Just something coming to mind: What about storing the LUKS key in the TPM module and let LUKS retrieve it?
Found a few topics about that on a quick search.
Posts
-
RE: Kickstart with LUKSposted in IT Discussion
-
RE: KeePass dev refuses to patch security hole in favor of ad revenueposted in News
Seriously, are we talking about the same KeePass2? Never saw an advertisement in the application. Or is it something in the background, like usage tracking?
-
RE: What Are You Doing Right Nowposted in Water Closet
@JaredBusch Ah ok, sorry. Still new to ML, need to torture the wheel on the mouse a bit more as it seems.
-
RE: What programming language should you learn first?posted in Developer Discussion
@stacksofplates said in What programming language should you learn first?:
Ha I learned QBasic as a kid, and had a VisualBasic class in 9th grade. But I haven't done hardly anything outside of scripting in BASH.
BASIC on Atari 400/800/800XL/ST for me. Turtle (Ha!) and Turbo Pascal at school. And Cobol on a HP 3000/947 to which I had access to from time to time.
-
RE: Kickstart with LUKSposted in IT Discussion
@scottalanmiller said in Kickstart with LUKS:
What I had proposed to a bank some years ago was having a system by which a decryption script would call out to a service on the LAN and request the passphrase. It's not nearly as secure as a person, but you could put a lot of security in place if needed (make it check with a person via email before releasing it, only do it for planned reboots or at certain times, etc.) This way if a server is stolen, it's totally encrypted. You would need to have two, unrelated breaches, in order to access the encrypted drives. Could still happen, but it would eliminate the human break point while adding a technical one. But it would allow systems to be rebooted automatically while keeping them encrypted.
My proposal is basically the same, just adding TPM as a secure element to the equation. Using TPM, we can be sure that the machine pulling the key from LAN is actually ours / a known one.
We like to see the best possible security approach at work as a combination of knowing (e.g. passwords, PINs), being (e.g. biometrics or TPM here) and owning (smartcards or RSA tokens for example). The more factors you bring in, the better. -
RE: Is a Mid Career Sabbatical a Good Ideaposted in News
We have a program here were you receive up to 33% less of your regular monthly payment for a period of multiple years. In case of taking a sabbat year you'll receive full payment during that time. So after three years at 66% income or 4 years at 25% or 5 years at 20% and so on.
Sure, you could save up that money on your own, but this is a good thing anyway.
-
RE: Random Thread - Anything Goesposted in Water Closet
@scottalanmiller There's a german slang term, "Klickibunti". In case I need to translate that, it's like "Clicking on shining colorful GUIs". Maybe that question was in fact a bit hard for the targeted audience (SMB) - don't get me wrong on this please

-
RE: Favorite Swag Tshirtsposted in MangoCon
At least not the ones SW is giving away. Wrong size and - well - not the best quality.
-
RE: Ubuntu Systemd Bad Entryposted in IT Discussion
md status degraded? SMART status? Could also be a dying spindle.
Filesystem remounted ro (should be in case something goes south)? -
RE: Is a Mid Career Sabbatical a Good Ideaposted in News
@Carnival-Boy Don't know all the financial terms in English,sorry. Your employer is basically holding back some of your money up to the point where 100% of your yearly salary is "stored" at the employes side. So yes, free year with health insurance, social plans and so on.
-
RE: Random Thread - Anything Goesposted in Water Closet
@NattNatt said in Random Thread - Anything Goes:
@thwr so, that'd be a closed port that causes that? So would that be a Reject?
Bingo!
-
RE: Random Stuff to Bring to MangoCon 2016posted in MangoCon
@DenisKelley said in Random Stuff to Bring to MangoCon 2016:
Don't forget to bring a towel.
Towels are very important, not just because of Vogons nuking Earth.
German, but I'm sure you'll get the idea:
Youtube Video -
RE: Ubuntu Systemd Bad Entryposted in IT Discussion
@DustinB3403 said in Ubuntu Systemd Bad Entry:
At the moment the system appears to just be progressing through the blk_update_request with I/O errors for individual sectors on XVDA.
Should I abort this operation and find a replacement drive? Is it worth it to let this continue?
Hard to say. Real data on it? Would try to get a last backup first before doing filesystem operations.
-
RE: Is a Mid Career Sabbatical a Good Ideaposted in News
@Carnival-Boy said in Is a Mid Career Sabbatical a Good Idea:
Oh, I see. They're holding back your salary then releasing it when you're off. I'd rather have the cash up front. What happens if you don't take any time off?
You'll get it cash
-
RE: Random Stuff to Bring to MangoCon 2016posted in MangoCon
@thanksajdotcom said in Random Stuff to Bring to MangoCon 2016:
@dafyre said in Random Stuff to Bring to MangoCon 2016:
@RojoLoco said in Random Stuff to Bring to MangoCon 2016:
@dafyre said in Random Stuff to Bring to MangoCon 2016:
@MattSpeller Everything on that list makes sense... Except the first one... The first item has me concerned for your safety.
Actually, you should be more concerned about your safety... that iron phallus has "Dafyre" etched on its side.
slides closer to @RojoLoco....
*shoves @RojoLoco to @MattSpeller... hides
This conversation took such a weird turn from the OP, and I am LOVING IT! ROFL
A probably just because of that towel

-
RE: VM from ESXi to Xenserverposted in IT Discussion
@hobbit666 said in VM from ESXi to Xenserver:
@thwr said in VM from ESXi to Xenserver:
@hobbit666 There should a proper way to export/import. If all else fails... there's still good old rsync
According to Citrix that is the way to do it. Export as OVF then import.
Can't help here, never really used XS - another thing on my you-need-to-check-that-out-list. Damn, need to get another box of continuous paper for my printer

Anyway, like I said, there are loads of tutorials for moving Linux to a new "disk" using rsync. Should work without issues as long as the kernel is somehow generic.
-
RE: The World's fastest ISPs & Mobile Networks 2015 as per speedtest.netposted in News
I've just been reading about "Kabel Deutschland" (by far the largest internet-over-cable provider here) testing DOCSIS 3.1 with 1 GB/s. I've got FTTB (fibre-to-the-basement) and VDSL2 from the basement to my place. Roughly 130/40 MBit/s down/up here.
I know that some Asian countries have way faster ISPs, but I wonder where those numbers come from.
-
RE: Weekend Plansposted in Water Closet
There's a silver wedding anniversary within the family this weekend. Will be great, most probably not like The Walking Dead.
-
RE: Random Stuff to Bring to MangoCon 2016posted in MangoCon
@thanksajdotcom said in Random Stuff to Bring to MangoCon 2016:
@thwr said in Random Stuff to Bring to MangoCon 2016:
@thanksajdotcom said in Random Stuff to Bring to MangoCon 2016:
@dafyre said in Random Stuff to Bring to MangoCon 2016:
@RojoLoco said in Random Stuff to Bring to MangoCon 2016:
@dafyre said in Random Stuff to Bring to MangoCon 2016:
@MattSpeller Everything on that list makes sense... Except the first one... The first item has me concerned for your safety.
Actually, you should be more concerned about your safety... that iron phallus has "Dafyre" etched on its side.
slides closer to @RojoLoco....
*shoves @RojoLoco to @MattSpeller... hides
This conversation took such a weird turn from the OP, and I am LOVING IT! ROFL
A probably just because of that towel

It makes a great pillow, blanket, weapon, and can be used for misc cleanup...depending on how rusty that iron dildo is, and how it's used, will depend on the cleanup needed

It's such a shame that (T)Raumschiff surprise never made it into international cinemas. You won't understand a single word of this awesome movie

Radiation safe underwear, Mr. Spuck and his turtle genes, Mr. Will Rock (the taxi driver)...