Re: summary Re: encrypted swap

David Ford (david@blue-labs.org)
Wed, 08 Aug 2001 03:05:44 -0400


You can't guarantee much if the machine is physically compromised. In
the situation of wiping, you probably won't need swap immediately after
boot so you can afford to execute a script that wipes the file/partition
then mounts it.

It's all easily accomplished in userspace.

David

David Lang wrote:

>only if you can guarenty that there is no way to avoid wiping it even if
>this is the 2nd (or 3rd) hard drive (and what about how swap drives that
>get added to a system after boot)
>
>also this had better be a configuration option. I don't want to wait for
>2g of swap space to be wiped when I boot by webserver (which defeates my
>previous requirement)
>
>David Lang
>

-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@vger.kernel.org
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/