Re: [Dovecot] Disk Encryption

2013-03-27 Thread Simon Brereton
On 27 March 2013 05:36, Xin Li delp...@delphij.net wrote: -BEGIN PGP SIGNED MESSAGE- Hash: SHA256 On 3/25/13 6:24 AM, Simon Brereton wrote: On 25 March 2013 12:30, Robert Schetterer r...@sys4.de wrote: Am 25.03.2013 11:03, schrieb Simon Brereton: Hi As I understand it email

Re: [Dovecot] Disk Encryption

2013-03-27 Thread Jeroen Massar
[..] Currently my mail store isn't encrypted and I would like to know if it is possible to do that, and if so, maybe get some pointers. There are two main roads: - filesystem/disk based encryption * Fast and easy to setup though (eg LUKS on Linux) * does not protect against a running

[Dovecot] Disk Encryption

2013-03-25 Thread Simon Brereton
Hi As I understand it email headers need to be unencrypted (otherwise DKIM doesn't work). From the MUA to either Postfix, or Dovecot the connection is (or can/should be) secured with TLS/SSL. What I would like to know is if it is possible to encrypt the mailstore? Postfix is using Dovecot for

Re: [Dovecot] Disk Encryption

2013-03-25 Thread Robert Schetterer
Am 25.03.2013 11:03, schrieb Simon Brereton: Hi As I understand it email headers need to be unencrypted (otherwise DKIM doesn't work). From the MUA to either Postfix, or Dovecot the connection is (or can/should be) secured with TLS/SSL. What I would like to know is if it is possible to

Re: [Dovecot] Disk Encryption

2013-03-25 Thread Simon Brereton
On 25 March 2013 12:30, Robert Schetterer r...@sys4.de wrote: Am 25.03.2013 11:03, schrieb Simon Brereton: Hi As I understand it email headers need to be unencrypted (otherwise DKIM doesn't work). From the MUA to either Postfix, or Dovecot the connection is (or can/should be) secured with

Re: [Dovecot] Disk Encryption

2013-03-25 Thread Reindl Harald
Am 25.03.2013 14:24, schrieb Simon Brereton: crypt storage isnt the saveness per default, someone hacking the system and get root may hack your crypt storage too etc, also to big theme for here Robert, indeed, this is sort of my point. If we encrypt laptop harddrives to prevent