digitalcourage.social is one of the many independent Mastodon servers you can use to participate in the fediverse.
Diese Instanz wird betrieben von Digitalcourage e.V. für die Allgemeinheit. Damit wir das nachhaltig tun können, erheben wir einen jährlichen Vorausbeitrag von 1€/Monat per SEPA-Lastschrifteinzug.

Server stats:

817
active users

#ecryptfs

0 posts0 participants0 posts today
Stephan Lichtenauer | נח סתו<p>As I understand it, full disk encryption currently does not work with <a href="https://mastodon.africa/tags/PostmarketOS" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>PostmarketOS</span></a>, at least with v24.12. (pmbootstrap-installation with FDE does not boot on my PinephonePro...)</p><p>As a Plan B I tried to set up <a href="https://mastodon.africa/tags/ecryptfs" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ecryptfs</span></a> but the kernel module is missing.</p><p>Does anybody have a good solution for encrypting at least home on <span class="h-card" translate="no"><a href="https://fosstodon.org/@postmarketOS" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>postmarketOS</span></a></span>? </p><p>I am looking into getting my <a href="https://mastodon.africa/tags/PinephonePro" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>PinephonePro</span></a> in a state so that it can be used as a daily driver but encryption is mandatory then of course...</p>
nicolas<p>lors de la mise à jour vers ubuntu 24.04 lors que la personne se connecte son /home/utilisateur ne se déchiffre pas la personne se retrouve avec un environnement vide (document, bureau…)<br>les dossiers ecryptfs dans le dossier home reste chiffré</p><p>ecrypt-utils a été installé il n'était plus la mais cela ne change pas le soucis<br>des idées ?</p><p>merci</p><p>une capture jointe</p><p><a href="https://mastodon.mim-libre.fr/tags/ubuntu" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ubuntu</span></a> <a href="https://mastodon.mim-libre.fr/tags/chiffrement" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>chiffrement</span></a> <a href="https://mastodon.mim-libre.fr/tags/ecryptfs" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ecryptfs</span></a></p>
Jarkko Sakkinen<p>Wondering if there would be a way to sort <a class="hashtag" href="https://social.kernel.org/tag/ecryptfs" rel="nofollow noopener" target="_blank">#ecryptfs</a> and <a class="hashtag" href="https://social.kernel.org/tag/ssh" rel="nofollow noopener" target="_blank">#ssh</a> <a href="https://stephenreescarter.net/encrypted-home-directories-ssh-key-authentication/" rel="nofollow noopener" target="_blank">conflict</a> with a PAM module for <a class="hashtag" href="https://social.kernel.org/tag/openssh" rel="nofollow noopener" target="_blank">#OpenSSH</a> that would sort of “plug out” the <a class="hashtag" href="https://social.kernel.org/tag/authentication" rel="nofollow noopener" target="_blank">#authentication</a> part. AFAIK this problem comes from “non-standard” authentication path of OpenSSH: it ignores PAM and does its own thing.</p>
Yann Büchau :nixos:<p>Damn, it took me less than five hours to reproduce my :manjaro: <a href="https://fosstodon.org/tags/Manjaro" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Manjaro</span></a> setup in :nixos: <a href="https://fosstodon.org/tags/NixOS" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>NixOS</span></a> from zero 💪: </p><p>- getting <a href="https://fosstodon.org/tags/GnuPG" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>GnuPG</span></a> working<br>- homedir encryption with <a href="https://fosstodon.org/tags/eCryptfs" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>eCryptfs</span></a><br>- all software I need<br>- even managed to package 3 custom things not in nixpkgs (passrofi, my <a href="https://fosstodon.org/tags/OpenTimeStamps" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>OpenTimeStamps</span></a> client fork, bemoji)</p><p>Nix Packaging is indeed 𝘀𝗼 much easier than <a href="https://fosstodon.org/tags/ArchLinux" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ArchLinux</span></a>, <a href="https://fosstodon.org/tags/Debian" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Debian</span></a> or <a href="https://fosstodon.org/tags/RPM" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>RPM</span></a> packaging!</p><p>This is the result: <a href="https://gitlab.com/nobodyinperson/nixconfig" rel="nofollow noopener" target="_blank"><span class="invisible">https://</span><span class="ellipsis">gitlab.com/nobodyinperson/nixc</span><span class="invisible">onfig</span></a></p>
Yann Büchau :nixos:<p>Currently installing :nixos: <a href="https://fosstodon.org/tags/NixOS" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>NixOS</span></a> on my work PC (tired of constant little :manjaro: <a href="https://fosstodon.org/tags/Manjaro" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Manjaro</span></a> breakages, I need a stable system with option for latest packages). It's *really* cool to change your OS via a configuration file!</p><p>In the process I updated the wiki page for encrypting your home directory with <a href="https://fosstodon.org/tags/eCryptfs" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>eCryptfs</span></a>. This involves imperative steps, but I guess this can't be automated, really (except in the installer maybe...).</p><p>Really cool that you can just edit the wiki!</p><p><a href="https://nixos.wiki/wiki/ECryptfs" rel="nofollow noopener" target="_blank"><span class="invisible">https://</span><span class="">nixos.wiki/wiki/ECryptfs</span><span class="invisible"></span></a></p>
Krawall-Ossi<p>Don't try <a href="https://chaos.social/tags/Docker" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Docker</span></a> <a href="https://chaos.social/tags/rootless" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>rootless</span></a> and put your storage on <a href="https://chaos.social/tags/ecryptfs" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ecryptfs</span></a> (default this is your home dir), thinks will went south! <a href="https://chaos.social/tags/yoloOps" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>yoloOps</span></a></p>
jomo<p>Any recommendations for an encrypted filesystem on a network mount?</p><p>- <a href="https://mstdn.io/tags/ecryptfs" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ecryptfs</span></a> is not recommended on network mounts<br>- <a href="https://mstdn.io/tags/encfs" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>encfs</span></a> has security issues<br>- <a href="https://mstdn.io/tags/cryfs" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>cryfs</span></a> looks promising, but latency of the base fs gets multiplied by orders of magnitude, which makes it unusable :(</p><p>Any experience with <a href="https://mstdn.io/tags/gocryptfs" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>gocryptfs</span></a> perhaps?</p>