Skip to content

Contact sales

By filling out this form and clicking submit, you acknowledge our privacy policy.
  • Labs icon Lab
  • A Cloud Guru
Google Cloud Platform icon
Labs

Create and Mount an Encrypted Filesystem Using eCryptFS

In this lab you will create an encrypted directory using eCryptfs. Next, you will "mount" the directory in order to access files stored there. You are working as a System Administrator at a large financial institution and have been tasked with creating an encrypted directory using eCryptfs on a user's workstation running SUSE Linux Enterprise Server 15. You will need to log into the remote workstation and complete the following tasks to accomplish this: 1. Confirm the kernel module. 2. Install ecryptfs packages. 3. Add a passphrase to kernel keyring. 4. Create directories. 5. Mount the filesystem.

Google Cloud Platform icon
Labs

Path Info

Level
Clock icon Intermediate
Duration
Clock icon 15m
Published
Clock icon Jan 31, 2020

Contact sales

By filling out this form and clicking submit, you acknowledge our privacy policy.

Table of Contents

  1. Challenge

    Confirm the Kernel Module

    Confirm the kernel module:

    sudo modprobe ecryptfs
    
  2. Challenge

    Install eCryptfs Packages

    Install eCryptfs packages using zypper command on SUSE:

    $ sudo zypper install ecryptfs-utils
    
  3. Challenge

    Add Passphrase to Kernel Keyring

    Add a passphrase to kernel keyring. Be sure to save the key signature, as it will be required when mounting the filesystem:

    $ ecryptfs-add-passphrase
    $ export KSIG=
    
  4. Challenge

    Create Directories

    For encrypted data:

    $ mkdir secret-enc 
    

    For decrypted data:

    $ mkdir secret
    
  5. Challenge

    Mount the Filesystem

    Confirm the environment variable $KSIG was properly set from ecryptfs-add-passphrase in previous step:

    $ echo $KSIG
    $ sudo mount -i -t ecryptfs secret-enc/ secret/ -o ecryptfs_sig=$KSIG,ecryptfs_fnek_sig=$KSIG,ecryptfs_cipher=aes,ecryptfs_key_bytes=32,ecryptfs_unlink_sigs
    

The Cloud Content team comprises subject matter experts hyper focused on services offered by the leading cloud vendors (AWS, GCP, and Azure), as well as cloud-related technologies such as Linux and DevOps. The team is thrilled to share their knowledge to help you build modern tech solutions from the ground up, secure and optimize your environments, and so much more!

What's a lab?

Hands-on Labs are real environments created by industry experts to help you learn. These environments help you gain knowledge and experience, practice without compromising your system, test without risk, destroy without fear, and let you learn from your mistakes. Hands-on Labs: practice your skills before delivering in the real world.

Provided environment for hands-on practice

We will provide the credentials and environment necessary for you to practice right within your browser.

Guided walkthrough

Follow along with the author’s guided walkthrough and build something new in your provided environment!

Did you know?

On average, you retain 75% more of your learning if you get time for practice.

Start learning by doing today

View Plans