摘要 |
FIELD: information technology.SUBSTANCE: invention relates to methods of protecting computing devices and end user data from unauthorised access. Disclosed is a method of determining a mask of an encrypted region of a disk, in which by means of a coding module encryption process is initiated by creating at least an empty mask storage log file. Disk parameters are then determined using a mask determination module. Disk parameters include at least size of disk. Data block size is then set using mask determination module. Depending on size of data block with module definition mask determining said mask of encrypted area, wherein mask of encrypted area comprises indicators that determine for each data block whether it is encrypted or decrypted. Using a conversion module, mask of encrypted area is the stored in a mask storage log. By means of conversion and using mask of encrypted area, full-disk encryption is performed.EFFECT: technical result is faster full-disk encryption due to that mask of encrypted area does not depend on size of data block of disk.5 cl, 7 dwg |