From d63c6e6cf8402f2b85e47a975ec25bf1e21696e5 Mon Sep 17 00:00:00 2001 From: inference Date: Tue, 13 Feb 2024 02:24:12 +0000 Subject: [PATCH] Add device offset Adding an offset allows using a pinned UUID for the device via the pre-offset location on-device. The encryption occurs at the point of the offset, preventing erasure of the UUID, allowing partition UUID to be used as the target. --- aa000-0/dmcrypt | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/aa000-0/dmcrypt b/aa000-0/dmcrypt index 20ee1b2..d9060c6 100644 --- a/aa000-0/dmcrypt +++ b/aa000-0/dmcrypt @@ -1,6 +1,6 @@ # Inferencium - aa000-0 # dm-crypt - Configuration -# Version: 3.0.0-alpha.4 +# Version: 3.0.0-alpha.5 # Copyright 2023 Jake Winters # SPDX-License-Identifier: BSD-3-Clause @@ -19,5 +19,5 @@ dmcrypt_retries="5" ## These should come first so no keys make their way into unencrypted swap. swap="swap" source="PARTUUID=[REDACTED]" -options="--cipher aes-xts-plain64 --key-size 512 --key-file /dev/urandom" +options="--offset 2048 --cipher aes-xts-plain64 --key-size 512 --key-file /dev/urandom"