From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: from mail.saout.de ([127.0.0.1]) by localhost (mail.saout.de [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 4aD68i4bI4U9 for ; Sat, 30 Jul 2011 20:43:00 +0200 (CEST) Received: from v4.tansi.org (ns.km33513-03.keymachine.de [87.118.94.3]) by mail.saout.de (Postfix) with ESMTP for ; Sat, 30 Jul 2011 20:42:59 +0200 (CEST) Received: from gatewagner.dyndns.org (84-74-166-21.dclient.hispeed.ch [84.74.166.21]) by v4.tansi.org (Postfix) with ESMTPA id 88116205F93 for ; Sat, 30 Jul 2011 20:42:59 +0200 (CEST) Date: Sat, 30 Jul 2011 20:42:57 +0200 From: Arno Wagner Message-ID: <20110730184257.GA4529@tansi.org> References: <6A594D5B-7048-4A81-AA1A-E2F5C895E9F4@gmail.com> <20110728050428.GA5441@tansi.org> <4E310C39.7090200@redhat.com> MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: <4E310C39.7090200@redhat.com> Subject: Re: [dm-crypt] Extract master key from running system List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , To: dm-crypt@saout.de I just added a link to the script by Milan and an explanation on how to do this manually to the FAQ. Arno On Thu, Jul 28, 2011 at 09:14:01AM +0200, Milan Broz wrote: > On 07/28/2011 07:04 AM, Arno Wagner wrote: > > I have to admit that there is no info in the FAQ because when I wrote > > that I did not have time to find out. In the mean time I have had > > an opportunity to do so, so I should probably update the FAQ. First, > > I think trying to dump will not create additional damage. Here is what > > works on my machine: > > > > cryptsetup luksDump --dump-master-key > > For luksDump you need valid LUKS header. > > btw I added script which tries to extract master key automatically > fro active device and prepares cryptsetup parameters. > > http://code.google.com/p/cryptsetup/source/browse/trunk/misc/luks-header-from-active > > The steps there are quite straightforward. > > Milan > > _______________________________________________ > dm-crypt mailing list > dm-crypt@saout.de > http://www.saout.de/mailman/listinfo/dm-crypt > -- Arno Wagner, Dr. sc. techn., Dipl. Inform., CISSP -- Email: arno@wagner.name GnuPG: ID: 1E25338F FP: 0C30 5782 9D93 F785 E79C 0296 797F 6B50 1E25 338F ---- Cuddly UI's are the manifestation of wishful thinking. -- Dylan Evans If it's in the news, don't worry about it. The very definition of "news" is "something that hardly ever happens." -- Bruce Schneier