Gentoo Archives: gentoo-user

From: felix@×××××××.com
To: gentoo-user@l.g.o
Subject: Re: [gentoo-user] [OT crypto] How to encrypt a directory without root?
Date: Sat, 02 Jan 2010 02:02:26
Message-Id: 20100102002954.GA15161@crowfix.com
In Reply to: Re: [gentoo-user] [OT crypto] How to encrypt a directory without root? by Ming-Che Lee
1 On Fri, Jan 01, 2010 at 10:57:20PM +0100, Ming-Che Lee wrote:
2
3 > Maybe of some help:
4 >
5 > http://www.linuxjournal.com/article/9880
6
7 Looks good to me -- I use some FUSE encryption setup which looks
8 similar, but it's been years since I set it up. It wasn't hard. It
9 has one decided quirk which I consider a feature -- root can read the
10 encrypted volume for backup but *cannot* access the plaintext volume.
11 Another quirk is that filenames are padded to multiples of some
12 configurable length before encryption; these are visible to root. I
13 suppose root could even manipulate them, but I have never tried it.
14
15 I mount and umount it without root, but I think it required initial
16 root access to load a kernel module. Now that happens automatically.
17 This may be a problem if you have no root access at all.
18
19 If you need more details, I suppose I can figure out what I did, but
20 that Linux Journal article looks pretty thorough.
21
22 --
23 ... _._. ._ ._. . _._. ._. ___ .__ ._. . .__. ._ .. ._.
24 Felix Finch: scarecrow repairman & rocket surgeon / felix@×××××××.com
25 GPG = E987 4493 C860 246C 3B1E 6477 7838 76E9 182E 8151 ITAR license #4933
26 I've found a solution to Fermat's Last Theorem but I see I've run out of room o