From owner-freebsd-geom@FreeBSD.ORG Fri Jun 17 13:01:22 2011 Return-Path: Delivered-To: freebsd-geom@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id A7CF31065673 for ; Fri, 17 Jun 2011 13:01:22 +0000 (UTC) (envelope-from pawel@dawidek.net) Received: from mail.dawidek.net (60.wheelsystems.com [83.12.187.60]) by mx1.freebsd.org (Postfix) with ESMTP id 5F71F8FC33 for ; Fri, 17 Jun 2011 13:01:21 +0000 (UTC) Received: from localhost (58.wheelsystems.com [83.12.187.58]) by mail.dawidek.net (Postfix) with ESMTPSA id 39EFEBDC; Fri, 17 Jun 2011 13:50:47 +0200 (CEST) Date: Fri, 17 Jun 2011 15:01:16 +0200 From: Pawel Jakub Dawidek To: Nick Ulen Message-ID: <20110617130116.GA12866@garage.freebsd.pl> References: <20110617073943.GA29016@wolfman.devio.us> MIME-Version: 1.0 Content-Type: multipart/signed; micalg=pgp-sha1; protocol="application/pgp-signature"; boundary="/9DWx/yDrRhgMJTb" Content-Disposition: inline In-Reply-To: <20110617073943.GA29016@wolfman.devio.us> X-OS: FreeBSD 9.0-CURRENT amd64 User-Agent: Mutt/1.5.21 (2010-09-15) Cc: freebsd-geom@freebsd.org Subject: Re: geli,last sector X-BeenThere: freebsd-geom@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: GEOM-specific discussions and implementations List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 17 Jun 2011 13:01:22 -0000 --/9DWx/yDrRhgMJTb Content-Type: text/plain; charset=us-ascii Content-Disposition: inline Content-Transfer-Encoding: quoted-printable On Fri, Jun 17, 2011 at 03:39:43AM -0400, Nick Ulen wrote: > According to man GELI(8) : "The last provider's sector is used to store= =20 > metadata." > Are data from last sector stand out among all others random data? > Does this mean it is possible to define that some slice was encrypted=20 > exactly with use geli? Yes, if a GEOM provider is encrypted using GELI, the last sector will start with "GEOM::ELI" string (if you are not using onetime keys). I started to work on extension to GELI to allow for "deniable" providers creation where even metadata looks random, but before I finished it, more important stuff appeared on my TODO list. --=20 Pawel Jakub Dawidek http://www.wheelsystems.com FreeBSD committer http://www.FreeBSD.org Am I Evil? Yes, I Am! http://yomoli.com --/9DWx/yDrRhgMJTb Content-Type: application/pgp-signature -----BEGIN PGP SIGNATURE----- Version: GnuPG v2.0.14 (FreeBSD) iEYEARECAAYFAk37UBsACgkQForvXbEpPzR8owCgstf4K6deIHn+VICsaZSSbzZJ +9EAn24cRDiYCWwBY2573DL6cAi0D9PV =/r6R -----END PGP SIGNATURE----- --/9DWx/yDrRhgMJTb--