Windows Vista Forums
Vista Forums Home Join Vista Forums Tech Publications Windows 7 Forum Vista Tutorials Webcasts Tags

Welcome to Vista Forums we are your forum for Windows Vista help and discussion. Whether you need help or just want to post an idea you have on Vista, this is the forum for you.
Register at Vista forums...the world biggest Windows Vista resource Join Vista Forums Now

Go Back   Vista Forums > Vista Newsgroups > Vista security

Vista: Multiple Startup Keys on one USB flash drive

Update your Vista Drivers
Reply
 
Thread Tools Display Modes
Old 06-22-2006   #1 (permalink)
tavis
Guest


 

Vista: Multiple Startup Keys on one USB flash drive

If I have several startup keys (.FVE files) for different Vista machines on
one USB flash drive, how does each machine know which one is correct? Is the
filename recorded somewhere in the unencypted portion of the drive? Or does
it simple try all the possible .FVE files until it finds the lucky winner?

Thanks,

My System SpecsSystem Spec
Old 06-23-2006   #2 (permalink)
Jamie Hunter [MS]
Guest


 

Re: Vista: Multiple Startup Keys on one USB flash drive

Good question

There are a number of layers to the answer.
(1) The filename uses a GUID. Each key protector (refer to WMI interface) is
referenced by a GUID, these are the same GUID.
(2) The structure of the binary file contains both the GUID of the encrypted
volume and the GUID of the key protector.
(3) When decrypting the VMK, AES/CCM is used with 256-bit AES key. This is
an industry standard algorithm, that contains a nonce and a MAC (message
authentication check). If the startup key was wrong, then the MAC part of
the AES/CCM algorithm detects this and causes a failure.
(4) Should 1-3 fail, then the data would be decrypted incorrectly into
gibberish Thankfully 1-3 prevents (4).
-
Jamie Hunter [MS]

"tavis" <tavis@discussions.microsoft.com> wrote in message
news:8911F7D1-4300-4CFF-9421-CDF98F3ED857@microsoft.com...
> If I have several startup keys (.FVE files) for different Vista machines
> on
> one USB flash drive, how does each machine know which one is correct? Is
> the
> filename recorded somewhere in the unencypted portion of the drive? Or
> does
> it simple try all the possible .FVE files until it finds the lucky winner?
>
> Thanks,


My System SpecsSystem Spec
Old 07-11-2006   #3 (permalink)
=?Utf-8?B?dGF2aXM=?=
Guest


 

Re: Vista: Multiple Startup Keys on one USB flash drive

Thanks again, Jamie.

I must give credit to my very inquisitive and bright colleagues for these
questions.
;-)

"Jamie Hunter [MS]" wrote:

> Good question
>
> There are a number of layers to the answer.
> (1) The filename uses a GUID. Each key protector (refer to WMI interface) is
> referenced by a GUID, these are the same GUID.
> (2) The structure of the binary file contains both the GUID of the encrypted
> volume and the GUID of the key protector.
> (3) When decrypting the VMK, AES/CCM is used with 256-bit AES key. This is
> an industry standard algorithm, that contains a nonce and a MAC (message
> authentication check). If the startup key was wrong, then the MAC part of
> the AES/CCM algorithm detects this and causes a failure.
> (4) Should 1-3 fail, then the data would be decrypted incorrectly into
> gibberish Thankfully 1-3 prevents (4).
> -
> Jamie Hunter [MS]
>
> "tavis" <tavis@discussions.microsoft.com> wrote in message
> news:8911F7D1-4300-4CFF-9421-CDF98F3ED857@microsoft.com...
> > If I have several startup keys (.FVE files) for different Vista machines
> > on
> > one USB flash drive, how does each machine know which one is correct? Is
> > the
> > filename recorded somewhere in the unencypted portion of the drive? Or
> > does
> > it simple try all the possible .FVE files until it finds the lucky winner?
> >
> > Thanks,

>

My System SpecsSystem Spec
Reply
Update your Vista Drivers

Thread Tools
Display Modes



Similar Threads
Thread Thread Starter Forum Replies Last Post
Toggle Keys at Startup Brink Tutorials 2 02-11-2008 11:16 PM
Mix-up of multiple product keys JamiLeeD Vista installation & setup 2 01-13-2008 01:31 AM
Multiple Windows Systems on an USB Flash Drive Stuserver Vista installation & setup 0 06-01-2007 12:10 AM
Selecting multiple files on a flash drive Mickey Segal Vista General 0 05-23-2007 10:38 PM
Vista startup/locking issue - on multiple machines KeithP Vista General 6 11-09-2006 01:52 PM


Complimentary Industry Resources

Vista Forums has joined forces with TradePub.com to offer you a new, exciting, and entirely free professional resource. Visit http://vistax64.tradepub.com today to browse our selection of complimentary Industry magazines, white papers, webinars, podcasts, and more across 34 industry sectors. No credit cards, coupons, or promo codes required. Try it today!




Vista Forums is an independent web site and has not been authorized,
sponsored, or otherwise approved by Microsoft Corporation.
"Windows Vista", the Start Orb, and related materials are trademarks of Microsoft Corp.
© Designer Media 2005-2008

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51