[ubuntu-uk] Encrypt whole disk or just home dir?

Tony Arnold tony.arnold at manchester.ac.uk
Thu May 13 11:05:41 BST 2010


Tyler,

On 13/05/10 07:24, Tyler J. Wagner wrote:

> Encrypting home dir + swap, and using a /tmp ram disk, is sufficient even for 
> data protection act requirements. Everything written outside those three areas 
> are operating system files only.
> 
> How to convert existing homes to crypto, plus swap and tmp:
> 
> http://www.tolaris.com/2009/11/14/securing-laptops-with-ecryptfs-cryptsetup-
> and-tmpfs/

Thanks. I had thought about swap but not considered /tmp!

Regards,
Tony.
-- 
Tony Arnold,                        Tel: +44 (0) 161 275 6093
Head of IT Security,                Fax: +44 (0) 870 136 1004
University of Manchester,           Mob: +44 (0) 773 330 0039
Manchester M13 9PL.                 Email: tony.arnold at manchester.ac.uk



More information about the ubuntu-uk mailing list