Re: booting gbde-encrypted filesystem
Pawel Jakub Dawidek <pjd@freebsd.org> wrote:
> This is not not possible with current GBDE.
> I've patches which allows this here:
>
> http://people.freebsd.org/~pjd/patches/gbde.patch
I fail to see how this allows an encryted root-FS, it doesn't add gbde
support to boot0(ext) or to the loader. It needs access to an unencrypted
kernel. I don't think this is what Ronnel had in mind (overlooking the fact
that his suggestion to save the passphrase in the loader is insecure).
Bye,
Alexander.
--
http://www.Leidinger.net Alexander @ Leidinger.net: PGP ID = B0063FE7
http://www.FreeBSD.org netchild @ FreeBSD.org : PGP ID = 72077137
The man who can smile when things go wrong has thought of
someone he can blame it on.
_______________________________________________
freebsd-security@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-security
To unsubscribe, send any mail to "freebsd-security-unsubscribe@freebsd.org"
討論串 (同標題文章)
完整討論串 (本文為第 6 之 6 篇):