pam_mount and dm-crypt

W. Michael Petullo mike at flyn.org
Sat Sep 11 23:13:02 UTC 2004


> is it possible to use dm-crypt with pam_mount and don't save the key on
> disk?
> 
> I've encrypted my home dir on my laptop with cryptoloop and would like to
> switch to dm-crypt, because it is suggested. I don't want save my key on
> disk, because I encrypted it to make my data secure if the laptop is
> stolen. With the key on disk it is useless.

Pam_mount can decrypt using two techniques:

1.  With you login password.

2.  Indirectly using your login password.  The password is used to decrypt
an encrypted key on your disk that is then used to decrypt your volume.

Both are explained in pam_mount's README file.

-- 
Mike

:wq





More information about the Pam-list mailing list