[pkg-cryptsetup-devel] Bug#782024: cryptsetup: [patch] fix remote unlock of encrypted root when plymouth is installed

Guilhem Moulin guilhem at guilhem.org
Fri Dec 18 18:56:31 UTC 2015


On Wed, 16 Dec 2015 at 23:37:31 -0500, Richard Hansen wrote:
> It should work on Debian, though I have not tested it.

The client part can't be shipped by cryptsetup; instead, it should have
its own ‘dropbear-initramfs-client’ package.  But IMHO this is not
really necessary: as explained in dropbear-initramfs' README.initramfs,
remote unlocking only boils down to

    ssh -F ~/.luks/ssh.conf remote.system.com

when /root/.ssh/authorized_keys contains the command="/bin/unlock"
authorized_keys(5) restriction.

-- 
Guilhem.
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 819 bytes
Desc: not available
URL: <http://lists.alioth.debian.org/pipermail/pkg-cryptsetup-devel/attachments/20151218/1a4d8963/attachment.sig>


More information about the pkg-cryptsetup-devel mailing list