Dataset encryption key deleted on rename, export

bb182

Cadet
Joined
Mar 22, 2020
Messages
6
It's even more important that you back up your encryption keys when using the new dataset encryption. Keys are stored in the database and are regularly cleaned up. It's a lot easier to lose them compared to legacy encryption, which never deleted keyfiles from /data/geli/.

Now, keys are deleted when you export a pool. This might actually be desirable, but it is different than before. Renaming an encrypted dataset will also result in the key being deleted during the next sync.
 
Top