[Guide] Backup TrueCrypt Disk Header


Recommended Posts

Backup TrueCrypt Disk Header

About This Guide

This guide will show you how to backup and restore the header of your TrueCrypt encrypted disks.

Why would I want to do this? The header contains important information needed for accessing the data, including encryption keys. It is impossible to read any of the encrypted data without it, so if the header ever becomes corrupt for any reason, you could lose all of your data on the disk. Backing up the header and storing it in a safe place will ensure you'll be safe if this ever happens.

TrueCrypt disks also contain a backup header located at the end of the volume. Instructions are provided for this as well.

Table of Contents

Encrypted File Container, Partition, or Disk

1. Choose Volume

1a. Make sure disk is unmounted

1b. Select Disk

2. Backup Header

2a. Backup Header

2b. Store the Backup Header in a Safe Place

3. Restore Header

3a. Restore from Embedded Backup Header

3b. Restore from Backup Header File

Encrypted Operating System

4. Backup OS Header

4a. Select Encrypted Operating System

4b. Backup and Burn ISO

5. Restore OS Header


Encrypted File Container, Partition, or Disk

1. Choose Volume

1a. Make sure disk is unmounted

Before you can backup the header, first you must make sure that the encrypted disk is not already mounted.

If it is, select the drive letter in the list and click Dismount in the main window.

post-57213-0-04168200-1300667108.png

1b. Select Disk

Click on Select File or Select Device and choose the disk you want to backup.

Do not mount the disk! The disk must be unmounted for you to backup the header.

post-57213-0-51864000-1300667577.png

2. Backup Header

2a. Backup Header

This section shows you how to backup the volume header to an external file.

Click on Volume Tools... and select Backup Volume Header...

post-57213-0-13628700-1300667643.png

Type in the password and set any keyfiles for the encrypted volume, then click OK.

post-57213-0-20690400-1300668734.png

You will be asked if the encrypted disk contains a hidden volume. Choose the appropriate option.

If the disk contains a hidden volume, you will be asked to enter the password for the hidden volume as well.

post-57213-0-70279400-1300669672.png

Choose a location to save the file. This is the file which your header will be backed up to.

post-57213-0-98969000-1300668778.png

You will be asked to move the mouse around. Do this for a few seconds and then click Continue.

post-57213-0-13685000-1300668829.png

2b. Store the Backup Header in a Safe Place

So you do not lose the backup header, store it in a safe place.

Store it in an online backup if possible, such as to a DropBox account.

If you use webmail such as Gmail or Hotmail, you can email the header to yourself.

The header is encrypted using your password so it should be safe to backup online.

3. Restore Header

Follow the same instructions for choosing the volume mentioned under section 1.

3a. Restore from Embedded Backup Header

TrueCrypt volumes actually contain an embedded backup header stored at the end of the volume. You could try this first before restoring the header from a file.

If you get an error, Incorrect password or not a TrueCrypt volume, the embedded backup header may be corrupt or non-existent (Older TrueCrypt versions did not have this). In this case, move on to next section, Backup Header File.

Click on Volume Tools... and select Backup Volume Header...

post-57213-0-95069100-1300669696.png

Choose Restore the volume header from the backup embedded in the volume

post-57213-0-47162500-1300669841.png

Type in the password and set any keyfiles for the encrypted volume, then click OK.

post-57213-0-20690400-1300668734.png

You will be asked to move the mouse around. Do this for a few seconds and then click Continue.

post-57213-0-13685000-1300668829.png

3b. Restore from Backup Header File

If you failed to restore using the embedded header, you could try restoring the header from an external file.

Click on Volume Tools... and select Backup Volume Header...

post-57213-0-95069100-1300669696.png

Choose Restore the volume header from an external backup file

post-57213-0-78607100-1300670940.png

Browse for the file which contains the backup header. Be absolutely sure this is the correct backup header for this volume!

post-57213-0-01922100-1300670983.png

Type in the password and set any keyfiles for the encrypted volume, then click OK.

post-57213-0-20690400-1300668734.png

You will be asked to move the mouse around. Do this for a few seconds and then click Continue.

post-57213-0-13685000-1300668829.png


Encrypted Operating System

The instructions for an encrypted operating system are different. Headers are not backed up to a file. Instead, the header is backed up to a ISO which can be burned to a CD or DVD. The CD or DVD is bootable and may be used to restore the volume header.

Encrypted operating systems do not contain an embedded backup header! This is more the reason to backup the header for these volumes.

4. Backup OS Header

4a. Select Encrypted Operating System

There are two ways you can backup the header for the encrypted OS.

If you are already booted into the encrypted OS...

From the main menu, select System -> Create Rescue Disk...

post-57213-0-68678800-1300672354.png

If you are NOT booted into the encrypted OS...

Click Select Device... and choose the partition of the encrypted OS.

Then click Volume Tools... and select Create Rescue Disk...

post-57213-0-57672800-1300672718.png

Choose a location to save the ISO file. Name it something appropriate, and make sure to give it the .ISO file extension.

post-57213-0-41006200-1300673145.png

4b. Backup and Burn ISO

It is highly recommended that you burn the ISO to a blank CD or DVD. If you are not asked to burn the ISO and need software to do so, there are many great freeware solutions available:

BurnAware

ImgBurn

InfraRecorder

It is also recommended to backup the ISO file to online storage if possible.

Store it in a DropBox account, or email it to yourself.

The header in the ISO is encrypted using your password so it should be safe to backup online.

5. Restore OS Header

To restore the encrypted operating system header, you must boot from your rescue disk.

On this screen, press F8 to access repair options.

post-57213-0-76089800-1300673730.png

Press 2 to restore the bootloader.

Press Y to confirm.

post-57213-0-52765900-1300673736.png

Press 3 to restore the volume header.

Type in the password of the volume header.

Press Y to confirm.

post-57213-0-28665700-1300673742.png

Link to comment
Share on other sites

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.