Proxmox: Keyformat von RAW auf HEX geändert.
All checks were successful
ci/woodpecker/push/default Pipeline was successful
All checks were successful
ci/woodpecker/push/default Pipeline was successful
This commit is contained in:
parent
c261121b08
commit
d2d637d59b
1 changed files with 5 additions and 5 deletions
|
@ -252,7 +252,7 @@ Damit man den Server auch über das Netzwerk mittels SSH entschlüsseln und somi
|
||||||
IP=192.168.1.100::192.168.1.1:255.255.255.0::enp2s0:off
|
IP=192.168.1.100::192.168.1.1:255.255.255.0::enp2s0:off
|
||||||
```
|
```
|
||||||
|
|
||||||
3. dropbear konfigurieren (```/etc/dropbear/initramfs```)
|
3. dropbear konfigurieren (```/etc/dropbear/initramfs/dropbear.conf```)
|
||||||
``` bash
|
``` bash
|
||||||
# z.B. -p2222 für Port 2222
|
# z.B. -p2222 für Port 2222
|
||||||
DROPBEAR_OPTIONS=
|
DROPBEAR_OPTIONS=
|
||||||
|
@ -298,7 +298,7 @@ update-initramfs -u
|
||||||
|
|
||||||
``` bash
|
``` bash
|
||||||
# Key generieren
|
# Key generieren
|
||||||
dd if=/dev/urandom of=/root/local.key bs=32 count=1
|
openssl rand -hex 32 > /root/local.key
|
||||||
chmod 600 /root/local.key
|
chmod 600 /root/local.key
|
||||||
|
|
||||||
# Datensets löschen, evtl. weitere
|
# Datensets löschen, evtl. weitere
|
||||||
|
@ -306,9 +306,9 @@ zfs destroy -r rpool/data
|
||||||
zfs destroy -r rpool/var-lib-vz
|
zfs destroy -r rpool/var-lib-vz
|
||||||
|
|
||||||
# Neue, verschlüsselte Datensets anlegen
|
# Neue, verschlüsselte Datensets anlegen
|
||||||
zfs create -o encryption=on -o keyformat=raw \
|
zfs create -o encryption=on -o keyformat=hex \
|
||||||
-o keylocation=file:///root/local.key rpool/data
|
-o keylocation=file:///root/local.key rpool/data
|
||||||
zfs create -o encryption=on -o keyformat=raw \
|
zfs create -o encryption=on -o keyformat=hex \
|
||||||
-o keylocation=file:///root/local.key rpool/var-lib-vz
|
-o keylocation=file:///root/local.key rpool/var-lib-vz
|
||||||
|
|
||||||
# Abweichende Mountpoints setzen
|
# Abweichende Mountpoints setzen
|
||||||
|
@ -323,7 +323,7 @@ zfs set mountpoint=/var/lib/vz rpool/var-lib-vz
|
||||||
zpool create -m /HDD HDD mirror /dev/sdb /dev/sdc
|
zpool create -m /HDD HDD mirror /dev/sdb /dev/sdc
|
||||||
|
|
||||||
# Neues, verschlüsseltes Datenset anlegen
|
# Neues, verschlüsseltes Datenset anlegen
|
||||||
zfs create -o encryption=on -o keyformat=raw \
|
zfs create -o encryption=on -o keyformat=hex \
|
||||||
-o keylocation=file:///root/local.key HDD/data
|
-o keylocation=file:///root/local.key HDD/data
|
||||||
|
|
||||||
# Als Storage zu Proxmox hinzufügen
|
# Als Storage zu Proxmox hinzufügen
|
||||||
|
|
Loading…
Reference in a new issue