summaryrefslogtreecommitdiffstats
path: root/wiki/src/doc/encryption_and_privacy/luks_vs_veracrypt.inline.mdwn
diff options
context:
space:
mode:
Diffstat (limited to 'wiki/src/doc/encryption_and_privacy/luks_vs_veracrypt.inline.mdwn')
-rw-r--r--wiki/src/doc/encryption_and_privacy/luks_vs_veracrypt.inline.mdwn34
1 files changed, 34 insertions, 0 deletions
diff --git a/wiki/src/doc/encryption_and_privacy/luks_vs_veracrypt.inline.mdwn b/wiki/src/doc/encryption_and_privacy/luks_vs_veracrypt.inline.mdwn
new file mode 100644
index 0000000..bc6d474
--- /dev/null
+++ b/wiki/src/doc/encryption_and_privacy/luks_vs_veracrypt.inline.mdwn
@@ -0,0 +1,34 @@
+We recommend you use:
+
+- <span class="application">VeraCrypt</span> to share encrypted files
+ across different operating systems.
+- <span class="application">LUKS</span> to encrypt files for Tails and
+ Linux.
+
+<table>
+<tr><th></th><th class="w30"><span class="application">LUKS</span></th><th class="w30"><span class="application">VeraCrypt</span></th></tr>
+<tr><td>Compatibility</td><td>Linux</td><td>Windows + macOS + Linux</td></tr>
+<tr><td>Create new volumes</td><td class="check"><span class="check">Yes</span></td><td class="cross">Outside of Tails</td></tr>
+<tr><td>Open and modify existing volumes</td><td class="check">Yes</td><td class="check">Yes</td></tr>
+<tr><td>Encrypted partitions (or entire disks) ¹</td><td class="check">Yes</td><td class="check">Yes</td></tr>
+<tr><td>Encrypted file containers ¹</td><td class="cross">Complicated ²</td><td class="check">Easy</td></tr>
+<tr><td>Plausible deniability ³</td><td class="cross">No</td><td class="check">Yes</td></tr>
+<tr><td>Ease of use</td><td class="check">Easier</td><td class="cross">More complicated</td></tr>
+<tr><td>Speed</td><td class="check">Faster</td><td class="cross">Slower</td></tr>
+</table>
+
+1. See the [[difference between *file containers* and *partitions*|veracrypt#container-vs-partition]].
+
+1. See [Tyler Burton: How to migrate from TrueCrypt to LUKS file containers](http://www.tylerburton.ca/2014/06/how-to-migrate-from-truecrypt-to-luks-file-containers/).
+
+2. *Plausible deniability*: in some cases (for example, with
+ <span class="application">VeraCrypt</span> hidden volumes), it is
+ impossible for an adversary to technically prove the existence of an
+ encrypted volume.
+
+ Still, [[!wikipedia deniable_encryption]] might not protect you if
+ you are forced to reveal the existence of the encrypted volume. See:
+
+ - [VeraCrypt: Plausible Deniability](https://www.veracrypt.fr/en/Plausible%20Deniability.html)
+ - [Security-in-a-Box: Creating a hidden volume](https://securityinabox.org/en/guide/veracrypt/windows#creating-a-hidden-volume)
+