-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256
On 08/21/2016 03:23 PM, Tom van der Woerdt wrote:
Did this work prior to adding encryption, or could that be a red herring?
It was the attempt to encrypt the Tor directory using the ext4 method - - GRSecurity is fine (works since 2 years like a charm). But I mistakenly encrypted it as user "root" - whereas user "tor" was the right one.
I described my steps in [1] under "setup". I'm pretty convinced that this is an easy method to ensure an attacker even with physical access to a server (eg. while changing a defect hard disk) can't achieve the secret key.
[1] https://www.zwiebeltoralf.de/torserver.html - -- Toralf PGP: C4EACDDE 0076E94E, OTR: 420E74C8 30246EE7