|
|
|
|
|
by elliotz
4429 days ago
|
|
I agree. Although the article content is good and reaches a good, nuanced
conclusion, the title is going to confuse people. Many people will only
ever encounter XTS when setting up full disk encryption with dm-crypt,
where they'll be presented with the choice between XTS and CBC-ESSIV.
This is already a confusing choice with no good context to help a user
make a decision. Remembering this headline, I bet some people are going
to pick CBC-ESSIV over XTS, which is wrong. The title is also somewhat link-baity, since I clicked expecting bombshell
revelations about XTS. I suggest the mods to change it to "You don't
want XTS (except for full disk encryption)." |
|
I didn't write the article for the front page of HN. I wrote it so that the next time someone says "we're going to switch from CBC to something more advanced like XTS", I can point them at the article instead of writing a long comment.