KIWI - Appliance Builder Next Generation
EL8 fork
So far setting the luks= attribute on a live image build had no impact to the generated ISO image. This commit adds the encryption capability also for live ISO images. The read-only part of the rootfs gets encrypted using the provided luks passphrase. An eventual persistent storage area gets encrypted at boot time if the rd.live.encrypt kernel cmdline parameters is passed. encryption/decryption requires to interactively set/provide passhphrase information at boot time. Please note due to the read-only restrictions of an ISO image there is no way to apply the standard re-encryption process as it is usually performed by kiwi encrypted systems. As such the specified luks passphrase in the kiwi image descriptions becomes sensitive information that needs to be protected |
||
|---|---|---|
| .github | ||
| build-tests | ||
| doc | ||
| dracut/modules.d | ||
| helper | ||
| kiwi | ||
| package | ||
| test | ||
| .bumpversion.cfg | ||
| .codacy.yml | ||
| .gitattributes | ||
| .gitignore | ||
| .gitlab-ci-disabled.yml | ||
| .mailmap | ||
| .obs_test | ||
| .obs_test_status | ||
| build-tests.sh | ||
| kiwi.yml | ||
| LICENSE | ||
| Makefile | ||
| pyproject.toml | ||
| README.rst | ||
| setup.cfg | ||
KIWI - Next Generation ====================== .. |GitHub Action Code Style| image:: https://github.com/OSInside/kiwi/actions/workflows/ci-code-style.yml/badge.svg :target: https://github.com/OSInside/kiwi/actions .. |GitHub Action Config Functions| image:: https://github.com/OSInside/kiwi/actions/workflows/ci-config-functions.yml/badge.svg :target: https://github.com/OSInside/kiwi/actions .. |GitHub Action Documentation| image:: https://github.com/OSInside/kiwi/actions/workflows/ci-documentation.yml/badge.svg :target: https://github.com/OSInside/kiwi/actions .. |GitHub Action Publish Pages| image:: https://github.com/OSInside/kiwi/actions/workflows/ci-publish-pages.yml/badge.svg :target: https://github.com/OSInside/kiwi/actions .. |GitHub Action Publish PyPi| image:: https://github.com/OSInside/kiwi/actions/workflows/ci-publish-to-pypi.yml/badge.svg :target: https://github.com/OSInside/kiwi/actions .. |GitHub Action Unit Types| image:: https://github.com/OSInside/kiwi/actions/workflows/ci-units-types.yml/badge.svg :target: https://github.com/OSInside/kiwi/actions .. |Health| image:: https://app.codacy.com/project/badge/Grade/228f7e8cd15d448688a590c272ec3789 :target: https://www.codacy.com/gh/OSInside/kiwi/dashboard?utm_source=github.com&utm_medium=referral&utm_content=OSInside/kiwi&utm_campaign=Badge_Grade .. |Doc| replace:: `Documentation <https://osinside.github.io/kiwi/>`__ .. |Installation| replace:: `Installation <https://osinside.github.io/kiwi/installation.html>`__ .. |Contributing| replace:: `Contributing <https://osinside.github.io/kiwi/contributing.html>`__ .. |IntegrationTesting| replace:: `Integration Testing <https://osinside.github.io/kiwi/integration_testing.html>`__ .. |Donate| image:: https://www.paypalobjects.com/en_US/i/btn/btn_donateCC_LG.gif :target: https://www.paypal.com/donate/?hosted_button_id=CYZY57A7Q4TCC |GitHub Action Code Style| |GitHub Action Config Functions| |GitHub Action Documentation| |GitHub Action Publish Pages| |GitHub Action Publish PyPi| |GitHub Action Unit Types| |Health| **KIWI, the OS image and appliance builder.** * |Installation| * |IntegrationTesting| * |Contributing| * |Doc| KIWI has helped you in your work ? Even the smallest gift is a way to help that we don't run out of coffee :) |Donate|