Re: [systemd-devel] Authenticated Boot and Disk Encryption on Linux

2021-10-04 Thread Lennart Poettering
On Do, 30.09.21 18:54, Łukasz Stelmach (stl...@poczta.fm) wrote: > > I have been working on code in homed to "balance" free space between > > active home dirs in regular intervals (shorter intervals when disk > > space is low, higher intervals when there's plenty). Also, right now > > we already r

Re: [systemd-devel] Authenticated Boot and Disk Encryption on Linux

2021-09-30 Thread Łukasz Stelmach
Lennart Poettering writes: > On Mi, 29.09.21 21:09, Łukasz Stelmach (stl...@poczta.fm) wrote: >> Hi, Lennart. >> >> I read your blog post and there is little I can add regarding >> encryption/authentication*. However, distributions need to address one >> more detail, I think. You've mentioned rec

Re: [systemd-devel] Authenticated Boot and Disk Encryption on Linux

2021-09-30 Thread Lennart Poettering
On Mi, 29.09.21 21:09, Łukasz Stelmach (stl...@poczta.fm) wrote: > Hi, Lennart. > > I read your blog post and there is little I can add regarding > encryption/authentication*. However, distributions need to address one > more detail, I think. You've mentioned recovery scenarios, but even with > an

Re: [systemd-devel] Authenticated Boot and Disk Encryption on Linux

2021-09-29 Thread Łukasz Stelmach
Hi, Lennart. I read your blog post and there is little I can add regarding encryption/authentication*. However, distributions need to address one more detail, I think. You've mentioned recovery scenarios, but even with an additional set of keys stored securely, there are enough moving parts in FDE