ecryptfs default config

2012-09-02 Thread Damian Ivanov
Hi folks, I just did an ubuntu 12.04 fresh install and I wanted to test something in ecryptfs. So basically I selected during install to require password to login and to encrypt home folder. I logged in and created secret.txt on my desktop and shut down. I booted up again but in bootloader I

Re: ecryptfs default config

2012-09-02 Thread Damian Ivanov
Hi John, I appreciate your fast answer! So what can I do to prevent this default behaviour? e.g if password gets changed data is unreadable unless to have the secret key? Wouldn't this be a more reasonable default? Best regards, Damian 2012/9/2 John Moser john.r.mo...@gmail.com: Yes that would

Re: ecryptfs default config

2012-09-02 Thread John Moser
did you change your password from your account or using the root account? It looks like pam actually stores encryption keys in /var/lib/ somewhere and can re-cypher them. That only works if you enter the previous password when changing passwords, though (which I hadn't considered, since

Re: ecryptfs default config

2012-09-02 Thread Damian Ivanov
I changed it using root account, since like you correctly told init=/bin/bash dropped me directly to root account. 2012/9/2 John Moser john.r.mo...@gmail.com: did you change your password from your account or using the root account? It looks like pam actually stores encryption keys in