[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: making encrypted $HOME as easy and convenient as possible



Hi there!

On Mon, 12 Sep 2011 06:50:29 +0200, martin f krafft wrote:
> also sprach intrigeri <intrigeri+debian-devel@boum.org> [2011.09.11.2246 +0200]:
>> The d-i already supports easy *full* system encryption, swap
>> included.
>
> I think this is what people should be using, not a high-level hack
> like ecryptfs.

+1, but if you use dm-crypt I still have not understood if SSD TRIM
could be supported or not:

  <http://www.saout.de/pipermail/dm-crypt/2010-April/000742.html>
  <http://www.saout.de/pipermail/dm-crypt/2010-August/001155.html>
  <http://sourceforge.net/tracker/index.php?func=detail&aid=2997551&group_id=136732&atid=736684>

JFTR, the configuration of my 80GB SSD is a separate 200MB /boot, then
everything else including swap as dm-crypt+LVM (except the last 5GB for
paranoid reasons), working like a charm with hibernation as well:

  <http://bugs.debian.org/600671>

Thx, bye,
Gismo / Luca

Attachment: pgpRaA7S23Umi.pgp
Description: PGP signature


Reply to: