LUKS and Samba-Server

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Hi All!

I would like to set up a linux server with encrypted samba and NFS shares.
The computer must boot without asking for passwords.

I am aware of pam-mount which would do the trick for users logged in
locally. Has anyone tried it for users logged in via Samba?

Reason: I would like to use my old computer (without keyboard and screen) as
a network-attached-storage (SAMBA and NFS) server for Windows and Linux
computers on a home network. Users should not be "troubled" by LUKS (eg.
telnetting in to send a password to unlock the share).

So is it possible to have a setup such that
* the linux-server can boot without user interaction
* to pass on to LUKS the passwords that the client computers use to mount
the server's shares, such that the encrypted share can be accessed in the
same way as an unencrypted share would be.
* the data on the server must be safe against theft of the box.

Would it be a security risk to make such a setup, e.g. passwords be cached
insecurely on the client (Windows) machines?

- --
Wenn die meisten sich schon armseliger Kleider und Möbel schämen, wieviel
mehr sollten wir uns da erst armseliger Ideen und Weltanschauungen schämen?
  Albert Einstein

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.2.1 (MingW32)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iD8DBQFFfKgkR6b2EdogPFsRAh8cAJ44k/jNRG2t5bjtienTKo4of/a9LgCgjWgR
pm641XC+tSQj41tVz01puK8=
=wtYt
-----END PGP SIGNATURE-----

---------------------------------------------------------------------
dm-crypt mailing list - http://www.saout.de/misc/dm-crypt/
To unsubscribe, e-mail: dm-crypt-unsubscribe@xxxxxxxx
For additional commands, e-mail: dm-crypt-help@xxxxxxxx


[Index of Archives]     [Device Mapper Devel]     [Fedora Desktop]     [ATA RAID]     [Fedora Marketing]     [Fedora Packaging]     [Fedora SELinux]     [Yosemite News]     [KDE Users]     [Fedora Tools]     [Fedora Docs]

  Powered by Linux