Is geli detectable?

RW fbsd06 at mlists.homeunix.com
Thu Jun 19 15:39:32 UTC 2008


On Thu, 19 Jun 2008 15:27:23 +0100
Thomas Hurst <tom.hurst at clara.net> wrote:

> * Greg Rivers (gcr at tharned.org) wrote:
> >  You can prove this by running `geli dump
> > <provider>` when the provider is not attached (decrypted), or by
> > otherwise inspecting the last sector.
> 
> Yup, this is how the .eli devices magic into existance on boot/attach.
> ...
> Similarly I expect you could encrypt the metadata block itself, again
> forgoing auto-detection in favour of manually mounting; 

geli devices are found at boot by looking for devices that end in .eli
in fstab.


More information about the freebsd-geom mailing list