Date: Wed, 08 Feb 2006 07:03:48 +0100 From: Christian Brueffer <chris@unixpages.org> To: Christian Baer <christian.baer@informatik.uni-dortmund.de> Cc: freebsd-geom@freebsd.org Subject: Re: GELI -> What to encrypt? Message-ID: <20060208060348.GB1729@haakonia.hitnet.RWTH-Aachen.DE> In-Reply-To: <dsbdfg$c1t$1@nermal.rz1.convenimus.net> References: <dsbdfg$c1t$1@nermal.rz1.convenimus.net>
next in thread | previous in thread | raw e-mail | index | archive | help
[-- Attachment #1 --] On Wed, Feb 08, 2006 at 01:20:00AM +0100, Christian Baer wrote: > Hi folks! > > This question may seem a little strange, but don't hit me yet. :-) > > I was just sitting here wanting to set up a new GELI-device when it > struck me: What should I encrypt exactly. If I were to use GBDE, the > usual concept is to encrpyt (only?) the actual partition ad2s1d. GELI > suggests to encrypt all of ad2. I guess I could partition the > pseudo-device then. Would I get something like ad2.gelis1d? > > Does this have any advantages oder just encrypting the partition and if > so how important are these? > You'll probably find the following talk interesting, which was given at EuroBSDCon and CCC last year: https://events.ccc.de/congress/2005/fahrplan/events/1139.en.html There's a link to the paper on that site as well. - Christian -- Christian Brueffer chris@unixpages.org brueffer@FreeBSD.org GPG Key: http://people.freebsd.org/~brueffer/brueffer.key.asc GPG Fingerprint: A5C8 2099 19FF AACA F41B B29B 6C76 178C A0ED 982D [-- Attachment #2 --] -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.2 (FreeBSD) iD8DBQFD6YnEbHYXjKDtmC0RAiQDAJ4050Irk54foOOAB6e9FvkQrzV3OACgovJJ ielpfuHcmnZkCkUhwNyIH44= =hTI3 -----END PGP SIGNATURE-----
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20060208060348.GB1729>
