Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 04 Sep 2014 09:53:07 +0100
From:      Pete French <petefrench@ingresso.co.uk>
To:        freebsd-geom@freebsd.org, karl@denninger.net
Subject:   Re: Attempt to add multiple device attachment to "geli attach"
Message-ID:  <E1XPSmx-0005PO-Uk@dilbert.ingresso.co.uk>
In-Reply-To: <54076871.5010405@denninger.net>

next in thread | previous in thread | raw e-mail | index | archive | help
> Take the following:
>
> label/pool0
> label/pool1
> label/pool2
> label/pool3
>
> (all relative to /dev, of course)
>
> These are all gpt partitions on different devices (typically full disks=20
> less labels.)  You "geli init" them and then attach them and build a=20
> raidz2 pool on that.
>
> OK, now the system is rebooted.  If you use the rc.conf file's option to
> request geli passwords during the boot you had better not screw up three
> times for only ONE of these volumes or the pool WILL come up degraded!

I hit this ne when I used to run ZFs on top of geli. The solution I came
up with was to have a tiny partition which requested the password, and
then for that devide to be used as the key file for all the others.
That way the password is only requested once, but decrypts all drives if
successful. We ran that way for a long tme and it worked well.

Irrelevent to the oatch of course, which is a good thing, but just pounting ut
one way round it in practice using the current setup.

-pete.



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?E1XPSmx-0005PO-Uk>