[pkg-cryptsetup-devel] Bug#601314: Bug#601314: Bug#601314: please allow adding extra devices to conf.d/cryptsetup in your hook script

Jonas Meurer jonas at freesources.org
Wed Mar 23 14:28:04 UTC 2011


Hello Marc,

On 27/02/2011 Jonas wrote:
> On 27/02/2011 Marc Haber wrote:
> > On Sun, Feb 27, 2011 at 04:12:07PM +0100, Jonas Meurer wrote:
> > > To be honest, this sounds like a rather special setup to me.
> > 
> > It is special, but very useful. Nobody uses it because it is so hard
> > to do.
> > 
> > > Your setup sounds like a keyscript would be the perfect solution for
> > > you. Why not simply write a keyscript which does all preliminary steps
> > > and outputs the key?
> > 
> > Because the cryptsetup initramfs tools do a very good job interacting
> > with plymouth, which would have to be reimplemented in the keyscript.
> 
> I guess this is not necessary if you use askpass for interactive
> passphrase prompting in your keyscript. askpass has support for usplash
> and plymouth.

Did you consider to write a custom keyscript using the askpass (and
maybe even passdev) script? It would be great to know your opinion on
that.

In my opinion this is the best implementation for your setup. I still
don't like the idea to add complex options to crypttab and/or initramfs
configuration to setup the order of device unlocking.

greetings,
 jonas
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 836 bytes
Desc: Digital signature
URL: <http://lists.alioth.debian.org/pipermail/pkg-cryptsetup-devel/attachments/20110323/ad704bbf/attachment.pgp>


More information about the pkg-cryptsetup-devel mailing list