You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.
Ondrej Kozina 4a24311161 Extend offline reencryption test for other keyslot numbers. 2 days ago
docs Fix minor typos 2 weeks ago
lib Pass max_hotzone_size inside reencryption parameters in sectors. 5 days ago
man Make resize action accept --device-size parameter (supports units). 2 weeks ago
misc Update copyright year. 5 months ago
po Update po files. 2 days ago
scripts Do not rename tmpfile config but use it directly. 1 year ago
src Fix offline reencryption bug in header backup phase. 2 days ago
tests Extend offline reencryption test for other keyslot numbers. 2 days ago
.gitignore Update git ignore file. 6 months ago
.travis-functions.sh Add kernel crypt backend option to Travis build. 6 months ago
.travis.yml Switch to Xenial distro in Travis. 1 month ago
AUTHORS Update author name. 5 years ago
COPYING Fix FSF address in license text according to 7 years ago
COPYING.LGPL Change License for sub-libraries from GPLv2 only to LGPLv2.1+ ("or any later") 6 years ago
ChangeLog Update version control history url 3 years ago
FAQ Fix misspellings 5 months ago
INSTALL Fix typos. 1 year ago
Makefile.am Do not run empty test set in main directory. 7 months ago
NEWS Specify copyright holders in source files. 8 years ago
README Move README back. 3 years ago
README.md Update readme.md. 1 month ago
TODO Update copyright year. 1 year ago
autogen.sh Do not run configure automatically after running autogen.sh. 1 year ago
configure.ac Prepare version 2.2.0-rc1. 1 month ago

README.md

LUKS logo

What the …?

Cryptsetup is a utility used to conveniently set up disk encryption based on the DMCrypt kernel module.

These include plain dm-crypt volumes, LUKS volumes, loop-AES and TrueCrypt (including VeraCrypt extension) formats.

The project also includes a veritysetup utility used to conveniently setup DMVerity block integrity checking kernel module and, since version 2.0, integritysetup to setup DMIntegrity block integrity kernel module.

LUKS Design

LUKS is the standard for Linux hard disk encryption. By providing a standard on-disk-format, it does not
only facilitate compatibility among distributions, but also provides secure management of multiple user passwords.
LUKS stores all necessary setup information in the partition header, enabling to transport or migrate data seamlessly.

Last version of the LUKS2 format specification is available here.

Last version of the LUKS1 format specification is available here.

Why LUKS?

  • compatibility via standardization,
  • secure against low entropy attacks,
  • support for multiple keys,
  • effective passphrase revocation,
  • free.

Project home page.

Frequently asked questions (FAQ)

Download

All release tarballs and release notes are hosted on kernel.org.

The latest cryptsetup version is 2.1.0

The latest testing and experimental cryptsetup version is 2.2.0-rc1

Previous versions

Source and API docs

For development version code, please refer to source page, mirror on kernel.org or GitHub.

For libcryptsetup documentation see libcryptsetup API page.

The libcryptsetup API/ABI changes are tracked in compatibility report.

NLS PO files are maintained by TranslationProject.

Help!

Please always read FAQ first. For cryptsetup and LUKS related questions, please use the dm-crypt mailing list, dm-crypt@saout.de.

If you want to subscribe just send an empty mail to dm-crypt-subscribe@saout.de.

You can also browse list archive or read it through web interface.