Bug#397887: [Pkg-cryptsetup-devel] Bug#397887: resume support renders system unbootable

martin f krafft madduck at debian.org
Sat Nov 11 17:52:35 CET 2006


also sprach David Härdeman <david at hardeman.nu> [2006.11.11.1239 +0100]:
> cryptswap /dev/hda2 cryptroot 
> keyscript=/root/decrypt_derived,hash=sha256,size=256,cipher=aes-cbc-essiv:sha256

So how do I initialise /dev/hda2 for this to work? Am I expected to
run the decrypt_derived script and take the output as keyphrase?

If I do that, I get:

lapse:~# cryptsetup luksFormat /dev/hda2                               #[1,376]

WARNING!
========
This will overwrite data on /dev/hda2 irrevocably.

Are you sure? (Type uppercase yes): YES
Enter LUKS passphrase: <the hash output from /root/decrypt_derived cr_hda5>
Verify passphrase: <the hash output from /root/decrypt_derived cr_hda5>
Command successful.
lapse:~# /etc/init.d/cryptdisks start                                    #[377]
Starting remaining crypto disks... cr_hda5(running) cr_hda6(running) cr_hda7(running) cr_hda8(running) cr_hda9(running) cr_hda2(starting)-e 
 - The device /dev/hda2 contains a valid filesystem type crypto_LUKS.
the precheck for '/dev/hda2' failed, skipping

-- 
 .''`.   martin f. krafft <madduck at debian.org>
: :'  :  proud Debian developer, author, administrator, and user
`. `'`   http://people.debian.org/~madduck - http://debiansystem.info
  `-  Debian - when you have better things to do than fixing systems
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: Digital signature (GPG/PGP)
Url : http://lists.alioth.debian.org/pipermail/pkg-cryptsetup-devel/attachments/20061111/d54e5cfe/attachment.pgp


More information about the Pkg-cryptsetup-devel mailing list