-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 On Thu, Oct 27, 2016 at 03:13:25PM -0600, Trammell Hudson wrote: > When I install Qubes r3.2 I do a custom partioning so that I can add > filesystem labels (boot, root, home, swap), which can simplify the > initramfs and my custom boot script since the UUID values are not needed. > This is nice since I don't need to track down the file system UUIDs to > change the boot parameters. > > Is there a security or other reason to not have the default partitioning > label the filesystems?
It makes even easier attacks relying on replacing the disk with the fake one - generally various Evil Maid attacks. But if you're using AEM, it should be ok. - -- Best Regards, Marek Marczykowski-Górecki Invisible Things Lab A: Because it messes up the order in which people normally read text. Q: Why is top-posting such a bad thing? -----BEGIN PGP SIGNATURE----- Version: GnuPG v2 iQEcBAEBCAAGBQJYEoWhAAoJENuP0xzK19csCNEH/1pW9LNVT8soYPpcj3e3CimE tNexN9OVv0smMM7CupFSsdVyATni+0lOQyT+eUUJ/80WiJLBOkoWW+uUsf9OggUK Eyc6Z4jRDsENcLEhp/l0fBXAQ100D5lRUgon961mjj1cZ/vMr5VPDqm4WCKPl30X WvhjdxZXz9MOwpke/jZlAYpQDugE+/q73kjrpfrsg4Y3wR9k13WdIbO8EkVSmdtY 01UUYklU1JpQKjW4adRJCza1zFj2Qv7tWLSPR3YWQBxgYRTTbo+jLQChaTVe/6A0 8Pc/ME0/R0rkkLuhaj77v4StGwxfIjo9FnLGXlJEpD17J0JfvEJUEa9Cdpj74eg= =JTN8 -----END PGP SIGNATURE----- -- You received this message because you are subscribed to the Google Groups "qubes-devel" group. To unsubscribe from this group and stop receiving emails from it, send an email to [email protected]. To post to this group, send email to [email protected]. To view this discussion on the web visit https://groups.google.com/d/msgid/qubes-devel/20161027225425.GA7073%40mail-itl. For more options, visit https://groups.google.com/d/optout.
