booting gbde-encrypted filesystem

Alexander Leidinger Alexander at Leidinger.net
Fri Jul 29 11:46:01 GMT 2005


Pawel Jakub Dawidek <pjd at freebsd.org> wrote:

> This is not not possible with current GBDE.
> I've patches which allows this here:
>
> 	http://people.freebsd.org/~pjd/patches/gbde.patch

I fail to see how this allows an encryted root-FS, it doesn't add gbde
support to boot0(ext) or to the loader. It needs access to an unencrypted
kernel. I don't think this is what Ronnel had in mind (overlooking the fact
that his suggestion to save the passphrase in the loader is insecure).

Bye,
Alexander.

-- 
http://www.Leidinger.net  Alexander @ Leidinger.net: PGP ID = B0063FE7
http://www.FreeBSD.org     netchild @ FreeBSD.org  : PGP ID = 72077137
The man who can smile when things go wrong has thought of
someone he can blame it on.




More information about the freebsd-hackers mailing list