer) everthing is visible.

Just some random amateur musings...YMMV
Zarf4 is offline  
Old Apr 11, 2006 | 6:05 pm
  #7  
Original Poster
10 Countries Visited
20 Countries Visited
30 Countries Visited
All eyes on you!
 
Join Date: Sep 1999
Location: Charlotte, NC USA
Programs: AA EXP; Marriott Lifetime / Annual Titanium; Massively Missing Starwood
Posts: 5,445
I just have a lot of data, personal and work, on the machine that I'd not want to be accessed should my pc get lost or stolen.
dingo is offline  
Old Apr 11, 2006 | 7:04 pm
  #8  
All eyes on you!
20 Years on Site
 
Join Date: Apr 2003
Location: RDM
Programs: UA General Member
Posts: 1,247
I use the commercial version of PGP called PGP Desktop Professional. Lots of features, but most important (to me) is whole disk encryption. If you get your hands on my laptop's disk drive, good luck decrypting any of it.

Of course, if you forget your password, you are well and truly screwed.
winkydink is offline  
Old Apr 11, 2006 | 7:09 pm
  #9  
 
Join Date: Mar 2006
Location: Concord, CA
Programs: AA PLT, MileagePlus
Posts: 2,617
Originally Posted by dingo
I just have a lot of data, personal and work, on the machine that I'd not want to be accessed should my pc get lost or stolen.
Commercial encryption can be broken a lot easier than a BIOS password.
But if in fact your laptop is stolen, you will at least have the sadisfaction that the user won't even be able to go past the BIOS password screen. Essentially, that computer is one huge paperweight.
I say put a system BIOS password and a hard drive BIOS password. Make them different. The hard drive retains the password even if it is moved to another computer, and even if the actual PCB of it is changed. In this manner the hard drive is virtually not accessible.

I work in the IT department of a major consulting firm and security is huge for us. The question was raised whether HDD passwords could be broken. I tried tirelessly, whatever I knew, whatever I could think of and whatever I found on the net... no love. The password was not broken.
DEVIS is offline  
Old Apr 11, 2006 | 7:58 pm
  #10  
 
Join Date: Apr 2006
Posts: 55
BIOS passwords can be defeated by removing the HD and attaching it to a different PC. I also heartily recommend using a USB/thumb drive with Truecrypt. I use free suite of USB apps available here that includes Truecrypt and many other freeware apps.

.
gilkman is offline  
Old Apr 11, 2006 | 8:43 pm
  #11  
 
Join Date: Feb 2005
Location: MSN
Posts: 701
And remember that encrypting single files might not be enough. Depending on how the software is designed, and the persistance of the thief, temp files may be available that are unencrypted. That is why whole disk encryption is stronger.

Edit: remember, even more important than encryption is physical security-if the attacker can't get the laptop, no amount of hacking/cracking technology will help them (assuming of course that you have firewall, antivirus, etc.)
dizzy is offline  
Old Apr 11, 2006 | 9:16 pm
  #12  
FlyerTalk Evangelist
Conversation Starter
All eyes on you!
25 Years on Site
 
Join Date: May 2000
Location: أمريكا
Posts: 26,931
Originally Posted by DEVIS
If none of the above is true, the best thing, and also easiest, would be to set up a BIOS password. Not easily breakable, unless the perpetrator, after digging up the diagrams from some underground online forum, was able to put together a little PCB with various diodes and cathodes mostly obtainable through your local Radio Shack.
Not sure about laptops, but for most desktops getting around the BIOS password is as easy as changing one jumper on the motherboard. Takes two seconds, as long as you have the computer manual to tell you which one to change to what.
Doppy is offline  
Old Apr 11, 2006 | 9:18 pm
  #13  
FlyerTalk Evangelist
Conversation Starter
All eyes on you!
25 Years on Site
 
Join Date: May 2000
Location: أمريكا
Posts: 26,931
If you are going to go the encryption route, remember that you have to keep your key and the files separate for this to be effective. So if you're going to leave your laptop in the hotel room, for example, then you've got to take the key with you, or the encryption is worthless.

Also remember to choose a good passphrase, the longer the better, the more random (don't just choose words out of the dictionary) the better.
Doppy is offline  
Old Apr 12, 2006 | 1:04 am
  #14  
FlyerTalk Evangelist
Conversation Starter
All eyes on you!
20 Years on Site
 
Join Date: Aug 2002
Location: Department of Homeland Sincerity
Programs: WN Platinum, UA 1k, AA EP, Marriott Plat
Posts: 12,319
Highly recommend TrueCrypt - free & effective!!
UALOneKPlus is offline  
Old Apr 12, 2006 | 1:26 am
  #15  
 
Join Date: Mar 2006
Location: Concord, CA
Programs: AA PLT, MileagePlus
Posts: 2,617
Originally Posted by gilkman
BIOS passwords can be defeated by removing the HD and attaching it to a different PC. I also heartily recommend using a USB/thumb drive with Truecrypt. I use free suite of USB apps available here that includes Truecrypt and many other freeware apps.

.
you add a HDD password along with it. Suddenly both laptop and hdd are unusable in the wrong hands.
DEVIS is offline  


Contact Us - Archive - Advertising - Cookie Policy - Privacy Statement - Terms of Service -

This site is owned, operated, and maintained by MH Sub I, LLC dba Internet Brands. Copyright © 2026 MH Sub I, LLC dba Internet Brands. All rights reserved. Designated trademarks are the property of their respective owners.