tech-security archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

Re: cgd (encrypted disk) support in bootblocks (Was: summer of code - scrub feature)



On Mon, Mar 23, 2009 at 1:33 PM, Todd Vierling <tv%netbsd.org@localhost> wrote:
> (Or as an
> alternative, a basic boot system with the base OS to be used at full
> runtime, but with /home, most of /var, /tmp, and other writable areas
> on a manually mounted cgd; that would not require a remount of /.)

Thinko....  s:/tmp:swap:

In a setup like this, you'd want /tmp (and possibly parts of /var) on
a ramdisk, and swap not added until cgd mount time.

-- 
-- Todd Vierling <tv%duh.org@localhost> <tv%pobox.com@localhost> 
<todd%vierling.name@localhost>


Home | Main Index | Thread Index | Old Index