Modify

Opened 10 years ago

Closed 10 years ago

Last modified 4 years ago

#2484 closed enhancement (wontfix)

loop-AES support

Reported by: Flo Owned by: florian
Priority: low Milestone: Barrier Breaker 14.07
Component: packages Version:
Keywords: loop-AES Cc:

Description

Hi,

this is a reporters ticket:

adding loop-AES ( http://loop-aes.sourceforge.net/loop-AES/ ) support in kernel and userspace (mount/losetup) might be a kind feature for Kamikaze to set up an encrypted file space.

-Florian

Attachments (0)

Change History (9)

comment:1 Changed 10 years ago by florian

  • Owner changed from developers to florian
  • Status changed from new to assigned

comment:2 Changed 10 years ago by florian

  • Resolution set to fixed
  • Status changed from assigned to closed

Added with [9175].

comment:3 Changed 10 years ago by Flo

  • Resolution fixed deleted
  • Status changed from closed to reopened

sorry for reopening this case again, but the loop-AES implementation still does not seem to work properly, because it's missing the patched util-linux: mount, umount, losetup, swapon and swapoff tools.

Any hints/workarounds/fixes are welcome :)

-Florian

comment:4 Changed 10 years ago by Flo

this util-linux-ng diff/patch solved the problem for me:
--- package/util-linux-ng/Makefile.orig 2007-12-02 18:13:08.000000000 +0100
+++ package/util-linux-ng/Makefile 2007-12-24 00:07:47.000000000 +0100
@@ -80,7 +80,7 @@

define Build/Compile

$(MAKE) -C $(PKG_BUILD_DIR)/disk-utils mkswap

  • $(MAKE) -C $(PKG_BUILD_DIR)/mount swapon losetup

+ $(MAKE) -C $(PKG_BUILD_DIR)/mount mount umount swapon losetup

$(MAKE) -C $(PKG_BUILD_DIR)/fdisk fdisk cfdisk
$(MAKE) -C $(PKG_BUILD_DIR)/hwclock hwclock

endef

@@ -98,6 +98,8 @@

define Package/losetup/install

$(INSTALL_DIR) $(1)/usr/sbin
$(INSTALL_BIN) $(PKG_BUILD_DIR)/mount/losetup $(1)/usr/sbin/

+ $(INSTALL_BIN) $(PKG_BUILD_DIR)/mount/mount $(1)/usr/sbin/
+ $(INSTALL_BIN) $(PKG_BUILD_DIR)/mount/umount $(1)/usr/sbin/

endef

define Package/swap-utils/install


... and adding decompressed http://loop-aes.sourceforge.net/updates/util-linux-ng-2.13-1.diff.bz2 to packages/util-linux-ng/patches/001-util-linux-ng-2.13.0.1.diff

-Florian

comment:5 Changed 10 years ago by Flo

litte usage appendix:
To get loop-AES working, you need to compile and install the following packets:

  • kmod-loop-aes
  • losetup
  • swap-utils (this is optional)
  • gnupg (for multiple key setup)
  • USB module drivers and...
  • fdisk or cfdisk (for disk geometry setup)
  • kmod-fs-ext2 (filesystem driver. Please DO NOT use any journaling fs. Check loop-AES HOWTO, why not!)
  • e2fsprogs (for creating filesystem)
  • tune2fs (for optimizing filesystem options)


Also enable in "make menuconfig" -> "Base system" -> "Busybox" -> "Configuration..." -> "coreutils": "nice", "nohup", "uuencode", "uudecode" [I hope I did not miss anything]...

and disable: Busybox mount and umount commands after installation of patched losetup utility by:
rm /bin/mount /bin/umount

Have fun using a secure encrypted fs and check loop-AES README @ http://loop-aes.sourceforge.net/loop-AES.README for any further information about setup and security details.

For those of you, who are to bored to compile the desired Kamikaze sources on theirselves, I uploaded my binaries to: http://degnet.de/~flo/openwrt-kamikaze/

Have fun and many thanks to the complete OpenWRT dev.-crew! :)
-Florian

comment:6 Changed 10 years ago by florian

  • Resolution set to wontfix
  • Status changed from reopened to closed

Patches are too intrusive and will definitively not allow people to run those tools without the loop-aes feature. Let's keep the external repository for this.

comment:7 Changed 9 years ago by sebas

hi,
I would like to see the feature working out of the box in Openwrt. You've my vote on this.

comment:8 Changed 7 years ago by p90

Hi,

trying to get this to work for some time now.
Has anybody else made some progress?

comment:9 Changed 4 years ago by jow

  • Milestone changed from Attitude Adjustment 12.09 to Barrier Breaker 14.07

Milestone Attitude Adjustment 12.09 deleted

Add Comment

Modify Ticket

Action
as closed .
The resolution will be deleted. Next status will be 'reopened'.
Author


E-mail address and user name can be saved in the Preferences.

 
Note: See TracTickets for help on using tickets.