From nobody Tue Oct 31 19:18:22 2023 X-Original-To: bugs@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4SKg0G4CqFz4ymcC for ; Tue, 31 Oct 2023 19:18:22 +0000 (UTC) (envelope-from bugzilla-noreply@freebsd.org) Received: from mxrelay.nyi.freebsd.org (mxrelay.nyi.freebsd.org [IPv6:2610:1c1:1:606c::19:3]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (4096 bits) client-digest SHA256) (Client CN "mxrelay.nyi.freebsd.org", Issuer "R3" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 4SKg0G2McHz4Msh for ; Tue, 31 Oct 2023 19:18:22 +0000 (UTC) (envelope-from bugzilla-noreply@freebsd.org) ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim; t=1698779902; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding: in-reply-to:in-reply-to:references:references; bh=9YhMwAcDuY98ziyA0SeUhtjDiN70C6PIqSMqas7Q+2c=; b=g4cHj+CfBeQ8OWdRdViuXWEQCmle2jwvEuNcDM5RrcuWEbAKOxm/P+zNrd6XNUV/v9d9AS bswSIo8f7XWCcc5D0ekRNExGMt5R5dKJUunYa8hwvPoI1+ZHNM7SgEzIqIoKxZmvqxrspi 6Sifq4AV0KydF3M+35WBOuYIn3dkGCpsPBaU/QhTicvFK522xT33c+bGqcXP9Y9bpXPXly LwDdnPjvX4/lisnCLhC3fRyUptrMANiYXNBy4aXEyf3WYZN1SNi+P8ONrb1cQElrlzqwxu P1gey1iU8w1KDIwTrqNeYdlsJGI+Q0SMbV/eCE3MFjG8HrNxsGoAZN3RINyuSA== ARC-Authentication-Results: i=1; mx1.freebsd.org; none ARC-Seal: i=1; s=dkim; d=freebsd.org; t=1698779902; a=rsa-sha256; cv=none; b=svBpyMg46KNZdSJeWZIdpa7lgq8yfQwDQJXMOyoZewvPZ3m8130WXRRB9eew8hspF5dQOi OsW5Ou0a4YbSNJvM1D1g4u+UeIxg1Iy9jRpCOZcSa86GAj6DIIlMFKbNfQ/qnqIa6MeKKk a7d/SHWzrT/w2r3YqG9B0RbDMrMcWJORDL0SNbgrNkU5jKGj8W3aTqlwOvJHjG63HKGRYg sUF0wS7p343xjgdKs96zBf1XGNZYqqPqkZx0U/efoV8rVSmFlUEjspFuq/npXXcrHSAtEz LFIZCwWxQgrYav8JwPEnSXFXAD7hYMnRFhHmxXhp6qTPHI5BcGglrlfnyAkc8g== Received: from kenobi.freebsd.org (kenobi.freebsd.org [IPv6:2610:1c1:1:606c::50:1d]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256) (Client did not present a certificate) by mxrelay.nyi.freebsd.org (Postfix) with ESMTPS id 4SKg0G1SSqz1hc for ; Tue, 31 Oct 2023 19:18:22 +0000 (UTC) (envelope-from bugzilla-noreply@freebsd.org) Received: from kenobi.freebsd.org ([127.0.1.5]) by kenobi.freebsd.org (8.15.2/8.15.2) with ESMTP id 39VJIMNo065386 for ; Tue, 31 Oct 2023 19:18:22 GMT (envelope-from bugzilla-noreply@freebsd.org) Received: (from www@localhost) by kenobi.freebsd.org (8.15.2/8.15.2/Submit) id 39VJIMGD065385 for bugs@FreeBSD.org; Tue, 31 Oct 2023 19:18:22 GMT (envelope-from bugzilla-noreply@freebsd.org) X-Authentication-Warning: kenobi.freebsd.org: www set sender to bugzilla-noreply@freebsd.org using -f From: bugzilla-noreply@freebsd.org To: bugs@FreeBSD.org Subject: [Bug 263234] Add support for OpenZFS encryption to adduser Date: Tue, 31 Oct 2023 19:18:22 +0000 X-Bugzilla-Reason: AssignedTo X-Bugzilla-Type: changed X-Bugzilla-Watch-Reason: None X-Bugzilla-Product: Base System X-Bugzilla-Component: bin X-Bugzilla-Version: CURRENT X-Bugzilla-Keywords: feature, needs-patch X-Bugzilla-Severity: Affects Only Me X-Bugzilla-Who: delphij@FreeBSD.org X-Bugzilla-Status: Open X-Bugzilla-Resolution: X-Bugzilla-Priority: --- X-Bugzilla-Assigned-To: bugs@FreeBSD.org X-Bugzilla-Flags: X-Bugzilla-Changed-Fields: cc Message-ID: In-Reply-To: References: Content-Type: text/plain; charset="UTF-8" Content-Transfer-Encoding: quoted-printable X-Bugzilla-URL: https://bugs.freebsd.org/bugzilla/ Auto-Submitted: auto-generated List-Id: Bug reports List-Archive: https://lists.freebsd.org/archives/freebsd-bugs List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-freebsd-bugs@freebsd.org MIME-Version: 1.0 https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=3D263234 Xin LI changed: What |Removed |Added ---------------------------------------------------------------------------- CC| |delphij@FreeBSD.org --- Comment #3 from Xin LI --- (In reply to John Grafton from comment #2) This should really be an opt-out feature instead of an opt-in one (in other words, if `zfs list -o name "${homeprefix}" 2>/dev/null` returned a dataset, then ZFS should be used, unless the administrator specified otherwise). And the ZFS options should be mostly inherited from the parent, especially `mountpoint`. It can cause a lot of problem when the system is being backe= d up to a remote one with `zfs send`. For compression, atime, etc. it's usually specified by the parent instead of being set individually, therefore I'd recommend not providing default for zfs creation options and tell user that they can say encryption=3Don, etc. if they choose to. --=20 You are receiving this mail because: You are the assignee for the bug.=