[pkg-cryptsetup-devel] Bug#993725: cryptsetup-initramfs: LV activation disregards activation/auto_activation_volume_list setting

Guilhem Moulin guilhem at debian.org
Sun Sep 5 20:18:25 BST 2021


Control: tag -1 - moreinfo
Control: severity -1 minor

On Sun, 05 Sep 2021 at 20:13:03 +0200, Lukas Schwaighofer wrote:
> On Sun, 5 Sep 2021 17:04:06 +0200 Guilhem Moulin <guilhem at debian.org> wrote:
> Without the suggested patch it's impossible to prevent some LVs that
> share the same volume group as e.g. the root partition from being
> activated automatically. Concretely I was trying to work around a
> different bug [1] by avoiding automatically opening some LVs using the
> `auto_activation_volume_list` option in the lvm.conf. I was surprised
> to still see all my LVs activated (and thus the bug triggered,
> rendering my system unbootable).
> 
> Indeed, if somebody changed their `auto_activation_volume_list` to not
> contain the necessary partitions during boot, that would render their
> system unbootable.  I believe this is the correct behavior, and this
> would also happen in a pure LVM setup since the script from the LVM2
> package uses the `-a ay` flag [2].

I see, thanks for the details.  Makes sense to mimic what the lvm2
folks are doing since we're trying to workaround initramfs-tools lacks
of expressiveness here and ideally would defer everything to
lvm2-provided logic.

I've lowered the severity as I don't think this issue warrants
‘Severity: important’, but will probably merge this as is — we're early
enough in the release cycle to try potentially disruptive changes :-)

-- 
Guilhem.
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 833 bytes
Desc: not available
URL: <http://alioth-lists.debian.net/pipermail/pkg-cryptsetup-devel/attachments/20210905/dbe2e1a6/attachment.sig>


More information about the pkg-cryptsetup-devel mailing list