You are not logged in.
Hi,
According to the wiki, using the LABEL and an offset in /etc/crypttab when encrypting the swap partition doesn't work when using the sd-encrypt init hook. Is it still true?
Last edited by ThreeMonkeys (2018-05-09 09:41:02)
Offline
If you don't use any "luks.*" parameters the sd-encrypt hook should not interfere with /etc/crypttab.
Personally I don't see a point for this method. If you need a UUID and LABEL, why not just use LUKS and unlock it with a keyfile?
Offline
Thanks for you answer! Well, I don't need a UUID and LABEL. What I wanted to achieve is having an encrypted swap partition, with a random key changing after each reboot. I can't achieve that with a keyfile. And the only safe way to do it without accidentaly wiping another partition seems to be with the LABEL in /etc/crypttab.
Offline
Using PARTUUID seems a very good idea. Thank you!
Offline