From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: from v1.tansi.org (mail.tansi.org [84.19.178.47]) by mail.server123.net (Postfix) with ESMTP for ; Tue, 12 May 2020 16:28:28 +0200 (CEST) Received: from gatewagner.dyndns.org (81-6-44-245.init7.net [81.6.44.245]) by v1.tansi.org (Postfix) with ESMTPA id 398DD14016F for ; Tue, 12 May 2020 16:28:27 +0200 (CEST) Date: Tue, 12 May 2020 16:28:27 +0200 From: Arno Wagner Message-ID: <20200512142827.GA25380@tansi.org> References: <144c987674b937a9fdd96f69d8e88743fbce1a42.camel@yahoo.com> MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: <144c987674b937a9fdd96f69d8e88743fbce1a42.camel@yahoo.com> Subject: Re: [dm-crypt] FAQ :WAS: LUKS2 on disk format List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , To: dm-crypt@saout.de Hi JT, thanks I had already planned to add this one. Regards, Arno On Tue, May 12, 2020 at 01:15:27 CEST, JT wrote: > I had a similar question on my list. This would be a good one for the > revised FAQ. > > Q: What is the size of the LUKS2 header? > A: the LUKS header size is configurable. 16MB is the default size. > It can be changed by ..... > > Q: Does all metadata exist in the header? Can I be sure that there is > no LUKS metadata somewhere in the middle or in the end of the drive? > A: Yes, all LUKS metadata is stored in the LUKS heaer. (Most of the > area is reserved for keyslots, used in online reencryption.) > > There is a small exception if you use experimental integrity protection > (authenticated encryption) where dm-crypt is stacked over dm-integrity > device. In that case there is a dm-integrity superblock at the > beginning of data area which contains only configuration of dm-integrity metadata. No LUKS metadata is stored in this location. The superblock is required by the kernel dm-integrity implementation. > > > _______________________________________________ > dm-crypt mailing list > dm-crypt@saout.de > https://www.saout.de/mailman/listinfo/dm-crypt -- Arno Wagner, Dr. sc. techn., Dipl. Inform., Email: arno@wagner.name GnuPG: ID: CB5D9718 FP: 12D6 C03B 1B30 33BB 13CF B774 E35C 5FA1 CB5D 9718 ---- A good decision is based on knowledge and not on numbers. -- Plato If it's in the news, don't worry about it. The very definition of "news" is "something that hardly ever happens." -- Bruce Schneier