public inbox for gentoo-user@lists.gentoo.org
 help / color / mirror / Atom feed
From: Dirk Heinrichs <dirk.heinrichs@online.de>
To: gentoo-user@lists.gentoo.org
Subject: Re: /boot or not /boot (was Re: [gentoo-user] can't stop the panic on eeepc)
Date: Sat, 9 May 2009 14:54:22 +0200	[thread overview]
Message-ID: <200905091454.22915.dirk.heinrichs@online.de> (raw)
In-Reply-To: <4A057B2F.9050804@gmail.com>

[-- Attachment #1: Type: text/plain, Size: 816 bytes --]

Am Samstag, 9. Mai 2009 14:46:39 schrieb Dale:

> Wasn't there a security reason for this setup at one time?  If you put
> /boot  on a separate partition, then the only time it needed to be
> mounted was to update the kernel or edit grub/lilo.  That was what I was
> reading when I installed Gentoo oh so many ages ago.
>
> Is this still true?

Of course, it needs to mounted rw for the few seconds needed to discover the 
LVs, ask the user for the passphrase and create the dmcrypt mapping. Then it's 
unmounted again and remounted ro during normal system boot. I don't consider 
this a security problem. If it was, I could also stop using Linux altogether, 
since there are also other filesystem on my system which need to be mounted rw 
if the system should do something useful.

Bye...

	Dirk

[-- Attachment #2: This is a digitally signed message part. --]
[-- Type: application/pgp-signature, Size: 190 bytes --]

  reply	other threads:[~2009-05-09 12:54 UTC|newest]

Thread overview: 33+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2009-05-06 19:51 [gentoo-user] can't stop the panic on eeepc maxim wexler
2009-05-06 20:15 ` Daniel da Veiga
2009-05-06 20:41 ` Masood Ahmed
2009-05-07 16:37   ` Dirk Heinrichs
2009-05-07 16:48     ` Saphirus Sage
2009-05-07 16:52       ` Dirk Heinrichs
2009-05-07 19:37       ` Alan McKinnon
2009-05-07 20:46         ` Dirk Heinrichs
2009-05-07 20:53           ` Alan McKinnon
2009-05-07 21:00             ` Volker Armin Hemmann
2009-05-07 21:16               ` Alan McKinnon
2009-05-07 21:34                 ` Neil Bothwick
2009-05-07 21:42                   ` Alan McKinnon
2009-05-08 17:04             ` Dirk Heinrichs
2009-05-08 17:17               ` Daniel da Veiga
2009-05-08 20:58                 ` Dirk Heinrichs
2009-05-08 21:12                   ` Neil Bothwick
2009-05-08 21:23                     ` Dirk Heinrichs
2009-05-09 10:20                   ` Stroller
2009-05-09 12:41                     ` /boot or not /boot (was Re: [gentoo-user] can't stop the panic on eeepc) Dirk Heinrichs
2009-05-09 12:46                       ` Dale
2009-05-09 12:54                         ` Dirk Heinrichs [this message]
2009-05-09 13:15                           ` Dale
2009-05-09 23:34                             ` Neil Bothwick
2009-05-09 23:58                               ` Dale
2009-05-10  6:48                             ` Francesco Talamona
2009-05-10  7:50                               ` Dale
2009-05-09 13:13                       ` Stroller
2009-05-09 13:23                         ` [gentoo-user] Re: /boot or not /boot Dirk Heinrichs
2009-05-09 15:23                         ` /boot or not /boot (was Re: [gentoo-user] can't stop the panic on eeepc) Alan McKinnon
2009-05-10 12:24                           ` Stroller
2009-05-11 17:09                             ` [gentoo-user] Re: /boot or not /boot Dirk Heinrichs
2009-05-07 16:35 ` [gentoo-user] can't stop the panic on eeepc Dirk Heinrichs

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=200905091454.22915.dirk.heinrichs@online.de \
    --to=dirk.heinrichs@online.de \
    --cc=gentoo-user@lists.gentoo.org \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox