Guys I changed my disks in my T430 to make a better backup routine. Before I had a strip with 3 ssd's with 1 tb each. I changed to root in a 240gb, home in a 1tb, and I left 1tb for dual booting with OBSD. And the last 1tb I took out of the note and put it in a case for external use. Everything...
When on certain pools or datasets large files will be stored, it can be an advantage to use a larger recordsize of 1M in ZFS. Suppose the pool is encrypted by GELI, would it be better or worse to align the sectorsize of GELI with the recordsize of ZFS? In general i see GELI sectorsizes of...
I'm using GELI on my laptop for whole disk encryption.
Boot partition is located on separate thumb-drive.
My loader.conf contains such strings for decryption:
The questions are:
1. Is it possible to move this keys to another thumb drive in such a way that loader could find them while...
I have the GELI key, but the associated pool (HDDs) unavailable currently (phisically).
Can I check my password(s) with the keyfile only, without the encrypted media?
If I know, the keyfile contains the keychain(s), protected by password(s). I would like to check this password, but without...
I have a second GELI encrypted ZFS pool separate from my OS disks. At boot the loader prompts for my GELI password for OS, but it does not unlock the non-OS disks with the same key. Instead while booting I am prompted a second time to unlock the disks in zdata.
I've tried using FDE raw w/ GELI...
I want to learn about how exactly boot process of FreeBSD 13.1 with GELI + ZFS on Root on UEFI works. I read about loader, UEFI, geli and, still I can not understand it.
Also I have some more specific questions too:
I have two partitions. EFI and ZFS. The whole root filesystem is in ZFS...
On this forum and on internet many things are found about GELI.
What I was looking for is:
- That GELI boots from the local disks on the machine
- It works with a passphrase and a keyfile.
- The keyfile is located on a USB
I have the impression this setup is not possible, but I want to...
Issue: System will lock up on on file transfers(sometimes) to a External USB drive.
HDD: Segate IronWolf 4TB, GELI encrypted with ZFS pool on it
usb chipset: ASM1153E
Memory: 32GB DDR4 PNY
CPU: Ryzen 5 Pro 2400GE
External USB 3.1 drive using ASM1153E IC will lock up the entire...
Hi, I'm about to switch to FreeBSD for main dailly desktop usage, and I'm concerned about my data and slightly about performance.
My machine is 64bit and i know (based on what I've read online) that, SHA-512 is faster than SHA-256 on a 64bit system.
So, i was wondering if...
I want to move the entire OS (GELI+ZFSOnRoot) to another disk.
I had execute these commands to make this happen:
Setup my new disk partition table (similar to old one):
gpart create -s gpt nvd0
gpart add -a 1M -s 260M -t efi -l efiboot1 nvd0
gpart add -a 1M -s 4G -t freebsd-swap -l swap1...
I'm looking to implement a way to optionally auto-decrypt a single drive system at boot. The flow would be like this:
Install FreeBSD, one disk, use GELI encryption
Login, create a key: /root/quick-boot-with-no-password.key
Create a reboot/shutdown script that offers two option: reboot with...
I've been using ZFS encrypted datasets pretty much since the first day of availability. On this forum and also the mailing lists I see a lot of people running ZFS "on top of" GELI.
I'd like to ask: Is that usually more of a legacy thing or are there situations where one would prefer ZFS on GELI...
I had a setup with 4x4 TB disks, with two mirrors consisting of two disks each, giving me about 8 TB of usable storage space. One mirror consists of ada0 & ada2, the other mirror of ada1 & ada3.
I needed to upgrade storage space, so I decided to upgrade one mirror by resilvering two times. I...
In a fresh installed FreeBSD 13 with ZFS/GELI, When I reboot or power on the system, I get the following error after entering the storage password.
GELI Passphrase for disk0p4:
Calculating GELI Decryption Key for disk0p4: 2224665 iterations...
zio_read error: 45
zio_read error: 45...
I need to create a Encrypted Volume, backup it and transfer to another FreeBSD machine without SSH access.
I was successful in doing this, but I don't know if I do it the best way. If there is a better way,, please let me know.
1 - First I create de zroot Volume
$ zfs create -V 1g...
I'm experimenting with geli encryption on a spare laptop.
I've activated ZFS root encryption from the FreeBSD installer.
I'm using a french keyboard layout.
After POST, Geli prompts me for the passphrase with a US keyboard layout. That's annoying.
I've set the...
Hello! Could you help me to get ahead in solving the problem installation of FreeBSD12.2 with GELI encrypt?
My installation steps:
SSD (ada0) - system will install here
# gpart destroy -F ada0
# gpart create -s gpt ada0
HDD (ada1) - data disk
# gpart destroy -F ada1
# gpart create -s gpt ada1...
I've set up remote VPS systems with GELI disk encryption, including swap encryption, during FreeBSD 12.2 installation.
I've locked down SSH quite securely too so I presume now when remoting in, security is reasonably assured.
I want to address the possibility that within the VPS terminal's web...
I have a drive that has been sitting around for quite some time. I have tried multiple SATA USB adapters to no avail. When attempting to decrypt the device with GELI, I get this:
geli: Cannot read metadata from da0: Invalid argument.
geli: There was an error with at least one provider.
My system is encrypted with GELI and uses the AUTOZFS partition schema. I can successfully boot up without issues.
I would like to make a backup system that boots up with a USB key, and then after booted, I will remove the USB key. The backup system is completely headless, but if needed, I...