[pkg-cryptsetup-devel] Bug#774647: cryptsetup on initramfs does not support key files (resume swap on LVM)

Lukasz Stelmach stlman at poczta.fm
Sun Jan 18 13:11:58 UTC 2015


Hi,

The main reason reported this problem is that I want to enter
a single password to decrypt all my partitions. In such case
there is a way to work the problem around:

a) set the same password for all the devices you want initrd to decrypt,
b) use keyctl to cache the password.

My /etc/crypttab now looks like this:

-----8<-----
sda2_crypt UUID=e499987ab017 root_key luks,keyscript=decrypt_keyctl
sdb2_crypt UUID=c3b74b86b567 root_key luks,keyscript=decrypt_keyctl
-----8<-----

The procedure is described in the README.keyctl file.

http://anonscm.debian.org/viewvc/pkg-cryptsetup/cryptsetup/trunk/debian/README.keyctl?revision=977&view=co

-- 
Było mi bardzo miło.                   Twoje oczy lubią mnie
>Łukasz<                                     i to mnie zgubi  (c)SNL

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 473 bytes
Desc: OpenPGP digital signature
URL: <http://lists.alioth.debian.org/pipermail/pkg-cryptsetup-devel/attachments/20150118/1aca9046/attachment.sig>


More information about the pkg-cryptsetup-devel mailing list