From owner-freebsd-geom@FreeBSD.ORG Mon Dec 24 08:38:38 2012 Return-Path: Delivered-To: freebsd-geom@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [69.147.83.52]) by hub.freebsd.org (Postfix) with ESMTP id 084B5ACF for ; Mon, 24 Dec 2012 08:38:38 +0000 (UTC) (envelope-from bloger@ngs.ru) Received: from smtpout.ngs.ru (smtpout25.ngs.ru [195.19.71.8]) by mx1.freebsd.org (Postfix) with ESMTP id 9FC3D8FC13 for ; Mon, 24 Dec 2012 08:38:36 +0000 (UTC) Received: from localhost (5e013853.bb.sky.com [94.1.56.83]) (using SSLv3 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) (Authenticated sender: bloger@ngs.ru) by mail.ngs.ru (smtp) with ESMTPSA id 0F212183046 for ; Mon, 24 Dec 2012 15:38:23 +0700 (NOVT) Date: Mon, 24 Dec 2012 11:37:33 +0300 From: =?koi8-r?B?4szPx8XS?= To: freebsd-geom@freebsd.org Subject: Re: keyfile on another HDD. Message-ID: <2d5SYIH22zk1d03YPSv42Dfa@ngs.ru> References: <20121223210221.GB1436@garage.freebsd.pl> MIME-Version: 1.0 Content-Type: text/plain; charset=koi8-r Content-Disposition: inline Content-Transfer-Encoding: quoted-printable In-Reply-To: <20121223210221.GB1436@garage.freebsd.pl> Organization: =?koi8-r?B?4szPx8XS?= User-Agent: Mutt/1.5.18 X-Mailman-Approved-At: Mon, 24 Dec 2012 13:11:42 +0000 X-BeenThere: freebsd-geom@freebsd.org X-Mailman-Version: 2.1.14 Precedence: list List-Id: GEOM-specific discussions and implementations List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 24 Dec 2012 08:38:38 -0000 =F7 =CF=D4=D7=C5=D4 =CE=C1 =D3=CF=CF=C2=DD=C5=CE=C9=C5 =D4=CF=D7=C1=D2=C9= =DD=C1 Pawel Jakub Dawidek, =C4=C1=D4=C9=D2=CF=D7=C1=CE=CE=CF=C5 2012-12-23 22:02: > > Is it possible to read key file from another HDD with FAT16 during > > system boot? >=20 > I assume you are asking for GELI disk encryption? Sure. I'm sorry, I miss important information. I'm talking about encrypted with GELI root files system. > would like to read key from a file for partition, which holds root file > system (so you need the key after the kernel is loaded, but before root > file system is mounted) then no, it is not currently possible. Key can :-( --=20 () =CB=C1=CD=D0=C1=CE=C9=D1 ASCII Ribbon - =D0=D2=CF=D4=C9=D7 =D0=C9=D3=C5= =CD =D7 HTML =C6=CF=D2=CD=C1=D4=C5 /\ www.asciiribbon.org - =D0=D2=CF=D4=C9=D7 =D0=D2=CF=D0=D2=C9=C5=D4=C1= =D2=CE=D9=C8 =D7=CC=CF=D6=C5=CE=C9=CA