Free Republic
Browse · Search
General/Chat
Topics · Post Article

Skip to comments.

WWDC: Apple's new ADFS file system brings improved encryption and features for SSDs
V3 ^ | June 14, 2016 | by Graeme Burton

Posted on 06/14/2016 7:10:58 PM PDT by Swordmaker

The security services aren't going to like this


Apple doubles-down on encryption in new APFS file system

Apple is deepening support for encryption in its PCs, laptops and devices with the introduction of Apple File System (APFS), a new file system that will replace the existing HFS+ file system from next year.

APFS has been "engineered with encryption as a primary feature", according to Apple, adding extra encryption features into the file system that will make it easier for users to encrypt files.

However, it may also reignite disputes with law enforcement and security agencies over backdoors for encrypted communications and devices.

APFS will be backwards compatible with HFS+, which is used by MacOS and iOS operating systems. HFS+ has been used by Apple since 2001, but existing third-party utilities will need to be updated to support it. Apple claimed that one of the main reasons why the new file system is required is to take advantage of the shift to flash-based storage media.

One of the key features, therefore, will be auto-trim to prevent devices using flash slowing over time (as any user of a cheap Android device eventually finds out).

"Like HFS+, APFS supports Trim operations. On APFS, Trim operations are issued asynchronously from when files are deleted or free space is reclaimed, which ensures that these operations are only performed once metadata changes are persisted to stable storage," said the Apple File System Guide.

It is also, Apple was keen to point out, compatible with traditional "spinning rust" hard disk drives.

However, it is the extra support for encryption that raised most eyebrows. "On OS X, full disk encryption has been available since OS X 10.7 Lion. On iOS, a version of data protection that encrypts each file individually with its own key has been available since iOS 4. APFS combines both of these features into a unified model that encrypts file system metadata," explained the guide.

"APFS supports encryption natively. You can choose one of the following encryption models for each volume in a container: no encryption, single-key encryption, or multi-key encryption with per-file keys for file data, and a separate key for sensitive metadata.

"APFS encryption uses AES-XTS or AES-CBC, depending on the hardware. Multi-key encryption ensures the integrity of user data even when its physical security is compromised."

Other features include ‘space sharing', enabling multiple file systems to share the same underlying free space on a physical volume.

"Unlike rigid partitioning schemes, which pre-allocate a fixed amount of space for each file system, APFS volumes can grow and shrink without volume repartitioning," said Apple.

The 64-bit Inode Numbers scheme will also enable APFS to support more than nine quintillion files on a single volume (which ought to be enough for anyone - for the time being).

APFS uses a copy-on-write metadata scheme to ensure that updates to the file system are crash-safe. This approach also reduces the additional overhead of journaling that occurs with HFS+.

Missed the opening keynotes at WWDC? Read V3's coverage of all the main announcements


TOPICS: Business/Economy; Computers/Internet
KEYWORDS: applepinglist; macos; newfilesystem

1 posted on 06/14/2016 7:10:58 PM PDT by Swordmaker
[ Post Reply | Private Reply | View Replies]

To: dayglored; Utilizer; ~Kim4VRWC's~; 1234; Abundy; Action-America; acoulterfan; AFreeBird; ...
The government snoopers are not going to like this. Apple's new ADFS files system for macOS Sierra is built around encryption. — PING!


Apple's New File System has Built-In Encryption
Ping!

The latest Apple/Mac/iOS Pings can be found by searching Keyword "ApplePingList" on FreeRepublic's Search.

If you want on or off the Mac Ping List, Freepmail me

2 posted on 06/14/2016 7:15:10 PM PDT by Swordmaker (This tag line is a Microsoft insult free zone... but if the insults to Mac users continue..)
[ Post Reply | Private Reply | To 1 | View Replies]

To: Scutter

More on the new ADFS file system over here. . . ping.


3 posted on 06/14/2016 7:17:29 PM PDT by Swordmaker (This tag line is a Microsoft insult free zone... but if the insults to Mac users continue..)
[ Post Reply | Private Reply | To 2 | View Replies]

To: Swordmaker

Great!...

...and I’ll let other people beat up on it for a couple of years before I entrust my data to it.

That’s due to it both being a new file system, and the fact that Apple’s software QA has taken a hit the last few years.


4 posted on 06/14/2016 7:23:29 PM PDT by Yossarian
[ Post Reply | Private Reply | To 1 | View Replies]

To: Swordmaker

What happens when you cannot log into your encrypted pc?
Do you lose all your files?


5 posted on 06/14/2016 9:17:22 PM PDT by minnesota_bound
[ Post Reply | Private Reply | To 1 | View Replies]

To: Swordmaker

Thanks. It sounds like a great file system, that will quickly become the default option. I especially like the space sharing / auto growth feature. Will be interesting to see how people and apps leverage the more advanced encryptin features, specifically the ability to have different key for a specific file.


6 posted on 06/14/2016 9:26:16 PM PDT by Scutter
[ Post Reply | Private Reply | To 3 | View Replies]

To: Swordmaker

Spinning Rust

LOL


7 posted on 06/14/2016 9:31:33 PM PDT by Vendome (Don't take life so seriously-you won't live through it anyway - "Enjoy Yourself" ala Louis Prima)
[ Post Reply | Private Reply | To 2 | View Replies]

To: minnesota_bound
What happens when you cannot log into your encrypted pc?

I had the same thought. Very important to have backups, and to remember your passwords. But if encrypted, can you recover to another pc? In the past, I've lost encrypted hard drives on trashed pc's that could not be read on another pc. With the new MacOS, I imagine there are better safeguards to make it easier to recover to another Mac... if you remember the passwords.

8 posted on 06/14/2016 10:34:07 PM PDT by roadcat
[ Post Reply | Private Reply | To 5 | View Replies]

To: Swordmaker

Do you own the Apple Watch? If so, do you like? TIA


9 posted on 06/14/2016 10:36:12 PM PDT by Jane Long (Go Trump, go! Make America Safe Again :)
[ Post Reply | Private Reply | To 1 | View Replies]

To: Swordmaker

http://www.google.com/search?q=adfs


10 posted on 06/15/2016 5:37:33 AM PDT by SunkenCiv (I'll tell you what's wrong with society -- no one drinks from the skulls of their enemies anymore.)
[ Post Reply | Private Reply | To 2 | View Replies]

To: Swordmaker

I hope they open up the spec enough so that we’ll have Linux drivers for it.


11 posted on 06/15/2016 6:33:08 AM PDT by zeugma (Welcome to the "interesting times" you were warned about.)
[ Post Reply | Private Reply | To 1 | View Replies]

To: Swordmaker; metmom
Off topic (but less so here than anywhere else, AFAIK):
Tim Cook argued that every child should be taught a programming language in school, and he argued that Swift
  • is open source,
  • is used and useful for Apple developers.
  • is very easy to learn,
  • creates very fast code, and therefore
  • Swift programming language should be taught to all children.
In furtherance of that objective, Apple announced, and demonstrated, “Swift Playground” for the iPad. On reflection, it reminds me of nothing so much as LOGO with its turtle control commands. Except of course that LOGO on an Apple II c was laughably crude in comparison. LOGO allowed a learner to command the cursor, called (but not illustrated as) the “turtle,” to move and turn.

Swift Playground will allow the learner to command turns and motion by a fuzzy critter. Or a bunch of icons, which fall according to the laws of physics to the bottom of the display. With Swift commands the icons on the display follow laws of physics in a world under tilt control of the user manipulating the iPad. IOW, under “Swift Playground,” the learner has access to the gyro and the accelerometer in the iPad.

Swift Playground will be in the Developer’s release of iOS10, andwill be free in the App Store this fall.

Of possible interest to metmom for education . . . Ping.


12 posted on 06/16/2016 10:07:10 AM PDT by conservatism_IS_compassion ('Liberalism' is a conspiracy against the public by wire-service journalism.)
[ Post Reply | Private Reply | To 2 | View Replies]

Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.

Free Republic
Browse · Search
General/Chat
Topics · Post Article

FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson