I accidentally created a luks container using option --cipher aes-xts-plain64:sha512. Everything seems to be working correctly and luksDump shows: "Cipher mode: xts-plain64:sha512". I wonder if I should hexedit the header manually and replace the ":sha512" part with nulls since the proper format would be just "xts-plain64" since the cipher does not need a hash for the ESSIV? _______________________________________________ dm-crypt mailing list dm-crypt@xxxxxxxx http://www.saout.de/mailman/listinfo/dm-crypt