Does geli metadata contain sensitive information?

RW rwmaillists at googlemail.com
Wed Jan 27 14:47:05 UTC 2010


On Wed, 27 Jan 2010 04:13:42 -0700
Modulok <modulok at gmail.com> wrote:

> Does a geli metadata backup contain any sensitive information? Like...
> should apply the same precations as I do the key and password?

If you change the keyfile the metadata is changed and the old keyfile
becomes useless; but if the attacker also has the old metadata file
they can make use of the old keyfile. Likewise if someone has the
metadata you lose the ability to delete all copies of it making
the partition instantaneously unrecoverable.




More information about the freebsd-questions mailing list