Thread (3 messages) 3 messages, 3 authors, 2009-12-13

s2disk encryption was Re: intermittent suspend problem again

From: Pavel Machek <hidden>
Date: 2009-12-13 01:41:56
Also in: linux-pm, lkml

Hi!
quoted
quoted
quoted
On the other hand, I reverted 8fbd962e3, recompiled and replaced the
module, and got the freeze during hibernation.  And that was the bulk of
the changes since 2.6.31...  I'll revert the rest and test again, but
that seems purely cosmetic, so no high hopes.
quoted
In addition to that, you can run multiple hibernation/resume cycles in
a tight loop using the RTC wakealarm.
I'll do so, as soon as I find a way to automatically supply the dm-crypt
passphrase... or even better, learn to hibernate to ramdisk from the
initramfs. :)
Well, you don't need to use swap encryption for _testing_. :-)
I use partition encryption, everything except for /boot is encrypted.
If /boot is big enough, you could use a swap file in /boot for the testing.
quoted
Apropos: does s2disk perform encryption with a temporary key even if I
don't supply and RSA key, to protect mlocked application data from being
present in the swap after restore?
It can do that, but you need to provide a key during suspend and resume.

Otherwise it doesn't use a random key, because it would have to store it in
the clear in the image header.
I believe it can use random key, stored in clear in image
header. Reason is... image header is easier to overwrite than removing
whole image.

That was original motivation for encryption... not having to overwrite
swap data with zeros.
								Pavel
-- 
(english) http://www.livejournal.com/~pavelmachek
(cesky, pictures) http://atrey.karlin.mff.cuni.cz/~pavel/picture/horses/blog.html
Keyboard shortcuts
hback out one level
jnext message in thread
kprevious message in thread
ldrill in
Escclose help / fold thread tree
?toggle this help