Re: Securing/encrypting a remote server

2009-08-06 Thread Suno Ano
[skipping a lot of lines ...] Justin> Does anybody else have any ideas? Do I need a /var/tmp as well Justin> or could I bind mount tmp to both? The usual problem with full-disk encryption like for example dm-cypt/luks[0] is that you need to unlock the container at boot. With remote access that

Securing/encrypting a remote server

2009-08-05 Thread Justin
I'm interested in encrypting/securing a server that I'm only going to have remote access to. Since somebody else will be setting it up the best I have been able to come up with is to have it setup with a normal LVM scheme, then add an encrypted tmp home and swap which I would mount/activate manuall