Encrypt OS Disk: mudanças entre as edições

De Wiki Clusterlab.com.br
Ir para navegação Ir para pesquisar
Sem resumo de edição
Sem resumo de edição
 
(Uma revisão intermediária pelo mesmo usuário não está sendo mostrada)
Linha 1: Linha 1:
=configs=
/etc/crypttab
/etc/crypttab
<syntaxhighlight lang=text>
<syntaxhighlight lang=text>
Linha 42: Linha 43:
GRUB_ENABLE_CRYPTODISK=y
GRUB_ENABLE_CRYPTODISK=y
GRUB_PRELOAD_MODULES="luks cryptodisk lvm ext2"
GRUB_PRELOAD_MODULES="luks cryptodisk lvm ext2"
#https://superuser.com/questions/1536669/grub-bootloader-with-root-luks-encryption-only-grub-shell
#


</syntaxhighlight>
</syntaxhighlight>
Linha 58: Linha 59:


</syntaxhighlight>
</syntaxhighlight>
=Links=
* https://devconnected.com/how-to-encrypt-root-filesystem-on-linux/
* https://help.ubuntu.com/community/Full_Disk_Encryption_Howto_2019
* https://superuser.com/questions/1536669/grub-bootloader-with-root-luks-encryption-only-grub-shell

Edição atual tal como às 23h19min de 9 de março de 2023

configs

/etc/crypttab

linux UUID="18fbddd6-48a3-442e-9807-d02e30efc2bc" none luks

/etc/default/grub

# If you change this file, run 'update-grub' afterwards to update
# /boot/grub/grub.cfg.
# For full documentation of the options in this file, see:
#   info -f grub -n 'Simple configuration'

GRUB_DEFAULT=saved
GRUB_SAVEDEFAULT="true"

#GRUB_TIMEOUT_STYLE=hidden
GRUB_TIMEOUT=10
GRUB_DISTRIBUTOR=`lsb_release -i -s 2> /dev/null || echo Debian`
GRUB_CMDLINE_LINUX_DEFAULT="quiet splash"
GRUB_CMDLINE_LINUX=""

# Uncomment to enable BadRAM filtering, modify to suit your needs
# This works with Linux (no patch required) and with any kernel that obtains
# the memory map information from GRUB (GNU Mach, kernel of FreeBSD ...)
#GRUB_BADRAM="0x01234567,0xfefefefe,0x89abcdef,0xefefefef"

# Uncomment to disable graphical terminal (grub-pc only)
#GRUB_TERMINAL=console

# The resolution used on graphical terminal
# note that you can use only modes which your graphic card supports via VBE
# you can see them in real GRUB with the command `vbeinfo'
#GRUB_GFXMODE=640x480

# Uncomment if you don't want GRUB to pass "root=UUID=xxx" parameter to Linux
#GRUB_DISABLE_LINUX_UUID=true

# Uncomment to disable generation of recovery mode menu entries
#GRUB_DISABLE_RECOVERY="true"

# Uncomment to get a beep at grub start
#GRUB_INIT_TUNE="480 440 1"
GRUB_ENABLE_CRYPTODISK=y
GRUB_PRELOAD_MODULES="luks cryptodisk lvm ext2"
#

/etc/initramfs-tools/conf.d/noresume.conf

RESUME=none

/etc/grub.d/40_custom

menuentry 'Windows 11' {
    savedefault
    search --fs-uuid --no-floppy --set=root 102F-FA1B
    chainloader (${root})/EFI/Microsoft/Boot/bootmgfw.efi
}

Links