top button
Flag Notify
    Connect to us
      Site Registration

Site Registration

retrofitting LUKS encryption on installed F19 system

0 votes
395 views

I've got a F19 installation that I'd like to turn into a fully encrypted system with LUKS.

There are many howtos on the web for encrypting a partition, but they all show doing it to /home.

the implication is that you need to be logged in as root on the actual system you're modifying, though I don't think that is explicitly stated. That would mean you can't encrypt the root partition itself, since you've got to have an empty partition to work on, then restore its contents from backup.

So, my question(s):
-can you do it while being booted into a recovery environment?
-if not, is there any way to convert the whole thing that I'm not able to figure out on my own (perhaps I'm having a whole series of senior moments) ???
-Or would it simply be best to do a fresh installation?

posted Jun 28, 2013 by anonymous

Share this question
Facebook Share Button Twitter Share Button LinkedIn Share Button
I think a fresh install is the only practical way.

1 Answer

0 votes

No, just re-install. One partition with /boot and another with an encrypted volume-group, holding /, swap and the rest.

But before embarking on that trip, do you really need full disk encryption? I mean, the content of /usr is on any fedora-cd ;-) And when up-and-running, everything is unlocked.

The only valid reason I can think about, is that other people have physically access to your machine and could get root-access by booting from cd/dvd, and might alter your system.

It surely works, but at a performance price. And the certainty that you have to enter the LUKS-key each time you boot.

answer Jun 28, 2013 by anonymous
Similar Questions
0 votes

I'm having a problem trying to enable the new UI of LibreOffice 4.1, all this in F19+KDE; but for some reason I can't see it in any menu item or any other menu or option; is this because of KDE or is there a dependency I haven't resolve?

0 votes

I'm investigating IPv6, and wondering how, on Fedora 19, the best way to determine the appropriate DUID (DHCP unique identifier) to be used in the host sections, along with fixed-address statements.
If this is documented, please mention.

+5 votes

I installed Fedora 19 on my laptop, and it worked beautifully with the already installed Windows 8. When I upgraded the Windows 8 to Windows 8.1. Now it boots straight to Windows 8.1 and grub does not appear.

I disabled secure boot in the firmware.

I do not even know which version of grub was booting the UEFI system before; it just worked.

Can anyone suggest:

  1. What grub would the Fedora 19 installer have provided to boot it and Windows 8? (grub2, grub-efi,...)
  2. Can anyone point to any documentation on how to fix this?
+1 vote

I am getting the error message below on a Fredora 19 system when attempt to start VirualBox Any help will be greatly appreciated :

Kernel driver not installed (rc=-1908) The VirtualBox Linux kernel driver (vboxdrv) is either not loaded or there is a permission problem with /dev/vboxdrv. Please reinstall the kernel module by executing '/etc/init.d/vboxdrv setup' as root.

+1 vote

I'm trying to set up Joomla on my laptop to play around with a site I'm planning. However SELinux seems to block write access for the installation routine to the direcotry /var/www/html and none of the solutions I've found by googling to allow SELinux httpd write access seems to work (installation hangs immediately).

setenforce 0 deosn't have any effect either as far as I can tell, as I still can't install Joomla. Anyone successfully installed Joomla 3 on Fedora 19 please can tell how I should proceed?

...