04-24-2015, 10:24 PM
First, kudos for discussing home directory encryption in your manual.
Unlike encrypting during install (which unfortunately doesn't work) encrypting with ecryptfs-migrate-home asks at some point for a "passphrase". It would be nice to know what the length/characters requirements are for this phrase. In the example, the user confirms the phrase with ecryptfs-unwrap-passphrase. A 32-character hexadecimal number displays. Is this the only acceptable format?
I'm a bit confused that the instructions say to run ecryptfs-add-passphrase and enter the login password, but the screen shot shows ecryptfs-add-passphrase requesting the passphrase. Which is it?
I tried reading /usr/share/doc/ecryptfs-utils/ecryptfs-faq.html, but became even more confused. Partway through, it stops talking about "passphrase" and out-of-the-blue talks about "keys". Does passphrase=key or are they two different things?
I've used home directory encryption in Xubuntu before, but the encryption took place during install. I don't recall being asked for a passphrase. Encryption is rather exacting and any mistake could result in completely unrecoverable data. That's why instructions for it really need to be crystal clear.
Having said all this, I must repeat that Linux Lite is the best distro I've encountered for general use on modest machines.
Unlike encrypting during install (which unfortunately doesn't work) encrypting with ecryptfs-migrate-home asks at some point for a "passphrase". It would be nice to know what the length/characters requirements are for this phrase. In the example, the user confirms the phrase with ecryptfs-unwrap-passphrase. A 32-character hexadecimal number displays. Is this the only acceptable format?
I'm a bit confused that the instructions say to run ecryptfs-add-passphrase and enter the login password, but the screen shot shows ecryptfs-add-passphrase requesting the passphrase. Which is it?
I tried reading /usr/share/doc/ecryptfs-utils/ecryptfs-faq.html, but became even more confused. Partway through, it stops talking about "passphrase" and out-of-the-blue talks about "keys". Does passphrase=key or are they two different things?
I've used home directory encryption in Xubuntu before, but the encryption took place during install. I don't recall being asked for a passphrase. Encryption is rather exacting and any mistake could result in completely unrecoverable data. That's why instructions for it really need to be crystal clear.
Having said all this, I must repeat that Linux Lite is the best distro I've encountered for general use on modest machines.