Date: Fri, 28 Dec 2012 13:59:32 +0100 From: Pawel Jakub Dawidek <pjd@FreeBSD.org> To: =?utf-8?B?0JHQu9C+0LPQtdGA?= <bloger@ngs.ru> Cc: freebsd-geom@freebsd.org Subject: Re: keyfile on another HDD. Message-ID: <20121228125931.GB5028@garage.freebsd.pl> In-Reply-To: <28wriS8X933a6ogk9D6qhL8f@ngs.ru> References: <VYf743db33az97Qyp04k05A8@ngs.ru> <CAHsZcQF8SYZ16Ztn1MZkpTKF4HST0fLoCsOUJB0BOVAfLRSHQQ@mail.gmail.com> <28wriS8X933a6ogk9D6qhL8f@ngs.ru>
index | next in thread | previous in thread | raw e-mail
[-- Attachment #1 --] On Mon, Dec 24, 2012 at 11:42:22PM +0300, Блогер wrote: > В ответ на сообщение товарища Alaksiej Carniajeu, > датированное 2012-12-24 17:05: > > > > Is it possible to read key file from another HDD with FAT16 during > > > system boot? > > > > Why do you want it (if it's not a big secret)? > For security and practical reason. It will be more easy to hide and copy > back (make available) my key when I need it. > > I have another question: how long (in bytes) can be geli key file? There is no limit on keyfile size. geli(8) reads entire thing and adds everything to HMAC along the way. -- Pawel Jakub Dawidek http://www.wheelsystems.com FreeBSD committer http://www.FreeBSD.org Am I Evil? Yes, I Am! http://tupytaj.pl [-- Attachment #2 --] -----BEGIN PGP SIGNATURE----- Version: GnuPG v2.0.19 (FreeBSD) iEYEARECAAYFAlDdl7MACgkQForvXbEpPzQEzACcDZ/Q0hJORNSU3d7g3V1KfD3R LZ8AoMXo7J/qVsWdRLwGOGMcdDbIkcE1 =MUAz -----END PGP SIGNATURE-----help
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20121228125931.GB5028>
