Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 21 Jul 2020 15:54:19 +0200
From:      Fabian Keil <freebsd-listen@fabiankeil.de>
To:        Gordon Bergling <gbe@FreeBSD.org>
Cc:        svn-src-all@freebsd.org
Subject:   Re: svn commit: r363363 - head/lib/geom/eli
Message-ID:  <20200721155419.4b127dac@fabiankeil.de>
In-Reply-To: <202007201324.06KDOoti077929@repo.freebsd.org>
References:  <202007201324.06KDOoti077929@repo.freebsd.org>

next in thread | previous in thread | raw e-mail | index | archive | help
--Sig_/uufDM63fUR4rYn8w78y2gF4
Content-Type: text/plain; charset=US-ASCII
Content-Transfer-Encoding: quoted-printable

Gordon Bergling <gbe@FreeBSD.org> wrote:

> Author: gbe (doc committer)
> Date: Mon Jul 20 13:24:50 2020
> New Revision: 363363
> URL: https://svnweb.freebsd.org/changeset/base/363363
>=20
> Log:
>   geli(8): Add an example on how to use geli(8) with a file as encrypted =
storage
>  =20
>   Reviewed by:	bcr (mentor)
>   Approved by:	bcr (mentor)
>   MFC after:	1 week
>   Differential Revision:	https://reviews.freebsd.org/D25741
>=20
> Modified:
>   head/lib/geom/eli/geli.8
>=20
> Modified: head/lib/geom/eli/geli.8
> =3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=
=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=
=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=
=3D=3D=3D=3D
> --- head/lib/geom/eli/geli.8	Mon Jul 20 13:01:19 2020	(r363362)
> +++ head/lib/geom/eli/geli.8	Mon Jul 20 13:24:50 2020	(r363363)
[...]
> +This key should be protected by a passphrase, which
> +is requested when geli init is called.
> +.Bd -literal -offset indent
> +# dd if=3D/dev/random of=3D/root/private0.key bs=3D64 count=3D1
> +# geli init -K /root/private0.key -s 4096 /dev/md0
> +Enter new passphrase:
> +Reenter new passphrase:
> +# dd if=3D/dev/random of=3D/dev/md0.eli bs=3D1m

There seems to be a "geli attach ..." missing after
the "geli init ...".

> +The call of geli attach will ask for the passphrase.
> +It is recommended to do this procedure after the boot, because otherwise
> +the boot process would be waiting for the passphrase input.
> +.Bd -literal -offset indent
> +# geli attach -k /root/private0.key /dev/md0
> +Enter new passphrase:

The expected prompt is just "Enter passphrase:".

Fabian

--Sig_/uufDM63fUR4rYn8w78y2gF4
Content-Type: application/pgp-signature
Content-Description: OpenPGP digital signature

-----BEGIN PGP SIGNATURE-----

iF0EARECAB0WIQTKUNd6H/m3+ByGULIFiohV/3dUnQUCXxbziwAKCRAFiohV/3dU
nX21AKCtcqIlDd+eoKykOE48V4aWcSh2XgCfW2D1KZwA5o0goGZelVuysOlcTtI=
=ybAY
-----END PGP SIGNATURE-----

--Sig_/uufDM63fUR4rYn8w78y2gF4--



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20200721155419.4b127dac>