Encrypting flash drives with UsbCryptFormat
|
How the System Works
USB storage sticks and SD cards commonly come equipped with filesystems from the Microsoft world. Depending on the size of the storage media, this will be FAT16, FAT32, exFAT, or NTFS. These filesystems offer the greatest possible compatibility with various devices and operating systems. Thus, the first task for UsbCryptFormat is to create a new partition where the encrypted filesystem will reside on each external storage device that is to be encrypted.
To start the encryption process, you should insert the storage device into the computer. When it appears in the system, you should start UsbCryptFormat with administrative rights. The software will open a window that lists all data storage devices that are connected and mounted on the computer system. From this list, select the device that you want to encrypt and click OK . UsbCryptFormat will then issue an explicit warning advising the user that all data saved on the medium will be lost during formatting (Figure 1).
If, for some reason, you selected the wrong device, you can end the program with a click on No . Otherwise, you should continue with yes and UsbCryptFormat will create a new partition on the data medium. The next dialog is for entering the password you want to use with the encrypted data medium. You should then enter the password for a second time in the subsequent security dialog.
In the next window, UsbCryptFormat will ask whether you want to completely overwrite the removable data medium with randomly generated data. You should definitely answer yes to this question because old data can be reconstructed through manual partitioning of the storage device. (Figure 2).
Reformatting without overwriting the old data beforehand will change only the partition table and not touch the existing data. Remember that it may take considerable time to overwrite old data depending on the size of the data medium. However, it just takes a few minutes to overwrite the data and set up the new filesystem on the customary 16 or 32GB USB sticks and SD cards.
UsbCryptFormat has an animated status bar that shows the progress of this process. A closing dialog indicates that you will be asked for the encryption password the next time you connect the storage medium to your system. Then, with a click on OK , UsbCryptFormat ends.
Uncomplicated
In practice, integrating the encrypted data device works reliably. Simply plug in the USB stick or the external hard drive and then correctly answer the password request. It is well known that storage media cannot simply be pulled out of the system. Instead, you should use the corresponding functions on your desktop environment or enter the umount command from the command line. Formatting tools like cfdisk or the Ubuntu disk manager show that the partitions installed on the storage medium are encrypted (Figure 3).
If you are thinking about reformatting and encrypting a data storage device that has already been encrypted with UsbCryptFormat, you will first need to partition the device with partitioning software. This is done by erasing the existing partition table using cfdisk or fdisk and then setting up a new partition that covers all of the storage space of the device. You won't have to necessarily format it immediately. Instead, you can once again install an encrypted filesystem using UsbCryptFormat.
« Previous 1 2 3 Next »
Buy this article as PDF
Pages: 2
(incl. VAT)