From owner-freebsd-questions@FreeBSD.ORG Wed Mar 4 02:07:18 2015 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 2E56F5C1 for ; Wed, 4 Mar 2015 02:07:18 +0000 (UTC) Received: from phlegethon.blisses.org (phlegethon.blisses.org [50.56.97.101]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 0EE9ADDB for ; Wed, 4 Mar 2015 02:07:17 +0000 (UTC) Received: from blisses.org (cocytus.blisses.org [23.25.209.73]) by phlegethon.blisses.org (Postfix) with ESMTPSA id 0B5C7148FA4 for ; Tue, 3 Mar 2015 21:07:16 -0500 (EST) Date: Tue, 3 Mar 2015 21:07:15 -0500 From: Mason Loring Bliss To: freebsd-questions@freebsd.org Subject: Re: GELI key question... Message-ID: <20150304020715.GW3375@blisses.org> References: <20150304015753.GV3375@blisses.org> MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: <20150304015753.GV3375@blisses.org> User-Agent: Mutt/1.5.23 (2014-03-12) X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 04 Mar 2015 02:07:18 -0000 On Tue, Mar 03, 2015 at 08:57:53PM -0500, Mason Loring Bliss wrote: > Is my idea of having the bootloader default to the USB stick unless it's > not there and use a file-and-passphrase already on /boot otherwise > feasible? And since I didn't specify it explicitly, this is the otherwise unmentioned "ultimate goal" from my email. Sorry. -- Mason Loring Bliss (( If I have not seen as far as others, it is because mason@blisses.org )) giants were standing on my shoulders. - Hal Abelson