Ubuntu Drive Encryption + installation

From The Black OP Security Wiki

Jump to: navigation, search
  Main Page >> Tutorial Directory >> Ubuntu Drive Encryption + installation

Ubuntu: Full Drive Encryption + installation

Note: To do this, you must get the Ubuntu 8.04 alternative installation CD. Ubuntu 9.04 does not support install time encryption, and the normal 8.04 CD does not support it either only the alternative. You can encrypt the drive at install with 8.04 and then upgrade it to 9.04 after it has been installed. A bit of a pain, but so far the only way

it can be done unfortunately.

1. Select the language you speak. I select english as that is probably what most people reading this speak.



2. Select that you would like to install Ubuntu



3. Select your language again



4. Select your country



5.

I know what keyboard layout I use, so I am not going to have it be automatically detected. If you do not know your keyboard layout, you

will want to select yes here.



6. My Keyboard came from the USA



7. I use a traditional keyboard



8. The installer is now loading some data from the CD, and setting some things up.








9. Select a hostname for your system. This should not be named after you.




10. The installer is setting up the system clock



11. Select your time zone



12. The installer is now detecting hardware





13.

Let's use the guided encrypted installer. It uses AES by default, and I prefer Serpent, but it is much easier than trying to configure it

yourself, especially if you don't know much about setting up linux.



14. I want to partition and encrypt my entire drive.



15. Yes, this all sounds good to me.



16. Enter your encryption password. This should be very long and good, the one I use in this screen shot is inadequate in size.



17. Type in your password again to verify it.



18. The installer is startign up the partitioner and encryption now



19. Yes this looks good to me, so select yes



20. Now the formatting is taking place



21. Now the actual installation is taking place





22. Now you need to enter in the username you would like to use. This should not be a name that has any real ties to you.



23. Enter a password for the user. This is not your encryption password, but is you login password.



24. Enter your username password a second time to confirm



25. If you use a HTTP proxy, put the info here. I would say chances are you don't.



26. Now the system is being filled out












27. Set the clock



28. Finish the installation. Make sure to remove the boot media.



29.

Enter your encryption password in to decrypt your hard drive and continue with your day. Remember that it is only encrypted when yo uare not using it, and while it is being used the key is being stored in the

RAM, so leave your computer off when you are not using it!



30.

After entering the password, your machine begins to decrypt. This will

take only a few seconds, and then it will finish booting up.