On 13 Nov 2019 15:15 +0000, from mgreger@xxxxxxxxxxxx: > 2) Are there security implications of using a single detached header > with multiple encrypted volumes? Yes; it implies that the two volumes are encrypted using the same master key (as well as being accessible using the same set of passphrases), _and_ it makes it obvious that this is the case. Whether that's a problem _in practice_ is another matter. It's possible that in your scenario that's unproblematic, but it would be nearly impossible to tell from just a single-sentence question. For the general case, I would definitely very strongly suggest to have different headers, with different master keys, even if the passphrases are the same. -- Michael Kjörling • https://michael.kjorling.se • michael@xxxxxxxxxxx “Remember when, on the Internet, nobody cared that you were a dog?” _______________________________________________ dm-crypt mailing list dm-crypt@xxxxxxxx https://www.saout.de/mailman/listinfo/dm-crypt