Conversation
Notices
-
Embed this notice
> What cryptsetup-nuke-password
> The software cryptsetup-nuke password is a software developed by Offensive Security and publish under GPLv3 licence. This software provides additional security at cryptsetup.
It allows to define an additional password which can also be typed in the cryptsetup password prompt, but allows to destroy the decryption key of the cryptsetup volumes in order to prevent its unlocking.
:WPanic:
-
Embed this notice
@kaia
I can see the use case for it quite clearly — imagine someone demands you to type your password so they can access your data, you can enter this one instead — now they can never access it. They can keep using that blowtorch and pliers — but now they would never be able to get anything from you, it's gone forever.
-
Embed this notice
@m0xEE yeah, true, but what about backups? I don't wanna have another set of passwords and you cannot trick the attacker into typing another nuke password in the backup