Originally posted by Markopolo
View Post
Announcement
Collapse
No announcement yet.
Btrfs With Linux 5.12 Gets More Performance Improvements, Working Zoned Mode
Collapse
X
-
Originally posted by ElectricPrism View PostHearing about BTRFS "improvements" while on a BTRFS filesystem scares the shit out of me.
Guess I'll have to do my backups and skip 5.12 for a few months until other people are offered as "human sacrifice" to test if it is a totally clusterfuck or not.
You should always have tested backups of valuable data you care about anyway.
On the other hand... BTRFS have saved me from disaster and corruption more than once. I have been using it since before 2013 and have never lost anything. There was a nasty bug in early kernel 5.2 that hit me. However I was able to recover everything without much problems. Other non-check-summing filesystems may not complain about corruption so you never know if you data is sane in the first place and when you notice a 'blipp' in your movie/audio/picture or whatever you would know if your files has been corrupted locally or not.
BTRFS have (for me) worked flawlessly on stable LTS kernels and as long as you only use the stable features you should be better off than with just about any other filesystem. Most horror stories on the mailing list is usually due to some exotic set up, bad hardware, usb drives or old (usually non LTS) kernels.Last edited by waxhead; 19 February 2021, 09:10 PM. Reason: Fixed the most grave typos... there are probably more....
- Likes 10
Leave a comment:
-
sub-page block size support is now working but with more work still on the way
Leave a comment:
-
Originally posted by polarathene View Post
Thanks for sharing that (and everyone else who responded).
Why is you OS disk EXT4 instead of BTRFS? Is it due to some part of the process not being compatible with BTRFS?
Your 7 BTRFS disks use encryption from LUKS but not full disk encryption like EXT4? (it seems that I might have been mistaken here, when I said full disk encryption I was referring to hardware disk encryption, a feature a disk vendor provides, instead of FDE it's apparently called SED: Self-Encrypting Drive)
The Ubuntu installer uses luks for full disk encryption. EXT4 is done on top of luks.
- Likes 1
Leave a comment:
-
Originally posted by polarathene View PostYour 7 BTRFS disks use encryption from LUKS but not full disk encryption like EXT4? (it seems that I might have been mistaken here, when I said full disk encryption I was referring to hardware disk encryption, a feature a disk vendor provides, instead of FDE it's apparently called SED: Self-Encrypting Drive)
Full disk encryption means a scheme where there is no "visible" partition layout (nor partitions nor data), only a single encrypted container, which has to be unlocked first and then can be exposed as a common block device with partitions and data contained inside. This is what we can have with LUKS and is possible to combine with BTRFS or Ext4 or anything else. (In practise UEFI/Linux boot partitions must still remain unencrypted.)
More advanced scheme is to have the filesystem itself use encryption which is more flexible than the aforementioned scheme. Here I am not entirely sure about the details. Anyways this is what Ext4 currently supports among others but BTRFS doesn't.
- Likes 1
Leave a comment:
-
Originally posted by DanglingPointer View Post- OS on EXT4 over full disk encryption (from ubuntu installer). Decrypted on boot using password just after grub.
Why is you OS disk EXT4 instead of BTRFS? Is it due to some part of the process not being compatible with BTRFS?
Your 7 BTRFS disks use encryption from LUKS but not full disk encryption like EXT4? (it seems that I might have been mistaken here, when I said full disk encryption I was referring to hardware disk encryption, a feature a disk vendor provides, instead of FDE it's apparently called SED: Self-Encrypting Drive)
Leave a comment:
-
Originally posted by polarathene View PostQuestion for those more familiar with disk/file encryption.
Filesystem aside, one can have full disk encryption and file/directory encryption (filesystem agnostic), and then there is filesystem specific encryption? (which BTRFS lacks)
In what scenario is it useful to have filesystem encryption when you have the other two?:- encrypted disk at rest offline(as in not actively booted/unlocked) - Usually uses AES-XTS which iirc has some negatives, but is due to context of content/input to encrypt/decrypt.
- files protected at rest during runtime (as in you're logged into a session and can unlock/decrypt a vault or w/e of encrypted data, but it's otherwise protected from third-parties that can access the system while it's running) - Can support nicer ciphers like AES-GCM
I assume it's perhaps something you'd want if you're not using/trusting full disk encryption (which I recall some vendors having flawed implementations for that ended up not providing protection as well as assumed?).
I believe I have seen mention of using LVM with LUKS to work around BTRFS lack of filesystem level encryption, but that there are gotchas/drawbacks mixing LVM with BTRFS. Just curious how useful such a feature is at the filesystem level.- OS on EXT4 over full disk encryption (from ubuntu installer). Decrypted on boot using password just after grub.
- 7 disks each Luks encrypted by keyfile stored in privileged location in encrypted OS disk path (first point above), once again only accessible via password input after grub
- BTRFS RAID5 on top of all the 7 disks. (yes yes to the anxious types, I live on the edge and have been with two servers for the past 6 and half years with no problems!).
- quarterly scrubs via cron
- Likes 8
Leave a comment:
-
Originally posted by polarathene View PostI believe I have seen mention of using LVM with LUKS to work around BTRFS lack of filesystem level encryption, but that there are gotchas/drawbacks mixing LVM with BTRFS. Just curious how useful such a feature is at the filesystem level.
Such a setup is Boot-able with grub (it should even work to store the initramfs in btrfs) or if you store the initramfs outside the encrypted partition with anything else.
- Likes 8
Leave a comment:
Leave a comment: