Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 28 Dec 2012 13:59:32 +0100
From:      Pawel Jakub Dawidek <pjd@FreeBSD.org>
To:        =?utf-8?B?0JHQu9C+0LPQtdGA?= <bloger@ngs.ru>
Cc:        freebsd-geom@freebsd.org
Subject:   Re: keyfile on another HDD.
Message-ID:  <20121228125931.GB5028@garage.freebsd.pl>
In-Reply-To: <28wriS8X933a6ogk9D6qhL8f@ngs.ru>
References:  <VYf743db33az97Qyp04k05A8@ngs.ru> <CAHsZcQF8SYZ16Ztn1MZkpTKF4HST0fLoCsOUJB0BOVAfLRSHQQ@mail.gmail.com> <28wriS8X933a6ogk9D6qhL8f@ngs.ru>

index | next in thread | previous in thread | raw e-mail

[-- Attachment #1 --]
On Mon, Dec 24, 2012 at 11:42:22PM +0300, Блогер wrote:
> В ответ на сообщение товарища Alaksiej Carniajeu,
> датированное 2012-12-24 17:05:
> 
> > > Is it possible to read key file from another HDD with FAT16 during
> > > system boot?
> > 
> > Why do you want it (if it's not a big secret)?
> For security and practical reason. It will be more easy to hide and copy
> back (make available) my key when I need it.
> 
> I have another question: how long (in bytes) can be geli key file?

There is no limit on keyfile size. geli(8) reads entire thing and adds
everything to HMAC along the way.

-- 
Pawel Jakub Dawidek                       http://www.wheelsystems.com
FreeBSD committer                         http://www.FreeBSD.org
Am I Evil? Yes, I Am!                     http://tupytaj.pl

[-- Attachment #2 --]
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2.0.19 (FreeBSD)

iEYEARECAAYFAlDdl7MACgkQForvXbEpPzQEzACcDZ/Q0hJORNSU3d7g3V1KfD3R
LZ8AoMXo7J/qVsWdRLwGOGMcdDbIkcE1
=MUAz
-----END PGP SIGNATURE-----
help

Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20121228125931.GB5028>