-
Junior Member
registered user
Encrypted File Systems
Currently i can encrypt my floppies, but what i would like to do is install knoppix onto my spare 4gb hdd with an encrypted swap and root. i kno u can do this with gentoo, using knoppix for help but is there anyway to just be able to do this with knoppix? ive been using AES so its built into knoppix.
thank you for any help
-
Senior Member
registered user
having the swap encrypted is not a big issue, something like the following
losetup -e AES128 /dev/loop0 /dev/hdax(your swap)
swapon /dev/loop0
This may not be the exact sequence but I read it some where
As for the root, I am curious as it is on CD so how can it be encrypted ? Or if you mean not booting from CD, I believe a scheme like the above would work, however you need at least 2 partition(not counting the swap), one is used to store the kernel image and initrd and in your linuxrc script, do something similar as the above for the root partition.
I haven't figured out a way to properly protected kernel image and initrd, just in case NSA slip in my door to replace those two which would break all encryption
-
Senior Member
registered user
I plan on booting from CD and trying this. However, with regards to a hard drive install, couldn't you put the kernel image and initrd on a CD and boot from that? That could keep someone from altering / replacing them. Still ties up a cd drive. A large enough thumb drive could work as well, if you could ensure that it is only mounted as read only through initrd.
Anybody have any thoughts about this? It would be nice to build a secure workstation in this manner...
-
Senior Member
registered user
putting the kernel and initrd on a CD/floppy/thumb drive should do the trick as I can carry it with me to reduce the chance of altered looback driver.
For those who want even more security, have the kernel and initrd encrypted with a secondary password and decrypt them before using so even if somone replace the CD while I am sleeping, I would notice that at the first gate entrance without handing out the main password
BTW, the CD-ROM won't be tied up as the kernel and initrd are into memory and the device would be freed.
-
Junior Member
registered user
any possibility of scripts being made here for this solution ? i have no clues about the boot process as such but would be nice to have some working version
Similar Threads
-
By Mr_White in forum MS Windows & New to Linux
Replies: 2
Last Post: 03-25-2005, 01:26 AM
-
By Oxyacetylene in forum Customising & Remastering
Replies: 4
Last Post: 03-18-2005, 08:26 PM
-
By Reven in forum Hdd Install / Debian / Apt
Replies: 8
Last Post: 11-12-2004, 08:13 AM
-
By aallenaia in forum General Support
Replies: 1
Last Post: 10-26-2004, 04:05 AM
-
Replies: 0
Last Post: 07-25-2003, 04:04 PM
Posting Permissions
- You may not post new threads
- You may not post replies
- You may not post attachments
- You may not edit your posts
-
Forum Rules

DELL PowerEdge R730 Server 2x E5-2690v4 2.6GHz =28 Cores 128GB H730 4xRJ45
$399.00

Dell PowerEdge R630 Server 2x E5-2697v3 2.60Ghz 28-Core 128GB H730P Rails
$278.45

Dell Poweredge R630 2x Xeon E5-2670 v3 2.3ghz 24-Cores 32gb 180GB SSD 495w
$179.99

Dell PowerEdge R730 Server w Trays 128Gb 2x12c=24c CPUs 80Gb SSD/2x4Tb Proxmox
$400.00

Dell Poweredge R730xd 24SFF 2x E5-2690 v3 2.6ghz 24-Cores 64gb H730 2x 750w
$194.99

Dell PowerEdge R730 Server 128Gb 80Gb SSD 3x900Gb 8Trays 2x12c=24c CPUs Proxmox
$380.00

Dell Poweredge R730xd 26-Bay SFF | 2x E5-2690 v3 2.6ghz 24-Cores | 64GB | H730
$214.99

Dell PowerEdge R230 Xeon E3-1230 V5 3.40GHz 32GB RAM NO HDD
$129.99

Dell R640 8x 2.5" SFF Server iDRAC - Wholesale Custom Build Your Server
$289.99

Dell Poweredge R620 2x E5-2670 2.6ghz 16-Cores / 32gb / H710 / 2x Trays / 750w
$134.99