# <target name> <source device> <key file> <options>
-#cswap /dev/sda1 /dev/random swap,cipher=aes-cbc-essiv:sha256
+#swap /dev/sda1 /dev/random swap,cipher=aes-xts-plain64:sha256
# <target name> <source device> <key file> <options>
-root /dev/mapper/vg-root none luks,cipher=aes-cbc-essiv:sha256
-home /dev/mapper/vg-home none luks,cipher=aes-cbc-essiv:sha256,keyscript=decrypt_keyctl
-var /dev/mapper/vg-var none luks,cipher=aes-cbc-essiv:sha256,keyscript=decrypt_keyctl
-vservers /dev/mapper/vg-vservers none luks,cipher=aes-cbc-essiv:sha256,keyscript=decrypt_keyctl
-cswap /dev/sda1 /dev/random swap,cipher=aes-cbc-essiv:sha256
+root /dev/mapper/vg-root none luks
+home /dev/mapper/vg-home none luks,keyscript=decrypt_keyctl
+var /dev/mapper/vg-var none luks,keyscript=decrypt_keyctl
+vservers /dev/mapper/vg-vservers none luks,keyscript=decrypt_keyctl
+swap /dev/mapper/vg-swap /dev/random swap,aes-xts-plain64:sha256
# <target name> <source device> <key file> <options>
-root /dev/mapper/vg-root none luks,cipher=aes-cbc-essiv:sha256
-vservers /dev/mapper/vg-vservers none luks,cipher=aes-cbc-essiv:sha256
+root /dev/mapper/vg-root none luks
+vservers /dev/mapper/vg-vservers none luks
# <target name> <source device> <key file> <options>
-root /dev/mapper/vg-root none luks,cipher=aes-cbc-essiv:sha256
-home /dev/mapper/vg-home none luks,cipher=aes-cbc-essiv:sha256,keyscript=decrypt_keyctl
-var /dev/mapper/vg-var none luks,cipher=aes-cbc-essiv:sha256,keyscript=decrypt_keyctl
-cswap /dev/sda1 /dev/random swap,cipher=aes-cbc-essiv:sha256
+root /dev/mapper/vg-root none luks
+home /dev/mapper/vg-home none luks,keyscript=decrypt_keyctl
+var /dev/mapper/vg-var none luks,keyscript=decrypt_keyctl
+swap /dev/mapper/swap /dev/random swap,aes-xts-plain64:sha256
# <target name> <source device> <key file> <options>
-root /dev/mapper/vg-root none luks,cipher=aes-cbc-essiv:sha256
-home /dev/mapper/vg-home none luks,cipher=aes-cbc-essiv:sha256,keyscript=decrypt_keyctl
-var /dev/mapper/vg-var none luks,cipher=aes-cbc-essiv:sha256,keyscript=decrypt_keyctl
-cswap /dev/sda1 none swap,cipher=aes-cbc-essiv:sha256
+root /dev/mapper/vg-root none luks
+home /dev/mapper/vg-home none luks
+var /dev/mapper/vg-var none luks
+swap /dev/mapper/swap none luks,swap
# <target name> <source device> <key file> <options>
-root /dev/mapper/vg-root none luks,cipher=aes-cbc-essiv:sha256
-#home /dev/mapper/vg-home none luks,cipher=aes-cbc-essiv:sha256
-#var /dev/mapper/vg-var none luks,cipher=aes-cbc-essiv:sha256
-#cswap /dev/sda1 /dev/random swap,cipher=aes-cbc-essiv:sha256
+root /dev/mapper/vg-root none luks
+#home /dev/mapper/vg-home none luks
+#var /dev/mapper/vg-var none luks
+#swap /dev/mapper/vg-swap /dev/random swap,cipher=aes-xts-plain64:sha256
# <target name> <source device> <key file> <options>
-root /dev/mapper/vg-root none luks,cipher=aes-cbc-essiv:sha256
-cswap /dev/sda1 /dev/random swap,cipher=aes-cbc-essiv:sha256
-vservers /dev/mapper/vg-vservers none luks,cipher=aes-cbc-essiv:sha256
+root /dev/mapper/vg-root none luks
+swap /dev/mapper/vg-swap /dev/random swap,cipher=aes-xts-plain64:sha256
+vservers /dev/mapper/vg-vservers none luks
-/dev/mapper/cswap none swap sw 0 0
+/dev/mapper/swap none swap sw 0 0
/dev/mapper/root / ext4 defaults,errors=remount-ro 0 1
/dev/mapper/home /home ext4 defaults,errors=remount-ro 0 2
/dev/mapper/var /var ext4 defaults,errors=remount-ro 0 2
-/dev/mapper/cswap none swap sw 0 0
+/dev/mapper/swap none swap sw 0 0
/dev/mapper/root / ext4 defaults,errors=remount-ro 0 1
/dev/mapper/home /home ext4 defaults,errors=remount-ro 0 2
/dev/mapper/var /var ext4 defaults,errors=remount-ro 0 2
/dev/mapper/root / ext4 noatime,defaults,errors=remount-ro 0 1
#/dev/mapper/home /home ext4 noatime,defaults,errors=remount-ro 0 2
#/dev/mapper/var /var ext4 noatime,defaults,errors=remount-ro 0 2
-#/dev/mapper/cswap none swap sw 0 0
+#/dev/mapper/swap none swap sw 0 0
-/dev/mapper/cswap none swap sw 0 0
+/dev/mapper/swap none swap sw 0 0
/dev/mapper/root / ext4 defaults,errors=remount-ro 0 1
/dev/mapper/vservers /var/vservers ext4 defaults,errors=remount-ro 0 2
# /etc/uswsusp.conf(5) -- Configuration file for s2disk/s2both
-resume device = /dev/mapper/cswap
+resume device = /dev/mapper/swap
splash = n
compress = y
early writeout = y
owner => "root",
group => "root",
mode => 0644,
- content => "RESUME=/dev/mapper/cswap\n",
+ content => "RESUME=/dev/mapper/swap\n",
notify => Exec['update-initramfs'],
ensure => $hibernate ? {
false => absent,