encrypted root fs
W. Michael Petullo
mike at flyn.org
Tue Aug 17 04:10:53 UTC 2004
>> https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=124789
>>
>> You may want to work with this effort.
>
> One thing that has just occurred to me is that using a /etc/crypttab file in
> the same format as Debian will make things a lot easier. Here is a sample
> crypttab:
>
> # <target device> <source device> <key file> <options>
> swap /dev/V0/swap /dev/random swap
> root /dev/V0/fc2 /etc/root-key defaults
Great point. This would also be more consistent with the encrypted swap
support that is being worked on. See the Bugzilla bug for a new patch
that uses /etc/crypttab and adds support for initrds that live on
removable devices and contain the FS key.
--
Mike
:wq
More information about the fedora-devel-list
mailing list