Hi all, another noobie question for y'all.
I am dual booting windows and debian, I was wondering if it's possible to do LUKS post-install at this point or whether I literally have to wipe the drive in order to do so.
I am not an expert on partitioning, hope you guys can give your thoughts.
Thanks!
Scheduled Maintenance: We are aware of an issue with Google, AOL, and Yahoo services as email providers which are blocking new registrations. We are trying to fix the issue and we have several internal and external support tickets in process to resolve the issue. Please see: viewtopic.php?t=158230
LUKS Post-Install? [solved]
LUKS Post-Install? [solved]
Last edited by user2635 on 2017-10-01 14:00, edited 1 time in total.
phil the linux newbie
debian 9 stable since aug 2017
please teach me linux :)
debian 9 stable since aug 2017
please teach me linux :)
-
- Global Moderator
- Posts: 3049
- Joined: 2017-09-17 07:12
- Has thanked: 5 times
- Been thanked: 132 times
Re: LUKS Post-Install?
You do not have to wipe anything. But creating a LUKS volume in a partition has the same effects as formatting a partition : it overwrites metadata and makes the existing data unreachable.
Re: LUKS Post-Install?
Never mind, this was sufficient for me:
https://www.howtogeek.com/116032/how-to ... ng-ubuntu/
Thanks!
https://www.howtogeek.com/116032/how-to ... ng-ubuntu/
Thanks!
phil the linux newbie
debian 9 stable since aug 2017
please teach me linux :)
debian 9 stable since aug 2017
please teach me linux :)
Re: LUKS Post-Install?
If you are not need encrypt your home at every time then for convenient:user2635 wrote:Never mind, this was sufficient for me:
https://www.howtogeek.com/116032/how-to ... ng-ubuntu/
Thanks!
Keep your unencrypted home.
When you want use your encrypted home use cryptsetup open it and mount it to your current home directory,then pkill -9 $(whoami) to ensure all your program is write to encrypted home device.
If you want encrypt whole system due you worry your system program to been forgery,then at least you need ensure your bootloader or other similar unencrypted binary data or program that handle your decrypt password (such as kernel,initramfs file ,/boot directory, e.t.c.)is can't write or replaced by any ways for attacher.
Because those binary data is can't to encrypted for boot encrypted system;otherwise you can't decrypt your encrypted system and boot it.
BTW:
You can install multiple debian or many other GNU/Linux system to single physically partition by custom your initramfs(initrd.gz)
Also see:
https://www.kernel.org/doc/Documentatio ... tramfs.txt
https://www.kernel.org/doc/html/v4.12/a ... nitrd.html
https://wiki.debian.org/initramfs
https://www.google.com/search?newwindow ... 0zBp9w0YoA
I'm sorry for my bad English skills
I'm don't want to be a nuisance.
I'm don't want to be a nuisance.