Can luks in fedora 10 , encrypt using a combination of keys and passphrase

Huzaifa Sidhpurwala huzaifas at redhat.com
Mon Dec 8 07:31:03 UTC 2008


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Bruno Wolff III wrote:
> On Mon, Dec 08, 2008 at 12:50:44 +0530,
>> Can we add a key to the already encrypted luks partition, so that when
>> the user forgets the passphrase, we can make use of the private key + IT
>> passphrase and unlock the partitions?
> 
> Luks supports multiple keys. In general you need to know the passphrase
> for a key slot in order to muck with it in supported ways. So users should
> not be able to change the admin passphrase without admin type access.
Right,
But i am looking at a scenario in which i can have the encryption done
with passphrase + a public key,
i dont want to depend upon just the passphrase to decrypt stuff

- --
Regards,
Huzaifa Sidhpurwala, RHCE, CCNA (IRC: huzaifas)


GnuPG Fingerprint:
3A0F DAFB 9279 02ED 273B FFE9 CC70 DCF2 DA5B DAE5



-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.5 (GNU/Linux)
Comment: Using GnuPG with Red Hat - http://enigmail.mozdev.org

iD8DBQFJPM03zHDc8tpb2uURAlN2AJoDPl2owbjWcLLJaX2+4tQbq7G9zACfbOjI
QUDyEzMhYI/Zu2xcoCLOcw0=
=9ZSL
-----END PGP SIGNATURE-----




More information about the devel mailing list