LUKS: Difference between revisions

627 bytes added ,  26 July 2020
Line 22: Line 22:
# mkfs.ext4 /dev/mapper/luksdrive1
# mkfs.ext4 /dev/mapper/luksdrive1
</pre>
</pre>
* Securely wipe the unused portion of the drive
** Do this to prevent cryptographic attacks and to overwrite existing data on the drive
<pre>
dd if=/dev/zero of=<file_somewhere> status=progress
# Delete the file afterwards
</pre>
;Notes
* You can see defaults using <code>cryptsetup --help</code>.
* <code>--type</code>
**
{{ hidden | defaults |
defaults on Ubuntu 18.04
<pre>
Default compiled-in device cipher parameters:
loop-AES: aes, Key 256 bits
plain: aes-cbc-essiv:sha256, Key: 256 bits, Password hashing: ripemd160
LUKS1: aes-xts-plain64, Key: 256 bits, LUKS header hashing: sha256, RNG: /dev/urandom
</pre>
}}


===Mounting===
===Mounting===