Jump to content

Encrypted drives in array yet Unraid does not ask for password to start array


Recommended Posts

 

Hi all,

 

I have 4 encrypted XFS drives in array but Unraid does not request the password to start the array.

 

Here is what I did :

 

  1. My current array was populated with unencrypted hard drives only and I wanted to add 4 new hard drives
  2. Since I wanted to take this opportunity to encrypt my array, I stopped the array and changed the Disk Settings > Default file system setting to "XFS - encrypted" before adding the 4 new hard drives.
  3. I assigned the 4 new hard drives to 4 slots in my array, entered a password (twice) and started the array successfully
  4. I initiated the formatting of the 4 new hard drives (clicked the "format" button and confirmed my intention to format when prompted), and the formatting completed successfully.
  5. I stopped the array

 

Now I can start back the array without entering any password (see attached screenshot), which I do not want obviously.

 

Why is that ?

 

Many thanks in advance.

Best,

OP

 

unraid-array.png

Edited by Opawesome
fixed typos
Link to comment
39 minutes ago, itimpi said:

I believe you will be prompted for the password if you reboot. 

Hi @itimpi,

 

Many thanks for your answer. I confirm that, indeed, I was prompted for the password after a reboot.

 

I am still curious to know if this is the intended behaviour or if I am suffering an issue of some sort.

 

Thank you all in advance.

 

Best,

OP 

Link to comment
10 hours ago, Opawesome said:

Hi @itimpi,

 

Many thanks for your answer. I confirm that, indeed, I was prompted for the password after a reboot.

 

I am still curious to know if this is the intended behaviour or if I am suffering an issue of some sort.

 

Thank you all in advance.

 

Best,

OP 

The keyfile is stored here

 

root@Tower:~# pwd
/root
root@Tower:~# ls
keyfile
root@Tower:~# 

 

If you delete the keyfile then you will be prompted a array start.

 

image.png.e02653e69726495e97f224ddec8cb41f.png

Link to comment
On 5/22/2021 at 7:37 AM, SimonF said:

The keyfile is stored here

 



root@Tower:~# pwd
/root
root@Tower:~# ls
keyfile
root@Tower:~# 

 

If you delete the keyfile then you will be prompted a array start.

 

image.png.e02653e69726495e97f224ddec8cb41f.png

 

Hi @SimonF

Many thanks.

I thought about that indeed, having seen threads on this forum where people complained about security issues relating to having the passphrase stored in plain text in this file. My understanding was that this issue was fixed and that this "keyfile" was no longer stored as such after the array is started.

I did check for the existence of such file before creating this thread and it is indeed gone, at least on v6.8.3:

 

Linux 4.19.107-Unraid.
Last login: Fri May 21 21:09:41 +0200 2021 on /dev/pts/1.
root@MOZART:~# pwd
/root
root@MOZART:~# ls
mdcmd@
root@MOZART:~# 

 

The "DELETE" button you showed was also removed, at least in v6.8.3

 

Best,

OP

Edited by Opawesome
Link to comment

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.
Note: Your post will require moderator approval before it will be visible.

Guest
Reply to this topic...

×   Pasted as rich text.   Restore formatting

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

×
×
  • Create New...