summaryrefslogtreecommitdiff
path: root/libre/filesystem/crypttab
diff options
context:
space:
mode:
authorParabola <dev@list.parabolagnulinux.org>2011-04-05 14:26:38 +0000
committerParabola <dev@list.parabolagnulinux.org>2011-04-05 14:26:38 +0000
commit415856bdd4f48ab4f2732996f0bae58595092bbe (patch)
treeede2018b591f6dfb477fe9341ba17b9bc000fab9 /libre/filesystem/crypttab
Tue Apr 5 14:26:38 UTC 2011
Diffstat (limited to 'libre/filesystem/crypttab')
-rw-r--r--libre/filesystem/crypttab33
1 files changed, 33 insertions, 0 deletions
diff --git a/libre/filesystem/crypttab b/libre/filesystem/crypttab
new file mode 100644
index 000000000..dd6994b5a
--- /dev/null
+++ b/libre/filesystem/crypttab
@@ -0,0 +1,33 @@
+# crypttab: Mappings for encrypted partitions
+#
+# Each mapped device will be created in /dev/mapper, so your /etc/fstab
+# should use the /dev/mapper/{NAME} paths for encrypted devices.
+#
+# Each PASSWORD field can be an absolute pathname to a key file (starting
+# with a slash, recommended) or a literal string that will be used as
+# a passphrase. To use special characters in the passphrase, surround it
+# by quotes, the usual bash quoting rules apply.
+# There are two special keywords that cannot be used as passphrases:
+# - ASK ask for a passphrase on boot
+# - SWAP use a random key and create a swapspace afterwards
+# WARNING: use the SWAP keyword carefully, as it overwrites the data
+# on the specified partition
+#
+# To create a key file:
+# hashalot -n 32 ripemd160 >/etc/crytfs.key
+# or
+# dd if=/dev/urandom of=/etc/cryptfs.key bs=256 count=1
+#
+# To pass additional options to cryptsetup for non-LUKS partitions, use the
+# fourth column.
+#
+# NOTE: Do not list your root (/) partition here, it must be set up
+# beforehand by the initramfs (/etc/mkinitcpio.conf).
+
+
+# NAME SOURCE DEVICE PASSWORD OPTIONS
+#home /dev/hda4 mypassword
+#data1 /dev/hda3 "my \"password\""
+#data2 /dev/hda5 /etc/cryptfs.key
+#swap /dev/hdx4 SWAP -c aes-cbc-essiv:sha256 -s 256
+#vol /dev/hdb7 ASK