slackbuilds_ponce/python/dfvfs/README
Barry J. Grundy 381b9c04e6 python/dfvfs: Added (Digital Forensics Virtual File System)
Signed-off-by: Robby Workman <rworkman@slackbuilds.org>
2014-12-25 02:10:29 -06:00

61 lines
1.1 KiB
Text

dfvfs (Digital Forensics Virtual File System - python module)
This package provides read-only access to file-system objects from various
storage media types and file formats. The goal of dfVFS is to provide a generic
interface for accessing file-system objects, for which it uses several
back-ends that provide the actual implementation of the various storage media
types, volume systems and file systems.
Supported:
EWF (EWF-E01, EWF-Ex01, EWF-S01)
QCOW version 1, 2
Storage Media device
(split) Storage Media RAW
VHD
VMDK
Note that at the moment differential images are not supported.
Volume systems
Supported:
APM
BitLocker (BDE)
GPT
MBR
VSS
Planned:
FileVault2 (CoreStorage)
LDM
LUKS
Linux LVM version 1, 2
Software Raid
File systems
Supported file systems:
ext version 2, 3, 4
FAT
HFS, HFS+, HFSX
NTFS version 3
UFS version 1, 2
TODO add more detail here regarding FAT and other supported FS
Compressed stream file types
Supported:
bzip2
gzip
zlib (both zlib-DEFLATE and raw-DEFLATE)
Archive file types
Supported:
tar
zip