-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

On Thu, Oct 27, 2016 at 03:13:25PM -0600, Trammell Hudson wrote:
> When I install Qubes r3.2 I do a custom partioning so that I can add
> filesystem labels (boot, root, home, swap), which can simplify the
> initramfs and my custom boot script since the UUID values are not needed.
> This is nice since I don't need to track down the file system UUIDs to
> change the boot parameters.
> 
> Is there a security or other reason to not have the default partitioning
> label the filesystems?

It makes even easier attacks relying on replacing the disk with the fake
one - generally various Evil Maid attacks. But if you're using AEM, it
should be ok.

- -- 
Best Regards,
Marek Marczykowski-Górecki
Invisible Things Lab
A: Because it messes up the order in which people normally read text.
Q: Why is top-posting such a bad thing?
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2

iQEcBAEBCAAGBQJYEoWhAAoJENuP0xzK19csCNEH/1pW9LNVT8soYPpcj3e3CimE
tNexN9OVv0smMM7CupFSsdVyATni+0lOQyT+eUUJ/80WiJLBOkoWW+uUsf9OggUK
Eyc6Z4jRDsENcLEhp/l0fBXAQ100D5lRUgon961mjj1cZ/vMr5VPDqm4WCKPl30X
WvhjdxZXz9MOwpke/jZlAYpQDugE+/q73kjrpfrsg4Y3wR9k13WdIbO8EkVSmdtY
01UUYklU1JpQKjW4adRJCza1zFj2Qv7tWLSPR3YWQBxgYRTTbo+jLQChaTVe/6A0
8Pc/ME0/R0rkkLuhaj77v4StGwxfIjo9FnLGXlJEpD17J0JfvEJUEa9Cdpj74eg=
=JTN8
-----END PGP SIGNATURE-----

-- 
You received this message because you are subscribed to the Google Groups 
"qubes-devel" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to [email protected].
To post to this group, send email to [email protected].
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-devel/20161027225425.GA7073%40mail-itl.
For more options, visit https://groups.google.com/d/optout.

Reply via email to