Subject: Re: encrypted filesystem
To: Robert Connolly <ashes1978@videotron.ca>
From: Perry E. Metzger <perry@piermont.com>
List: tech-misc
Date: 09/02/2003 16:45:27
Robert Connolly <ashes1978@videotron.ca> writes:
> CGD isn't quite what Im looking for. Files are not protected from root, or 
> anyone else while its mounted. CGD is fine for swap though.

How could you ever protect things from root? Given the way the rest of
the system works, that's pretty much impossible.

It makes some sense in a network file system to speak of protecting
things from those without the proper credentials, but on a local
machine, "protecting" things from root is impossible.

.pm