This may have already been posted... If so feel free to delete.

http://www.linux-forensics.com/foren...Validation.pdf

This whitepaper is a validation of knoppix as a forensic tool. It md5's the drives before and after some knoppix action after it mounts a drive. I'm just interested in the validity of this paper, and if any other validations like it exist. I am interested in using knoppix as a forensic tool, I would like to know what the knoppix communities response is to the white paper, and what others experiences are using knoppix for forensics.
Thanks!