Thread: Encrypted Ubuntu and NSA SELinux
hello! have asus n61jv-x2 notebook pc , downloaded ubuntu 11.10 64 bit gnu/linux alternative install .iso file , burned blank 700 mb cd-r disc. followed joern's guide installing ubuntu 10.10 full disk encryption. here's did. popped ubuntu 11.10 64 bit gnu/linux alternative install cd-r dvd burner drive , booted off disc ubuntu gui installation. chose manual partitioning. created own partition layout. created small 500 mb unencrypted boot partition , set primary @ beginning of boot partition. next, selected configure encrypted volumes , chose serpent cipher using essiv:sha256 mode 256 bit key strength , sha-512 hash algorithm create luks/lvm volume remainder of intel x25-m 160 gigabyte ssd. wound selecting configure logical volume manager , created volume group named volumegrp01. then, selected create logical volume , created volume01 8 gigabytes of disk space , set /swap space. created logical volume named volume02 20 gigabytes of disk space , set / root partition. created third volume name volume03 remainder of available disk space , set /home partition. of volumes use /ext4 file system. wrote changes intel ssd. finally, ubuntu 11.10 64 bit gnu/linux installed itself. created highly complex, random, 20+ character symmetric key password. encrypted /home partition after ubuntu installed different password.
launched terminal , typed in sudo apt-get install selinux. ubuntu removed novell's apparmor , installed nsa's selinux. typed in sudo touch /.autorelabel , typed in sudo setenforce=0 permissive mode. rebooted computer.
here's problem. when typed in sudo gedit /etc/selinux/config, changed selinux=enforcing , rebooted computer. @ plymouth screen says ubuntu, gives me 2 error messages. first, says can not mount /tmp directory. then, says can not mount dev/volumegrp01/volume02 know serpent encrypted / root partition. hence, stuck @ ubuntu screen , never make lightdm login screen. had pop in ubuntu 11.10 64 bit gnu/linux alternative install cd-r , perform rescue type in symmetric key password , mount /dev/volumegrp01/volume02. then, typed in vi /etc/selinux/config change selinux=permissive. finally, rebooted computer , able login ubuntu normally.
how nsa's selinux enforcing mode , still ubuntu operating system working? in other words, need able boot ubuntu , use while have nsa's selinux set enforcing mode?
please if can. thank you.
howdy, ubuntu supports novell's app armor. if want use selinux, got switch fedora.
Forum The Ubuntu Forum Community Ubuntu Specialised Support Security [SOLVED] Encrypted Ubuntu and NSA SELinux
Ubuntu
Comments
Post a Comment