[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: LVM+RAID+CRYPT



On 1/8/2010 5:26 AM, Stan Hoeppner wrote:
Sjors van der Pluijm put forth on 1/8/2010 5:13 AM:

3. Is it ok to have swap and /boot on an encrypted LVM?

Never run encryption on swap.  Doing so merely burdens performance.  I doubt
even NSA, CIA, MI6 encrypt swap partitions on workstations.

I've never tried to boot from an encrypted /boot, so I really can't say if it
would work or not.  Why can't/won't you create 3 partitions?


4:

[boot] 200MB mounted as /boot normal ext2
[swap] 1-8GB mounted as normal swap partition
[root] [1/3 remaining space] mounted as / [root] and encrypted however you like

[home]  [2/3 remaining space]  probably the most urgent for encryption


Mark Allums


Reply to: