it uses gocryptfs -- a newer alternative to EncFS -- to encrypt paths and data (but not metadata) onto an underlying backing filesystem
11 lines
246 B
Bash
Executable File
11 lines
246 B
Bash
Executable File
#!/usr/bin/env bash
|
|
|
|
set -ex
|
|
|
|
# configure persistent, encrypted storage that is auto-mounted on login.
|
|
# this is a one-time setup and user should log out/back in after running it.
|
|
|
|
p=/nix/persist/home/colin/private
|
|
mkdir -p $p
|
|
gocryptfs -init $p
|