[SATLUG] Change dm-crypt volume to key instead of password access

Tom Weeks tweeksjunk2 at theweeks.org
Thu Jun 29 01:11:17 CDT 2006


On Wednesday 28 June 2006 01:49, Travis H. wrote:
> Basically you create the partition using create_crypto, then mount it
> using init_crypto.  To use the key-on-disk scenario, simply specify a
> key filename ending in ".gpg".  It will then be encrypted using the
> passphrase in GPG's symmetric mode.

Ooo!  This fiesystem crypto is GPG based?  Finally!!!


> Encrypted file systems are stored in /etc/crypttab.  Currently there's
> no hooks into the startup routines, so you have to mount them
> manually.

Can individual home dirs be done like this.. or would a startup (temp home) 
need to be employed to get things going (like /home/tweeks-start 
and /home/tweeks-crypt)?  Any pointers to good howtos on this would be 
appreciated.

Tweeks


More information about the SATLUG mailing list