From mboxrd@z Thu Jan 1 00:00:00 1970 Received: from pigeon.gentoo.org ([69.77.167.62] helo=lists.gentoo.org) by finch.gentoo.org with esmtp (Exim 4.60) (envelope-from ) id 1JgZbX-0006Lw-MC for garchives@archives.gentoo.org; Tue, 01 Apr 2008 06:04:19 +0000 Received: from pigeon.gentoo.org (localhost [127.0.0.1]) by pigeon.gentoo.org (Postfix) with SMTP id EE977E0643; Tue, 1 Apr 2008 06:04:17 +0000 (UTC) Received: from mgw-mx06.nokia.com (smtp.nokia.com [192.100.122.233]) by pigeon.gentoo.org (Postfix) with ESMTP id A3833E0643 for ; Tue, 1 Apr 2008 06:04:17 +0000 (UTC) Received: from esebh107.NOE.Nokia.com (esebh107.ntc.nokia.com [172.21.143.143]) by mgw-mx06.nokia.com (Switch-3.2.6/Switch-3.2.6) with ESMTP id m31642M6001370 for ; Tue, 1 Apr 2008 09:04:15 +0300 Received: from esebh102.NOE.Nokia.com ([172.21.138.183]) by esebh107.NOE.Nokia.com with Microsoft SMTPSVC(6.0.3790.3959); Tue, 1 Apr 2008 09:04:10 +0300 Received: from de-du21-dhcp00232.emea.nsn-net.net ([10.146.2.32]) by esebh102.NOE.Nokia.com with Microsoft SMTPSVC(6.0.3790.3959); Tue, 1 Apr 2008 09:04:10 +0300 From: Dirk Heinrichs Organization: Capgemini Deutschland GmbH To: gentoo-user@lists.gentoo.org Subject: Re: [gentoo-user] Cryptfs Date: Tue, 1 Apr 2008 08:04:10 +0200 User-Agent: KMail/1.9.9 References: <1206811941.13252.13.camel@NOTE_GENTOO64.PHHEIMNETZ> <47F10E3A.1080401@online.de> <20080331231156.036f2049@loonquawl.digimed.co.uk> In-Reply-To: <20080331231156.036f2049@loonquawl.digimed.co.uk> Precedence: bulk List-Post: List-Help: List-Unsubscribe: List-Subscribe: List-Id: Gentoo Linux mail X-BeenThere: gentoo-user@lists.gentoo.org Reply-to: gentoo-user@lists.gentoo.org MIME-Version: 1.0 Content-Type: multipart/signed; boundary="nextPart1978202.jiV6J11g3X"; protocol="application/pgp-signature"; micalg=pgp-sha1 Content-Transfer-Encoding: 7bit Message-Id: <200804010804.10144.dirk.heinrichs.ext@nsn.com> X-OriginalArrivalTime: 01 Apr 2008 06:04:10.0585 (UTC) FILETIME=[3404AC90:01C893BE] X-Nokia-AV: Clean X-Archives-Salt: 3f1304d8-1738-4327-bbbb-b94c06444067 X-Archives-Hash: c582b3c065a035cb47ddce6fc23fe0ba --nextPart1978202.jiV6J11g3X Content-Type: text/plain; charset="utf-8" Content-Transfer-Encoding: quoted-printable Content-Disposition: inline Am Dienstag, 1. April 2008 schrieb ext Neil Bothwick: > On Mon, 31 Mar 2008 18:15:54 +0200, Dirk Heinrichs wrote: > > > That's right, because the keys aren't in /boot ;-) > > > > But they are somewhere. He who has cracked your box can simply look > > into /etc/conf.d/dmcrypt to find out where your keyfile is stored and > > mount that fs if needed. > > Not without the password. That filesystem uses a password, not a keyfile. You didn't tell this before. Now I finally got the whole picture. Bye... Dirk =2D-=20 Dirk Heinrichs | Tel: +49 (0)162 234 3408 Configuration Manager | Fax: +49 (0)211 47068 111 Capgemini Deutschland | Mail: dirk.heinrichs@capgemini.com Wanheimerstra=C3=9Fe 68 | Web: http://www.capgemini.com D-40468 D=C3=BCsseldorf | ICQ#: 110037733 GPG Public Key C2E467BB | Keyserver: www.keyserver.net --nextPart1978202.jiV6J11g3X Content-Type: application/pgp-signature; name=signature.asc Content-Description: This is a digitally signed message part. -----BEGIN PGP SIGNATURE----- Version: GnuPG v2.0.7 (GNU/Linux) iD8DBQBH8dBa8NVtnsLkZ7sRAlR7AJ9EYAGr06APQHhXwtoGx01OHdnbrgCfYPyH X+75E8gMuwK2xx9YRayTW7U= =kMfF -----END PGP SIGNATURE----- --nextPart1978202.jiV6J11g3X-- -- gentoo-user@lists.gentoo.org mailing list