Linux And BSD Desktop Distributions With Support For Disk Encryption

Disk Encryption Is Not Something Most Personal Computer Users Think Of When They Consider Ways To Boost The Security Profile Of Their Computer. A Firewall? Yes,That In The Minds Of Most Is What Computer Security Is All About. However, A Firewall Is A Network Security Tool, And It Is Useless If Your Computer Is Lost Or Stolen. That Is When Disk Encryption Comes Into Play. And If You Truly Care About Guarding Access To Your Data, Encrypting The Hard Drive Holding It Is Just As Important As A Firewall.

So, How Does Encrypting A Hard Drive, Protect Your Data?

Well, If A Hard Drive (Or The Most Important Part Of It) Is Encrypted, The Computer Will Not Boot Completely Until The Passphrase Or Encryption Key Used To Encrypt The Hard Drive Is Specified Correctly. Even If The Hard Drive Is Removed From The Original Computer, The System Will Not Boot If The Encryption Key Is Not Specified. That Is How It Protects Your Computer (And Data) From Unauthorized Physical Access.

The First Two Images Show What Happens When A Computer With An Encrypted Disk Boots Up. This One Is From Mandriva, One Of Seven Distributions Listed In This Article.

manslvm21-550x412

And This One Is From Sabayon, Also One Of The Seven. Whether The Interface Presented Is Graphical Or Full Of A Bunch Of Text, The Effect Is The Same. Without Specifying The Encryption Key, You Cannot Login. And If Your Lose The Computer, Or Someone Steals It, Or If An Agent Of Your Government Seizes It, They Will Need The Passphrase From You To Log In. That Depends On Whether Or Not You Want To Give To Them Or Not, Is Whole Other Matter In Itself.

The Focus Of This Article Is On Distributions With Graphical Installation Programs. When Installing Such Distributions, The Installer Only Allows You To Specify One Passphrase Or Encryption Key. However, You May Configure Seven More (For A Total Of eight) After Installation. How To Manage Disk Encryption Passphrases And Key Slots, Explains How.

1. CentOS: Community ENTprise Operating System, Is A Multi-Purpose Distribution Based On Red Hat Enterprise Linux. It Uses The Anaconda Installer, Also Used On Fedora And Sabayon. It Uses LVM, The Linux Logical Volume Manager, As The Default Disk Partitioning Scheme And To Install It On An Encrypted Disk, All That Is Required Is To Select The “Encrypt System” Option At The Disk Partitioning Methods Step.

2. Debian: Is A Grand Daddy Of Linux Distributions. It Has An Automated Partitioning Mode That Encrypts A Disk When Setting Up LVM. And, Of Course, You Can Also Encrypt The Disk Without LVM.

3. Fedora: LVM Is The Default Disk Partitioning Scheme On Fedora, And Like Debian, Fedora Makes It Very Easy To Encrypt A Disk. Just Select The “Encrypt System” Option At The Disk Partitioning Methods Step And The Installer Will Encrypt The Physical Volume.

Even With The Physical Volume Encrypted, You May Also Encrypt The Logical Volumes. And Like Debian, If You Choose To Not Use LVM, You Can Still Encrypt The Target Disk.

4. Mageia: Is A Fork Of Mandriva, And Uses The Same Installation Program. Unlike Debian And Fedora, It Does Not Have An Automated Encrypted LVM Option, But You Can Still Configure Encrypted LVM Manually.

And Without LVM, You Can Still Encrypt The Disk Or Disk Partitions.

5. Mandriva: The Installation Program On Mandriva Is The Same One Used On Mageia. LVM And Non LVM Encryption Schemes Can Be Configured. Just As The Other Listed Distributions (Which May Require Root Access In Order To Be Configured)

6. PC-BSD: The Most Popular BSD Desktop Distribution, Based On Free BSD. In The Last Stable Release (PC-BSD 9.1), Individual Partitions Or Slices Can Be Configured For Encryption.

In Snapshot Releases Of PC-BSD 9, An Option At The Disk Configuration Step Provides An Automated Encryption Mode For The Configured Partitions. Unlike The Linux Distributions In This Article, PC-BSD’s Installer Can Auto Generate The Encryption Key, Besides The Option To Specify One Manually. If You Are New To PC-BSD, How To Install PC-BSD On An Encrypted ZFS File System Is A Good Article To Read.

7. Sabayon: Is A Multi Purpose Linux Distribution Based On Gentoo, But Uses A Slightly Modified Version Of Anaconda, The Installation Program On Fedora.

Follow

Get every new post delivered to your Inbox.

%d bloggers like this: