Full disk encryption FAQ update request

2020-05-09 Thread Sarah Newman
We had a VPS customer ask for help on full disk encryption, and since following the instructions on https://www.openbsd.org/faq/faq14.html#softraidFDE did not work with a serial console, we published a blog post on it: https://prgmr.com/blog/openbsd/2020/05/08/openbsd-encrypted-root.html I

Re: FAQ update

2016-12-05 Thread Bryan Vyhmeister
On Mon, Dec 05, 2016 at 09:12:49AM -0800, Todd Carpenter wrote: > Next, create the mirror with the bioctl(8) > command. > > # *bioctl -c 1 -l sd0a,sd1a softraid0* > > > *Thats good, but the next part shows* > > > # *bioctl -c C -l sd0a softraid0* > New

Re: FAQ update

2016-12-05 Thread Ax0n
The first command will create a new virtual drive device ( sd2 perhaps?) and you'll want to create your softraid crypto volume on that device, not on sd0. Note that I've never tried this, and that the bootloader might need some additional help after you have the striped softraid encrypted. On

FAQ update

2016-12-05 Thread Todd Carpenter
Hi guys, I was wondering if you could update the documentation to show how to both strip and geli encrypt the device.. cut -- to Next, create the mirror with the bioctl(8) command. # *bioctl -c 1 -l sd0a,sd1a softraid0* *Thats good, but the next part shows*