keyfile on another HDD.

Pawel Jakub Dawidek pjd at FreeBSD.org
Sun Dec 23 21:02:26 UTC 2012


On Sat, Dec 22, 2012 at 02:40:28PM +0300, Блогер wrote:
> Is it possible to read key file from another HDD with FAT16 during
> system boot?

I assume you are asking for GELI disk encryption?

It depends which stage in the boot process we are talking about. If you
would like to read key from a file for partition, which holds root file
system (so you need the key after the kernel is loaded, but before root
file system is mounted) then no, it is not currently possible. Key can
be read only from the file system the kernel was loaded and I don't
believe we can boot FreeBSD from FAT16.

If you would like to read key after root is mounted, then it should be
possible. Your FAT16 file system just needs to be mounted before
/etc/rc.d/geli script is executed.

-- 
Pawel Jakub Dawidek                       http://www.wheelsystems.com
FreeBSD committer                         http://www.FreeBSD.org
Am I Evil? Yes, I Am!                     http://tupytaj.pl
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 196 bytes
Desc: not available
URL: <http://lists.freebsd.org/pipermail/freebsd-geom/attachments/20121223/3b1765bc/attachment.sig>


More information about the freebsd-geom mailing list