public inbox for gentoo-user@lists.gentoo.org
 help / color / mirror / Atom feed
From: Dale <rdalek1967@gmail.com>
To: gentoo-user@lists.gentoo.org
Subject: Re: [gentoo-user] Demise of Truecrypt - surprised I haven't seen t his discussed here yet?
Date: Mon, 02 Jun 2014 05:27:44 -0500	[thread overview]
Message-ID: <538C51A0.8050903@gmail.com> (raw)
In-Reply-To: <538C4C9A.5080107@gmail.com>

Alan McKinnon wrote:
> On 02/06/2014 11:48, Dale wrote:
>
>> I admit, I have never used encryption like this before.  I am assuming
>> that if I logout of my GUI, then it is encrypted at that point?  Once I
>> log back in, it decrypts it again?  Am I at least close? 
> All disk encryption works to this general plan:
>
> You log in (or boot up), the system asks for a password/key or whatever,
> then unlocks the encryption used. Reads for the disk are decrypted on
> the fly, writes are encrypted on the fly. What is on disk is always in
> an encrypted state.
>
> Safety depends on how you set it up - if you use full disk encryption
> then you must unlock it at boot time. The disk is still readable until
> you power off or reboot.
>
> If you encrypt your home directory then you unlock it when you log in so
> logging out of your DE safely locks things again.
>
> You most likely want the second option, the odds that you have a valid
> need to protect /usr and /opt are not good. As a regular user out there,
> the stuff you want to protect is in /home (or you could easily move it
> to /home). You'd also want to encrypt /tmp and swap as your running apps
> often write secret stuff there (like ssh and gpg sockets) - that is
> really just an extension of why you want to encrpyt /home itself
>

The second option does sound what I am looking for.  Basically, if I log
out but leave my computer on, leave home, some crook/NSA type breaks in
and tries to access something or steals my whole puter, they would just
get garbage for data.  That seems to fit the second option best. 

I'll have to get me a new hard drive first tho.  I'm going to try and
get a 4TB drive at some point and use the current 3TB drive for backups,
encrypted to I hope. 

Thanks for the info.  Water is not quite so muddy. 

Dale

:-)  :-) 

-- 
I am only responsible for what I said ... Not for what you understood or how you interpreted my words!



  reply	other threads:[~2014-06-02 10:27 UTC|newest]

Thread overview: 52+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2014-06-01 12:31 [gentoo-user] Demise of Truecrypt - surprised I haven't seen t his discussed here yet? Tanstaafl
2014-06-01 17:45 ` Volker Armin Hemmann
2014-06-02  8:22   ` Dale
2014-06-02  8:53     ` Michael Hampicke
2014-06-02  9:20       ` Neil Bothwick
2014-06-02 10:24         ` Michael Hampicke
2014-06-02 11:34         ` Mark David Dumlao
2014-06-02 12:27           ` Neil Bothwick
2014-06-02  9:24     ` Volker Armin Hemmann
2014-06-02  9:34       ` Neil Bothwick
2014-06-02  9:48         ` Dale
2014-06-02 10:06           ` Alan McKinnon
2014-06-02 10:27             ` Dale [this message]
2014-06-02 10:56               ` Neil Bothwick
2014-06-02 11:04                 ` Dale
2014-06-02 11:10                   ` Neil Bothwick
2014-06-02 11:33                     ` Dale
2014-06-02 13:23                     ` J. Roeleveld
2014-06-02 11:28                 ` Rich Freeman
2014-06-02 12:06                   ` Dale
2014-06-02 12:28                     ` Michael Hampicke
2014-06-02 12:30                     ` Matti Nykyri
2014-06-02 13:27                     ` Rich Freeman
2014-06-02 13:40                   ` J. Roeleveld
2014-06-02 12:23                     ` Matti Nykyri
2014-06-02 12:36                       ` godzil
2014-06-02 12:58                         ` Matti Nykyri
2014-06-02 13:29                           ` godzil
2014-06-02 14:52                       ` J. Roeleveld
2014-06-02 13:23                         ` Matti Nykyri
2014-06-02 15:29                           ` J. Roeleveld
2014-06-03 18:53                             ` Matti Nykyri
2014-06-03 21:05                               ` J. Roeleveld
2014-06-03 19:53                                 ` Matti Nykyri
2014-06-03 21:27                                   ` Matti Nykyri
2014-06-02 18:14                         ` Volker Armin Hemmann
2014-06-02 17:14                   ` Volker Armin Hemmann
2014-06-02 19:26                     ` J. Roeleveld
2014-06-02 13:22                 ` J. Roeleveld
2014-06-02 16:54                 ` Volker Armin Hemmann
2014-06-02 10:43             ` Rich Freeman
2014-06-02 10:54             ` Neil Bothwick
2014-06-04 19:59               ` Frank Steinmetzger
2014-06-04 23:24                 ` Neil Bothwick
2014-06-05 16:52                   ` Frank Steinmetzger
2014-06-05 16:57                     ` Rich Freeman
2014-06-02 10:22   ` Tanstaafl
2014-06-02 10:57     ` Volker Armin Hemmann
2014-06-03  7:17 ` Marc Stürmer
2014-06-03 10:00   ` Tanstaafl
2014-06-03 12:02     ` Mick
2014-06-03 19:59     ` Marc Stürmer

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=538C51A0.8050903@gmail.com \
    --to=rdalek1967@gmail.com \
    --cc=gentoo-user@lists.gentoo.org \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox