Encrypt parts of drive?

Todd Zullinger tmz at pobox.com
Thu Mar 1 15:15:58 UTC 2007


Tim wrote:
> On Tue, 2007-02-27 at 00:00 -0500, Todd Zullinger wrote:
>> You may consider encrypting your swap (or disabling swap entirely
>> if you have lots of RAM.  That way no confidential data should
>> reach the disk in any usable form.
> 
> I imagine you'd also want to change how you use /tmp, as well.
> Perhaps using tmpfs (which'll use RAM instead of disc space).

Good point.  (In theory you could also set TMPDIR to somewhere that's
secured, but then you'd get burned by any apps that are hardwired to
use /tmp.  So tmpfs is a better option.)

-- 
Todd        OpenPGP -> KeyID: 0xBEAF0CE3 | URL: www.pobox.com/~tmz/pgp
======================================================================
Never take life seriously.  Nobody gets out alive anyway.

-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 542 bytes
Desc: not available
URL: <http://listman.redhat.com/archives/fedora-list/attachments/20070301/ba6fe1d6/attachment-0001.sig>


More information about the fedora-list mailing list