From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: from mail.saout.de ([127.0.0.1]) by localhost (mail.saout.de [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 8qBfK8Wxxv_h for ; Thu, 6 Sep 2012 21:58:10 +0200 (CEST) Received: from v4.tansi.org (ns.km33513-03.keymachine.de [87.118.94.3]) by mail.saout.de (Postfix) with ESMTP for ; Thu, 6 Sep 2012 21:58:10 +0200 (CEST) Received: from gatewagner.dyndns.org (84-72-142-78.dclient.hispeed.ch [84.72.142.78]) by v4.tansi.org (Postfix) with ESMTPA id 92AFC1404001 for ; Thu, 6 Sep 2012 21:58:10 +0200 (CEST) Date: Thu, 6 Sep 2012 21:58:10 +0200 From: Arno Wagner Message-ID: <20120906195810.GA24770@tansi.org> References: <5036729B.1060905@gmail.com> <20120823193415.GA31534@tansi.org> <50378927.7090508@gmail.com> <20120824144028.GB2407@fancy-poultry.org> <20120824151439.GA30694@tansi.org> <20120905130125.GB11942@tansi.org> <20120906164659.GA20640@tansi.org> <20120906175309.GA1621@fancy-poultry.org> MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: <20120906175309.GA1621@fancy-poultry.org> Subject: Re: [dm-crypt] Encrypt all partitions with dm-crypt List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , To: dm-crypt@saout.de On Thu, Sep 06, 2012 at 07:53:09PM +0200, Heinz Diehl wrote: > On 06.09.2012, Arno Wagner wrote: > > > Encrypted swap is generally fine, as long as it gets a random > > encryption key on system boot. > > This statement implies that swap is insecure if it doesn't get a > random encrption key on system boot. Why do you think it is? I was thinking about automatic swap set-up. If you do that with a non-random key, you have to store it somewhere and that will be a problem. This assumes that encrypted swap is completely independent from the presence (or absence) of any other encryption. Or are you asking why unencrypted swap is insecure? Arno -- Arno Wagner, Dr. sc. techn., Dipl. Inform., Email: arno@wagner.name GnuPG: ID: 1E25338F FP: 0C30 5782 9D93 F785 E79C 0296 797F 6B50 1E25 338F ---- One of the painful things about our time is that those who feel certainty are stupid, and those with any imagination and understanding are filled with doubt and indecision. -- Bertrand Russell