ecryptfs-find
match eCryptfs encrypted filenames to their decrypted counterparts
TLDR
SYNOPSIS
ecryptfs-find filename
DESCRIPTION
ecryptfs-find uses inode numbers to match encrypted filenames to their decrypted counterparts, and decrypted filenames to their encrypted counterparts. It calls ls(1) to determine the inode and find(1) to locate the inode on the filesystem.The eCryptfs filesystem must be mounted for the command to function, since it needs both the encrypted and decrypted views of the directory to perform the match.This is primarily a diagnostic tool for resolving filename mappings in eCryptfs deployments.
PARAMETERS
FILENAME
A cleartext or eCryptfs-encrypted filename to look up. The tool resolves the corresponding counterpart using inode numbers.
CAVEATS
The eCryptfs filesystem must be mounted before running this command. The tool does not decrypt file contents, only filename mappings. Requires read access to the directories being searched.
HISTORY
ecryptfs-find is part of the ecryptfs-utils package. eCryptfs is a POSIX-compliant stacked cryptographic filesystem included in the Linux kernel since version 2.6.19 (released 2006).
SEE ALSO
ecryptfs-setup-private(1), ecryptfs-verify(1), ecryptfs(1), encfs(1), fscrypt(1)
