 |
 |
 |
 |
| Using Fedora General support for current versions. Ask questions about Fedora and it's software that do not belong in any other forum. |

29th May 2012, 03:07 PM
|
|
Registered User
|
|
Join Date: Jan 2012
Location: India
Posts: 26

|
|
Complete encryption in dual boots
i am want to install fedora 17 with full disk encryption, but i have arch linux installed on the same disk(seperate partition) too
fedora only encrypts those partition which are to be formated during install like its /root, /boot,etc...so i am not going to have any problem, right?
also, is haveing seperate /boot for fedora neccessary?, i find it needless
also, i have not installed bootloader for arch, as arch is having problem to install bootloader anywhere when it is installed on a GPT disk......so fedora bootloader does both distro's job
thnx in advnc
|

29th May 2012, 03:23 PM
|
 |
Formerly known as"professorrmd"
|
|
Join Date: Mar 2011
Posts: 2,611

|
|
|
Re: Complete encryption in dual boots
Quote:
Originally Posted by shanx
i am want to install fedora 17 with full disk encryption, but i have arch linux installed on the same disk(seperate partition) too
fedora only encrypts those partition which are to be formated during install like its /root, /boot,etc...so i am not going to have any problem, right?
|
No problems there as long as you don't touch your arch installation partition. I have done this with Arch, Linux Mint and SL6.2.
Quote:
Originally Posted by shanx
also, is haveing seperate /boot for fedora neccessary?, i find it needless
|
It is not needed. I prefer to encrypt / too in which case /boot would be needed since /boot needs to be on an unencrypted partition.
|

29th May 2012, 04:22 PM
|
|
Registered User
|
|
Join Date: Jan 2012
Location: India
Posts: 26

|
|
|
Re: Complete encryption in dual boots
thnx nonamedotc, i was so stubborn that i was going to encrypt /boot too
now...(maybe this takes my stubborness to new heights)..i have single swap for both distros, so i shouldn't encrypt swap, should I?
Last edited by shanx; 29th May 2012 at 04:30 PM.
|

29th May 2012, 04:25 PM
|
 |
Formerly known as"professorrmd"
|
|
Join Date: Mar 2011
Posts: 2,611

|
|
|
Re: Complete encryption in dual boots
Unless you are doing some extremely heavy processes, you do not need swap. If you want swap accessible to both Arch and Fedora, yes, you should not encrypt it.
Alternatively, after you finish installing Fedora, you can use cryptsetup in Arch and activate swap. Perhaps, the easiest option is just to leave swap unencrypted.
Cheers.
|

29th May 2012, 04:43 PM
|
|
Registered User
|
|
Join Date: Jan 2012
Location: India
Posts: 26

|
|
|
Re: Complete encryption in dual boots
Quote:
Originally Posted by nonamedotc
Alternatively, after you finish installing Fedora, you can use cryptsetup in Arch and activate swap.
|
I would definitely like to experiment that, suppose i encrypted swap in fedora, then how am i gonna use same swap for arch(or anyother distro).......how cryptsetup helps through this
please tell an example, several other people might learn some as well :adore1
|

29th May 2012, 06:51 PM
|
|
Official Gnome 3 Sales Rep. (and Adminstrator)
|
|
Join Date: Jul 2011
Location: Leamington Spa, UK
Age: 30
Posts: 1,707

|
|
|
Re: Complete encryption in dual boots
It is pretty pointless to encrypt file-systems but not swap – even though swap shouldn't get used much these days, you can never be sure, and you must never use hibernate without swap encryption.
My advice is to encrypt swap in both distros, or have separate swap partitions.
Personally I wouldn't both encrypting the root partition, only swap, /var, /tmp (on F16 or earlier, F17 uses swap for /tmp via a tmpfs – another reason to encrypt it!) and /home – these are the only places where personal information should end up. The root partition is normally just standard distro files so might as well be left unencrypted for efficiency unless you know otherwise, and /boot must be unencrypted because the boot-loader doesn't know about encryption.
---------- Post added at 06:51 PM ---------- Previous post was at 06:05 PM ----------
Actually, looking at the crypttab manual page, the "swap" option looks like it can encrypt swap for Fedora on boot and restore swap to an unencrypted state on shut-down, so you may not need to encrypt swap in arch.
|

29th May 2012, 07:24 PM
|
 |
Formerly known as"professorrmd"
|
|
Join Date: Mar 2011
Posts: 2,611

|
|
|
Re: Complete encryption in dual boots
Quote:
Originally Posted by Gareth Jones
Actually, looking at the crypttab manual page, the "swap" option looks like it can encrypt swap for Fedora on boot and restore swap to an unencrypted state on shut-down, so you may not need to encrypt swap in arch.
|
That is quite convenient!! Did not know that part at all.
From the man page (for the lazy people amongst us),
Quote:
swap
The encrypted block device will be used as a swap partition, and will be formatted as a swap partition after setting up the encrypted block device. The underlying block device will be formatted again as an unencrypted swap partition after destroying the encrypted block device. (This allows sharing a single swap partition between operating system installations, with some of them encrypting the swap partitions and some of them not.)
|
|

29th May 2012, 07:26 PM
|
 |
"Shells" (of a sub world)
|
|
Join Date: May 2011
Location: Helvetic Federation (Swissh)
Age: 33
Posts: 2,602

|
|
|
Re: Complete encryption in dual boots
Quote:
Originally Posted by Gareth Jones
... F17 uses swap for /tmp via a tmpfs – another reason to encrypt it!) ...
|
Thats the first point i've come accross that would 'allow' to use f17.
One should be able to (i do) the same swap partition for several distros.
But it must not be formated on further OS installations, specialy if you're using encryption.
__________________
Fedora Manual: http://docs.fedoraproject.org
Script-Tools: https://sourceforge.net/projects/script-tools/
sudo st tweak repo toggle fedora-rawhide ; st iso dl-fed -respin && st iso usb
|

30th May 2012, 09:17 PM
|
|
Official Gnome 3 Sales Rep. (and Adminstrator)
|
|
Join Date: Jul 2011
Location: Leamington Spa, UK
Age: 30
Posts: 1,707

|
|
|
Re: Complete encryption in dual boots
Quote:
Originally Posted by Gareth Jones
/tmp (on F16 or earlier, F17 uses swap for /tmp via a tmpfs – another reason to encrypt it!)
|
Just for completeness, it's F18 that'll have tmpfs on /tmp apparently, not F17 yet.
|
| Thread Tools |
Search this Thread |
|
|
|
| Display Modes |
Linear Mode
|
Posting Rules
|
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts
HTML code is Off
|
|
|
Current GMT-time: 13:14 (Tuesday, 21-05-2013)
|
|
 |
 |
 |
 |
|
|