Using Filesystem Encryption on Gentoo
Links
dm-crypt article on gentoo wiki
dm-crypt article on gentoo wiki archive
LUKS article by Suno Ano
general security article by Suno Ano
Encrypting a single file
tbd
Encrypting a single partion
tbd
Encrypting swap and tmp
tbd
Encrypting root
tbd
Mounting an existing luks partition
cryptsetup luksOpen /dev/sda1 <mapname>- That makes a virtual device available as /dev/mapper/<mapname>
- Mount the virtual device just like you would any other partition.
mount /dev/mapper/<mapname> /mnt/<mntname>
When you're done, just reverse the sequence:
umount /mnt/<mntname>cryptsetup luksClose <mapname>
Managing dmcrypt settings and automating mounts
- Edit
/etc/conf.d/dmcrypt. - Add dmcrypt to boot services:
rc-update add dmcrypt default