Cloud වැඩ්ඩෝ 2

bulza

Well-known member
  • Apr 21, 2010
    3,986
    367
    83
    පාතාලේ
    මචන්ලා කලින් මන් thread එකක් දාල උබල මාර සප් එකක් දුන්නා cloud එක up කරගන්න..:yes::yes: Open Stack ඒක පට්ට වෑඩේ ගොඩ.. :):)


    අයෙත් හෙන අවුලක ඉන්නෙ මචන්ලා..:sorry::sorry:
    එකේ තව ප්‍රශ්න සෙට් එකක් තියනවා හෙන ගැහුවා වගේ.. :eek::eek: ගුගල් කරන්නවත් තෙරෙන් නැ බන් ඒවා. :dull::dull:

    දන්න කෙනෙක් ඉන්නවා නම් පොඩි හෙල්ප් එකක් දීපල්ලා..:baffled::baffled: ලොකු පිනක්..


    දන්න කරුවුරු හරි ඉන්නවා නම් පොඩි සප් එකක් දීහල්ලකෝ.. :baffled:

    Select and install a best File, Folder, Data, and Disk Encryption Client Software or mechanism for the Workstation’s Data (to be transferred to the Cloud) Encryption (448 bits Blowfish Military Grade crypto should be selected for data encryption or you may need to use Blowfish 448 bits with AES 256-512 bits + Whirlpool/Serpent/Twofish or 3DES (Triple Data Encryption Standard) or similar mix mode strong crypto/cypher symmetric algorithms). You must select multiple (2-3 numbers of the mixed mode stream data cipher) and mix mode cryptographic algorithms for Crypted disk container/wallet. Ex. FreeOTFE, LibreCrypt, CipherShed, VeraCrypt, Boxcryptor, AxCrypt 2, TrueCrypt, etc. (Note: The data to be transferred to the Cloud should be fully encrypted 448 bits Blowfish “Military Grade” encryption algorithm or you may also mix Blowfish 448 bits with AES (Advanced Encryption Standard) 256-512 bits encryption algorithm (heterogeneous crypto) from the Client end-nodes (on-the-fly and on-demand crypto), integrity of the encrypted data should also be preserved, and self-sign signature and digital-certificate based data (master password key-file seed) decryption method should also be developed at the client-ends. As soon as the data is encrypted with the aforesaid encryption algorithm(s), the SSH based file transfer clients should establish a connection with Cloud and transfer should be initiated upon the successful SSH client-server handshake).



    Create a highly encrypted and mountable safe wallet/disk container based on above task with the provision of multifactor strong authentication. A complex strong password (user defined with the support of free/open source tools or commercially available tools as primary (master) auth-key seed), The PIN code seed file (the Cloud administrator defined - randomly generated and saved with the support of free/open source tools as secondary auth-key seed), specific image seed file (user defined small unique photograph (24/32 bits JPEG or PNG file)), and a voice file/video seed file (user defined small unique multimedia seed clip (mp3, mp4, wma, mkv, avi, flac, wav, wmv, mov, etc). The data will be encrypted/decrypted upon entering the correct password (primary key seed), and other mandatory seed files (PIN code seed + image seed + multimedia (audio/video) seed).


    The aforesaid task number “6”, the cryptographic symmetric primary (master) auth-key seed (password) should be kept in a safe place inside each Cloud access workstation. The suggested best method is to save/store the primary (master) auth-key seed is inside a highly encrypted (DRM (Digital Rights Management)) document (Adobe PDF). Install and configure self-sign digital signature/digital certificate (DRM based) based document (document content or resources) encryption/decryption, and anti-tamper verification with the digital certificate and digital signature for this task. In a manner, only the authorized person/owner of the particular workstation with the valid PIN can decrypt the primary (master) auth-key seed (password) contained DRM encrypted PDF file. Ex. GnuPG/GPG4Win, PGP, OpenSSL, OpenPGP, etc.

    Create a super (tactical) tricky password or binary data wallet/store to store every password of this project (it is a truly problematic and difficult task for an ordinary human being to keep remember the few strong passwords/passcodes of the systems). To overcome the aforesaid human nature, it is strongly suggesting you to implement a super tricky SSO (Single Sign-On) manual method by use of Steganographic image file, or in Stego-binary file etc. Hide plain-text password inside a binary file or hide data inside an image or multimedia file with the strong complex PIN-based one-time master password. In a manner, no one easily may recover the secrets of the hidden tricky data inside the binary files out of thousands of files inside a workstation environment).


    බම්ප් පාරක් වත් දාපල්ල බන්
    :baffled::baffled:
     

    DynamiteSL

    Active member
  • Aug 12, 2012
    367
    26
    28
    මචන්ලා කලින් මන් thread එකක් දාල උබල මාර සප් එකක් දුන්නා cloud එක up කරගන්න..:yes::yes: Open Stack ඒක පට්ට වෑඩේ ගොඩ.. :):)


    අයෙත් හෙන අවුලක ඉන්නෙ මචන්ලා..:sorry::sorry:
    එකේ තව ප්‍රශ්න සෙට් එකක් තියනවා හෙන ගැහුවා වගේ.. :eek::eek: ගුගල් කරන්නවත් තෙරෙන් නැ බන් ඒවා. :dull::dull:

    දන්න කෙනෙක් ඉන්නවා නම් පොඩි හෙල්ප් එකක් දීපල්ලා..:baffled::baffled: ලොකු පිනක්..


    දන්න කරුවුරු හරි ඉන්නවා නම් පොඩි සප් එකක් දීහල්ලකෝ.. :baffled:

    Select and install a best File, Folder, Data, and Disk Encryption Client Software or mechanism for the Workstation’s Data (to be transferred to the Cloud) Encryption (448 bits Blowfish Military Grade crypto should be selected for data encryption or you may need to use Blowfish 448 bits with AES 256-512 bits + Whirlpool/Serpent/Twofish or 3DES (Triple Data Encryption Standard) or similar mix mode strong crypto/cypher symmetric algorithms). You must select multiple (2-3 numbers of the mixed mode stream data cipher) and mix mode cryptographic algorithms for Crypted disk container/wallet. Ex. FreeOTFE, LibreCrypt, CipherShed, VeraCrypt, Boxcryptor, AxCrypt 2, TrueCrypt, etc. (Note: The data to be transferred to the Cloud should be fully encrypted 448 bits Blowfish “Military Grade” encryption algorithm or you may also mix Blowfish 448 bits with AES (Advanced Encryption Standard) 256-512 bits encryption algorithm (heterogeneous crypto) from the Client end-nodes (on-the-fly and on-demand crypto), integrity of the encrypted data should also be preserved, and self-sign signature and digital-certificate based data (master password key-file seed) decryption method should also be developed at the client-ends. As soon as the data is encrypted with the aforesaid encryption algorithm(s), the SSH based file transfer clients should establish a connection with Cloud and transfer should be initiated upon the successful SSH client-server handshake).



    Create a highly encrypted and mountable safe wallet/disk container based on above task with the provision of multifactor strong authentication. A complex strong password (user defined with the support of free/open source tools or commercially available tools as primary (master) auth-key seed), The PIN code seed file (the Cloud administrator defined - randomly generated and saved with the support of free/open source tools as secondary auth-key seed), specific image seed file (user defined small unique photograph (24/32 bits JPEG or PNG file)), and a voice file/video seed file (user defined small unique multimedia seed clip (mp3, mp4, wma, mkv, avi, flac, wav, wmv, mov, etc). The data will be encrypted/decrypted upon entering the correct password (primary key seed), and other mandatory seed files (PIN code seed + image seed + multimedia (audio/video) seed).


    The aforesaid task number “6”, the cryptographic symmetric primary (master) auth-key seed (password) should be kept in a safe place inside each Cloud access workstation. The suggested best method is to save/store the primary (master) auth-key seed is inside a highly encrypted (DRM (Digital Rights Management)) document (Adobe PDF). Install and configure self-sign digital signature/digital certificate (DRM based) based document (document content or resources) encryption/decryption, and anti-tamper verification with the digital certificate and digital signature for this task. In a manner, only the authorized person/owner of the particular workstation with the valid PIN can decrypt the primary (master) auth-key seed (password) contained DRM encrypted PDF file. Ex. GnuPG/GPG4Win, PGP, OpenSSL, OpenPGP, etc.

    Create a super (tactical) tricky password or binary data wallet/store to store every password of this project (it is a truly problematic and difficult task for an ordinary human being to keep remember the few strong passwords/passcodes of the systems). To overcome the aforesaid human nature, it is strongly suggesting you to implement a super tricky SSO (Single Sign-On) manual method by use of Steganographic image file, or in Stego-binary file etc. Hide plain-text password inside a binary file or hide data inside an image or multimedia file with the strong complex PIN-based one-time master password. In a manner, no one easily may recover the secrets of the hidden tricky data inside the binary files out of thousands of files inside a workstation environment).


    බම්ප් පාරක් වත් දාපල්ල බන්
    :baffled::baffled:

    wadiya therumak nam na. therena widiyata disk encryption software ekakin (truecrypt) disk eka encrypt karala sshfs walin eka arake mount karannada koheda thiyenne
     

    bulza

    Well-known member
  • Apr 21, 2010
    3,986
    367
    83
    පාතාලේ
    wadiya therumak nam na. therena widiyata disk encryption software ekakin (truecrypt) disk eka encrypt karala sshfs walin eka arake mount karannada koheda thiyenne

    ow bro math hitnwa ehema.. next task eke tyana 1k terenwada ? image 1n password 1k haddanda tynne ? :baffled::baffled: image file 1k encrypt krla decrypt krnnd kyla htiganna be :nerd:
     

    DynamiteSL

    Active member
  • Aug 12, 2012
    367
    26
    28
    ow bro math hitnwa ehema.. next task eke tyana 1k terenwada ? image 1n password 1k haddanda tynne ? :baffled::baffled: image file 1k encrypt krla decrypt krnnd kyla htiganna be :nerd:

    truecrypt configure karaddi keyfile denna thiyenne meka balannako ethakota therei.

    https://www.truecrypt71a.com/documentation/keyfiles/

    Keyfiles: TrueCrypt volumes are normally password-protected, but for additional security you can apply a keyfile. The keyfile is hashed against the password and used to unlock the volume, so without the keyfile the volume won't be readable. Any file -- an .MP3 file, a picture, you name it -- can be used as a keyfile. This provides an additional level of protection that cannot be defeated by, for instance, a keylogger or other surveillance.
     
    Last edited:

    bulza

    Well-known member
  • Apr 21, 2010
    3,986
    367
    83
    පාතාලේ
    truecrypt configure karaddi keyfile denna thiyenne meka balannako ethakota therei.

    https://www.truecrypt71a.com/documentation/keyfiles/

    Keyfiles: TrueCrypt volumes are normally password-protected, but for additional security you can apply a keyfile. The keyfile is hashed against the password and used to unlock the volume, so without the keyfile the volume won't be readable. Any file -- an .MP3 file, a picture, you name it -- can be used as a keyfile. This provides an additional level of protection that cannot be defeated by, for instance, a keylogger or other surveillance.

    Thanks a lot :) mn balanm meka hoyala..
     

    knight11

    Active member
  • Jun 1, 2011
    586
    108
    43
    මේක assignment/ mini project එකක් ද ? :baffled:

    එහෙනම් ඒකේ learning outcomes මොනවද තියෙන්නේ ? :nerd:

    ඒ කිව්වේ existing tools use කරලා encrypted file storage, sharing වගේ දේවල් කරන්න පුළුවන් කියන proof of concept system එකක් හදලා පෙන්වන්න ද ?
    නැත්නම් crypto algorithm වල practical application පෙන්වන්න demo එකක් ද ?
    නැත්නම් secure file storage, transfer වගේ දෙයක් කරන්න හොඳ process / procedure එකක් identify කරන්න / demonstrate කරන්න වගේ ද ?
     
    • Like
    Reactions: bulza

    bulza

    Well-known member
  • Apr 21, 2010
    3,986
    367
    83
    පාතාලේ
    මේක assignment/ mini project එකක් ද ? :baffled:

    එහෙනම් ඒකේ learning outcomes මොනවද තියෙන්නේ ? :nerd:

    ඒ කිව්වේ existing tools use කරලා encrypted file storage, sharing වගේ දේවල් කරන්න පුළුවන් කියන proof of concept system එකක් හදලා පෙන්වන්න ද ?
    නැත්නම් crypto algorithm වල practical application පෙන්වන්න demo එකක් ද ?
    නැත්නම් secure file storage, transfer වගේ දෙයක් කරන්න හොඳ process / procedure එකක් identify කරන්න / demonstrate කරන්න වගේ ද ?

    Learning outcomes ne mchn course work 1k.. hadala viva 1k pennana oni. and report 1k denna oni anitamata :( danata cloud 1k up karagatta openstack. ethanin issarahata tynne me wage task set 1k.. :(