Automatic Geli?

Pawel Jakub Dawidek pjd at FreeBSD.org
Wed Apr 11 09:36:37 UTC 2012


On Mon, Apr 09, 2012 at 06:34:10PM +0000, Fa bio wrote:
> Is it possible to recompile geli/kernel to automatically enter with password and/or key? I´ll explain with an example:
> 
> If you see a cache system called SpeedR (http://www.speedr.com.br/?locale=en), in their site you can download the ISO and burn it to a CD (http://www.speedr.com.br/rc/speedr-0...rc18.2-x64.iso)
> 
> It´s very interesting, because all partitions are encrypted with Geli, 
> but there is no passphrase to enter at boot time or key directions in loader.conf file.

If they distribute encrypted image that actually works, it means they
distribute the key along with the image. As was already noted this
serves no purpose, as you can extract the key from the image and decrypt
the whole thing on your own.

-- 
Pawel Jakub Dawidek                       http://www.wheelsystems.com
FreeBSD committer                         http://www.FreeBSD.org
Am I Evil? Yes, I Am!                     http://tupytaj.pl
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 196 bytes
Desc: not available
Url : http://lists.freebsd.org/pipermail/freebsd-geom/attachments/20120411/c2c0fa7a/attachment.pgp


More information about the freebsd-geom mailing list