Groups | Search | Server Info | Keyboard shortcuts | Login | Register [http] [https] [nntp] [nntps]


Groups > linux.kernel > #1369010 > unrolled thread

Legal characters in encrypted fscrypto (f2fs/ext4) filename?

Started byEric Biggers <ebiggers3@gmail.com>
First post2016-04-01 08:10 +0200
Last post2016-04-01 08:30 +0200
Articles 2 — 2 participants

Back to article view | Back to linux.kernel


Contents

  Legal characters in encrypted fscrypto (f2fs/ext4) filename? Eric Biggers <ebiggers3@gmail.com> - 2016-04-01 08:10 +0200
    Re: Legal characters in encrypted fscrypto (f2fs/ext4) filename? Theodore Ts'o <tytso@mit.edu> - 2016-04-01 08:30 +0200

#1369010 — Legal characters in encrypted fscrypto (f2fs/ext4) filename?

FromEric Biggers <ebiggers3@gmail.com>
Date2016-04-01 08:10 +0200
SubjectLegal characters in encrypted fscrypto (f2fs/ext4) filename?
Message-ID<rj0rn-gd-1@gated-at.bofh.it>
Hello,

While reviewing the new filesystem encryption code, I was confused by the
intended set of legal characters in the printable form of an encrypted filename.

According to the actual code in fs/crypto/fname.c, the legal characters are:

	a-zA-Z0-9+,

Alternatively, according to the comment in the same file, the legal characters
are actually:

	a-zA-Z0-9+_

Still alternatively, according to the design document[1], the legal characters
are actually:

	a-zA-Z0-9+=

Which one is correct?

[1] https://docs.google.com/document/d/1ft26lUQyuSpiu6VleP70_npaWdRfXFoNnB8JYnykNTg/preview?pref=2&pli=1#

[toc] | [next] | [standalone]


#1369016

FromTheodore Ts'o <tytso@mit.edu>
Date2016-04-01 08:30 +0200
Message-ID<rj0KK-nf-9@gated-at.bofh.it>
In reply to#1369010
On Fri, Apr 01, 2016 at 01:00:18AM -0500, Eric Biggers wrote:
> Hello,
> 
> While reviewing the new filesystem encryption code, I was confused by the
> intended set of legal characters in the printable form of an encrypted filename.
> 
> According to the actual code in fs/crypto/fname.c, the legal characters are:
> 
> 	a-zA-Z0-9+,

It's not really a question of "legality".  Rather, the base-64
encoding that we use is merely a presentation layer issue.  It's
really an implementation detail that does not affect the on-disk
encoding, and so in fact, it can be changed in different kernel
versions since the "encrypted filename" is essentially a cookie which
is presented to the user via readdir(), and which the user can then
send back to the kernel using, say, the unlink() system call.

It's changed over time to avoid potential confusion --- for example
the traditional base-64 encoding uses a-zA-Z0-9+/ --- but the use of
'/' causes problem because it's the pathname separator.

The fact that the design doc and comments are out of date is
unfortunate, but ultimately, it really doesn't matter.  

> Alternatively, according to the comment in the same file, the legal characters
> are actually:
> 
> 	a-zA-Z0-9+_
> 
> Still alternatively, according to the design document[1], the legal characters
> are actually:
> 
> 	a-zA-Z0-9+=

As I recall the equals sign could cause problems with shell scripts.
I don't remember the objection to the underscore character.

If you wanted to patch the kernel so that on your system, you used
a-ZA-Z0-9^@, you wouldn't break compatibility or interoperability.  So
there really isn't any such thing as "correct".

Cheers,

  	  		     	       - Ted
			       

[toc] | [prev] | [standalone]


Back to top | Article view | linux.kernel


csiph-web