Groups | Search | Server Info | Keyboard shortcuts | Login | Register [http] [https] [nntp] [nntps]


Groups > linux.debian.user > #209215 > unrolled thread

Debian Stretch, no password prompt for luks-encrypted home partition during boot

Started bySergey Belyashov <sergey.belyashov@gmail.com>
First post2019-05-27 12:30 +0200
Last post2019-05-30 11:00 +0200
Articles 13 — 3 participants

Back to article view | Back to linux.debian.user


Contents

  Debian Stretch, no password prompt for luks-encrypted home partition  during boot Sergey Belyashov <sergey.belyashov@gmail.com> - 2019-05-27 12:30 +0200
    Fwd: Debian Stretch, no password prompt for luks-encrypted home  partition during boot Sergey Belyashov <sergey.belyashov@gmail.com> - 2019-05-27 16:00 +0200
      Re: Debian Stretch, no password prompt for luks-encrypted home  partition during boot Ross Boylan <rossboylan@stanfordalumni.org> - 2019-05-28 05:30 +0200
        Re: Debian Stretch, no password prompt for luks-encrypted home  partition during boot Sergey Belyashov <sergey.belyashov@gmail.com> - 2019-05-28 07:30 +0200
          Re: Debian Stretch, no password prompt for luks-encrypted home partition during boot deloptes <deloptes@gmail.com> - 2019-05-28 08:10 +0200
            Re: Debian Stretch, no password prompt for luks-encrypted home  partition during boot Sergey Belyashov <sergey.belyashov@gmail.com> - 2019-05-28 08:20 +0200
              Re: Debian Stretch, no password prompt for luks-encrypted home partition during boot deloptes <deloptes@gmail.com> - 2019-05-28 08:40 +0200
                Re: Debian Stretch, no password prompt for luks-encrypted home  partition during boot Sergey Belyashov <sergey.belyashov@gmail.com> - 2019-05-28 10:00 +0200
                Fwd: Debian Stretch, no password prompt for luks-encrypted home  partition during boot Sergey Belyashov <sergey.belyashov@gmail.com> - 2019-05-28 13:20 +0200
                  Re: Fwd: Debian Stretch, no password prompt for luks-encrypted home partition during boot deloptes <deloptes@gmail.com> - 2019-05-28 22:20 +0200
                    Re: Fwd: Debian Stretch, no password prompt for luks-encrypted home  partition during boot Sergey Belyashov <sergey.belyashov@gmail.com> - 2019-05-29 14:00 +0200
        Re: Debian Stretch, no password prompt for luks-encrypted home partition during boot deloptes <deloptes@gmail.com> - 2019-05-28 08:20 +0200
    Re: Debian Stretch, no password prompt for luks-encrypted home  partition during boot Sergey Belyashov <sergey.belyashov@gmail.com> - 2019-05-30 11:00 +0200

#209215 — Debian Stretch, no password prompt for luks-encrypted home partition during boot

FromSergey Belyashov <sergey.belyashov@gmail.com>
Date2019-05-27 12:30 +0200
SubjectDebian Stretch, no password prompt for luks-encrypted home partition during boot
Message-ID<y2l3c-4az-9@gated-at.bofh.it>

[Multipart message — attachments visible in raw view] — view raw

I have system with soft raid and /home is encrypted (luks with password).
When I boot it using default boot kernel options (ro quiet) systemd stops
on waiting for partition, but no any password prompt. I try to boot with
plymouth (ro quiet splash), but it does not help me. I may boot only using
"recovery mode". In this case system asks me for password and I may enter
it (but there are lot of kernel messages after prompt).
update-initramfs finishes without errors or warnings.
What I'm doing wrong?

Best regards,
Sergey Belyashov

Additional information:

mdadm.conf:
ARRAY /dev/md0 metadata=0.90 UUID=91f74976:a3538ec7:cb201669:f728008a
ARRAY /dev/md1 metadata=1.2 UUID=d68931c6:642d72fc:b7471e62:33eab4d7
name=my-server:1
ARRAY /dev/md2 metadata=1.2 UUID=c42e4696:cb876ca7:c2773edf:e9b17a82
name=my-server:2

/proc/mdstat:
md0 : active raid1 sda3[0] sdc3[1]
      1462886848 blocks [2/2] [UU]

md1 : active (auto-read-only) raid1 sdc2[1] sda2[0]
      1998848 blocks super 1.2 [2/2] [UU]

md2 : active raid1 sdc1[1] sda1[0]
      248640 blocks super 1.2 [2/2] [UU]

crypttab:
#UUID=e7a2e597-8f57-4faf-b32d-f24b5720ffe5 same as /dev/md0p3
crypto-home UUID=e7a2e597-8f57-4faf-b32d-f24b5720ffe5 none luks

fstab:
/dev/md0p1                                         /               ext4
 errors=remount-ro 0       1
/dev/md0p2                                         /var            ext4
 defaults        0       2
/dev/md1                                             none            swap
 sw              0       0
/dev/md2                                             /boot           ext4
 defaults        0       2
/dev/mapper/crypto-home                   /home           auto    defaults
       0       2
...

$ egrep "^CRYPTSETUP" /etc/cryptsetup-initramfs/conf-hook
CRYPTSETUP=y

$ uname -a
Linux my-server 4.9.0-9-amd64 #1 SMP Debian 4.9.168-1+deb9u2 (2019-05-13)
x86_64 GNU/Linux

systemd has version: 232-25+deb9u11
cryptsetup has version: 2:1.7.3-4
initramfs-tools has version: 0.130

[toc] | [next] | [standalone]


#209226 — Fwd: Debian Stretch, no password prompt for luks-encrypted home partition during boot

FromSergey Belyashov <sergey.belyashov@gmail.com>
Date2019-05-27 16:00 +0200
SubjectFwd: Debian Stretch, no password prompt for luks-encrypted home partition during boot
Message-ID<y2okp-62G-5@gated-at.bofh.it>
In reply to#209215

[Multipart message — attachments visible in raw view] — view raw

I have system with soft raid and /home is encrypted (one of raid1
partitions is encrypted using luks with password). When I boot it using
default boot kernel options (ro quiet) systemd stops on waiting for
partition, but no any password prompt. I try to boot with plymouth (ro
quiet splash), but it does not help me. I may boot only using "recovery
mode". In this case system asks me for password and I may enter it (but
there are lot of kernel messages after prompt).
update-initramfs finishes without errors or warnings.
What I'm doing wrong?

Best regards,
Sergey Belyashov

Additional information:

mdadm.conf:
ARRAY /dev/md0 metadata=0.90 UUID=91f74976:a3538ec7:cb201669:f728008a
ARRAY /dev/md1 metadata=1.2 UUID=d68931c6:642d72fc:b7471e62:33eab4d7
name=my-server:1
ARRAY /dev/md2 metadata=1.2 UUID=c42e4696:cb876ca7:c2773edf:e9b17a82
name=my-server:2

/proc/mdstat:
md0 : active raid1 sda3[0] sdc3[1]
      1462886848 blocks [2/2] [UU]

md1 : active (auto-read-only) raid1 sdc2[1] sda2[0]
      1998848 blocks super 1.2 [2/2] [UU]

md2 : active raid1 sdc1[1] sda1[0]
      248640 blocks super 1.2 [2/2] [UU]

crypttab:
#UUID=e7a2e597-8f57-4faf-b32d-f24b5720ffe5 same as /dev/md0p3
crypto-home UUID=e7a2e597-8f57-4faf-b32d-f24b5720ffe5 none luks

fstab:
/dev/md0p1                                         /               ext4
 errors=remount-ro 0       1
/dev/md0p2                                         /var            ext4
 defaults        0       2
/dev/md1                                             none            swap
 sw              0       0
/dev/md2                                             /boot           ext4
 defaults        0       2
/dev/mapper/crypto-home                   /home           auto    defaults
       0       2
...

$ egrep "^CRYPTSETUP" /etc/cryptsetup-initramfs/conf-hook
CRYPTSETUP=y

$ uname -a
Linux my-server 4.9.0-9-amd64 #1 SMP Debian 4.9.168-1+deb9u2 (2019-05-13)
x86_64 GNU/Linux

systemd has version: 232-25+deb9u11
cryptsetup has version: 2:1.7.3-4
initramfs-tools has version: 0.130

[toc] | [prev] | [next] | [standalone]


#209273 — Re: Debian Stretch, no password prompt for luks-encrypted home partition during boot

FromRoss Boylan <rossboylan@stanfordalumni.org>
Date2019-05-28 05:30 +0200
SubjectRe: Debian Stretch, no password prompt for luks-encrypted home partition during boot
Message-ID<y2AYh-5Gb-1@gated-at.bofh.it>
In reply to#209226
For at least the last couple of weeks I've had the screen go
completely blank during bootup, after displaying initial messages (I
changed from "quiet" to "debug" for kernel startup).  This is with a
luks encrypted root.  I saw it under jessie and buster.  I blamed
failing hardware (I can't get into the BIOS on boot because the screen
goes black), though I noticed the same behavior in a VM.

I've discovered that if I type my pass-phrase (waiting long enough
that I think things have settled down), the system boots.

So, you might try typing your luks passphrase and see if it helps.

And maybe something has changed in the tools or kernel that's causing
the misbehavior, although jessie hasn't been changing much recently.

Ross

[toc] | [prev] | [next] | [standalone]


#209277 — Re: Debian Stretch, no password prompt for luks-encrypted home partition during boot

FromSergey Belyashov <sergey.belyashov@gmail.com>
Date2019-05-28 07:30 +0200
SubjectRe: Debian Stretch, no password prompt for luks-encrypted home partition during boot
Message-ID<y2CQp-6Uv-7@gated-at.bofh.it>
In reply to#209273

[Multipart message — attachments visible in raw view] — view raw

My problem is about than year old or more. With default options (without
plymouth) only information about root partition mount or fsck. Later it
replaced by partition waiting "progress" (moving red asterisks). I have try
to wait about a minute and try to enter luks password, but no any changes.
I think, problem is in complex setup luks on mdraid.

Best regards,
Sergey Belyashov

вт, 28 мая 2019 г., 6:26 Ross Boylan <rossboylan@stanfordalumni.org>:

> For at least the last couple of weeks I've had the screen go
> completely blank during bootup, after displaying initial messages (I
> changed from "quiet" to "debug" for kernel startup).  This is with a
> luks encrypted root.  I saw it under jessie and buster.  I blamed
> failing hardware (I can't get into the BIOS on boot because the screen
> goes black), though I noticed the same behavior in a VM.
>
> I've discovered that if I type my pass-phrase (waiting long enough
> that I think things have settled down), the system boots.
>
> So, you might try typing your luks passphrase and see if it helps.
>
> And maybe something has changed in the tools or kernel that's causing
> the misbehavior, although jessie hasn't been changing much recently.
>
> Ross
>

[toc] | [prev] | [next] | [standalone]


#209279 — Re: Debian Stretch, no password prompt for luks-encrypted home partition during boot

Fromdeloptes <deloptes@gmail.com>
Date2019-05-28 08:10 +0200
SubjectRe: Debian Stretch, no password prompt for luks-encrypted home partition during boot
Message-ID<y2Dt7-7no-1@gated-at.bofh.it>
In reply to#209277
Sergey Belyashov wrote:

> My problem is about than year old or more. With default options (without
> plymouth) only information about root partition mount or fsck. Later it
> replaced by partition waiting "progress" (moving red asterisks). I have
> try to wait about a minute and try to enter luks password, but no any
> changes. I think, problem is in complex setup luks on mdraid.

Is the root partition on mdraid and encrypted?

What happens when you set modules to most
in /etc/initramfs-tools/initramfs.conf?

regards

[toc] | [prev] | [next] | [standalone]


#209280 — Re: Debian Stretch, no password prompt for luks-encrypted home partition during boot

FromSergey Belyashov <sergey.belyashov@gmail.com>
Date2019-05-28 08:20 +0200
SubjectRe: Debian Stretch, no password prompt for luks-encrypted home partition during boot
Message-ID<y2DCN-7rd-3@gated-at.bofh.it>
In reply to#209279

[Multipart message — attachments visible in raw view] — view raw

Root partition is on mdraid but is not encrypted. Home is encrypted only.
Modules are set to most already.

вт, 28 мая 2019 г., 9:06 deloptes <deloptes@gmail.com>:

> Sergey Belyashov wrote:
>
> > My problem is about than year old or more. With default options (without
> > plymouth) only information about root partition mount or fsck. Later it
> > replaced by partition waiting "progress" (moving red asterisks). I have
> > try to wait about a minute and try to enter luks password, but no any
> > changes. I think, problem is in complex setup luks on mdraid.
>
> Is the root partition on mdraid and encrypted?
>
> What happens when you set modules to most
> in /etc/initramfs-tools/initramfs.conf?
>
> regards
>
>

[toc] | [prev] | [next] | [standalone]


#209284 — Re: Debian Stretch, no password prompt for luks-encrypted home partition during boot

Fromdeloptes <deloptes@gmail.com>
Date2019-05-28 08:40 +0200
SubjectRe: Debian Stretch, no password prompt for luks-encrypted home partition during boot
Message-ID<y2DW9-7xW-7@gated-at.bofh.it>
In reply to#209280
Sergey Belyashov wrote:

> Root partition is on mdraid but is not encrypted. Home is encrypted only.
> Modules are set to most already.
> 

I have this setup on my server, but I removed all crypted entries from fstab
because obviously I can not sit infront of the server to type the password
when booting. So I can not help in this case much. I put all of this in a
script that I execute after I ssh to the server.

On the clients I have root encrypted. I had issues in the beginning after
transfering the system from dbootstrap to the disk. In that case the UUIDs
were not correct. I always did set the init=/bin/sh on the command line in
grub to get the shell and debugged. Sometimes it is useful to add
a "rootdelay" to wait for the root device to get available, but in your
setup it looks like it is not exactly what you would need.

When the system boots it would read whatever you have in your initrd. It
would load the drivers and perform the boot process. Then it will pass
control to init and run the rest from the root system. IMO mounting home
comes in this second stage, but I am not 100% sure. What do you see when
you enable debug or verbose - what does it say when booting.

Also you have the fs type in fstab set to auto for your home - what happens
if you set the exact fs type like ext4 or xfs?

Do a change at a time and test after this.

regards

[toc] | [prev] | [next] | [standalone]


#209289 — Re: Debian Stretch, no password prompt for luks-encrypted home partition during boot

FromSergey Belyashov <sergey.belyashov@gmail.com>
Date2019-05-28 10:00 +0200
SubjectRe: Debian Stretch, no password prompt for luks-encrypted home partition during boot
Message-ID<y2FbA-8fe-7@gated-at.bofh.it>
In reply to#209284

[Multipart message — attachments visible in raw view] — view raw

I'll try your suggestion. But I think problem is not here. Password ask is
after mounting all other filesystems, swapon and flush of journald:

[    9.986320] intel_rapl: Found RAPL domain uncore
[   10.203636] EXT4-fs (md0p2): mounted filesystem with ordered data mode.
Opts: (null)
[   10.203981] Adding 1998844k swap on /dev/md1.  Priority:-1 extents:1
across:1998844k FS
[   10.284033] systemd-journald[314]: Received request to flush runtime
journal from PID 1
[   10.677656] EXT4-fs (md2): mounted filesystem with ordered data mode.
Opts: (null)
[   21.735417] NET: Registered protocol family 38
[   22.029828] XFS (dm-0): Mounting V4 Filesystem
[   22.188883] XFS (dm-0): Ending clean mount
[   22.892609] r8169 0000:05:01.0 eth1: link down
[   22.892644] r8169 0000:05:01.0 eth1: link down
[   22.895138] IPv6: ADDRCONF(NETDEV_UP): eth1: link is not ready
[   24.472245] r8169 0000:05:01.0 eth1: link up

вт, 28 мая 2019 г., 9:38 deloptes <deloptes@gmail.com>:

> Sergey Belyashov wrote:
>
> > Root partition is on mdraid but is not encrypted. Home is encrypted only.
> > Modules are set to most already.
> >
>
> I have this setup on my server, but I removed all crypted entries from
> fstab
> because obviously I can not sit infront of the server to type the password
> when booting. So I can not help in this case much. I put all of this in a
> script that I execute after I ssh to the server.
>
> On the clients I have root encrypted. I had issues in the beginning after
> transfering the system from dbootstrap to the disk. In that case the UUIDs
> were not correct. I always did set the init=/bin/sh on the command line in
> grub to get the shell and debugged. Sometimes it is useful to add
> a "rootdelay" to wait for the root device to get available, but in your
> setup it looks like it is not exactly what you would need.
>
> When the system boots it would read whatever you have in your initrd. It
> would load the drivers and perform the boot process. Then it will pass
> control to init and run the rest from the root system. IMO mounting home
> comes in this second stage, but I am not 100% sure. What do you see when
> you enable debug or verbose - what does it say when booting.
>
> Also you have the fs type in fstab set to auto for your home - what happens
> if you set the exact fs type like ext4 or xfs?
>
> Do a change at a time and test after this.
>
> regards
>
>
>
>
>
>

[toc] | [prev] | [next] | [standalone]


#209294 — Fwd: Debian Stretch, no password prompt for luks-encrypted home partition during boot

FromSergey Belyashov <sergey.belyashov@gmail.com>
Date2019-05-28 13:20 +0200
SubjectFwd: Debian Stretch, no password prompt for luks-encrypted home partition during boot
Message-ID<y2Ij7-1U6-3@gated-at.bofh.it>
In reply to#209284

[Multipart message — attachments visible in raw view] — view raw

As expected nothing is changed. I did not forget to run update-initramfs
after change of fstab.
Attached 3 photos: normal boot, recovery boot before pasword enter,
recovery boot after password and Ctrl-D in recovery shell.

Best regards,
Sergey Belyashov

вт, 28 мая 2019 г., 9:38 deloptes <deloptes@gmail.com>:

> Sergey Belyashov wrote:
>
> > Root partition is on mdraid but is not encrypted. Home is encrypted only.
> > Modules are set to most already.
> >
>
> I have this setup on my server, but I removed all crypted entries from
> fstab
> because obviously I can not sit infront of the server to type the password
> when booting. So I can not help in this case much. I put all of this in a
> script that I execute after I ssh to the server.
>
> On the clients I have root encrypted. I had issues in the beginning after
> transfering the system from dbootstrap to the disk. In that case the UUIDs
> were not correct. I always did set the init=/bin/sh on the command line in
> grub to get the shell and debugged. Sometimes it is useful to add
> a "rootdelay" to wait for the root device to get available, but in your
> setup it looks like it is not exactly what you would need.
>
> When the system boots it would read whatever you have in your initrd. It
> would load the drivers and perform the boot process. Then it will pass
> control to init and run the rest from the root system. IMO mounting home
> comes in this second stage, but I am not 100% sure. What do you see when
> you enable debug or verbose - what does it say when booting.
>
> Also you have the fs type in fstab set to auto for your home - what happens
> if you set the exact fs type like ext4 or xfs?
>
> Do a change at a time and test after this.
>
> regards
>
>
>
>
>
>

[toc] | [prev] | [next] | [standalone]


#209349 — Re: Fwd: Debian Stretch, no password prompt for luks-encrypted home partition during boot

Fromdeloptes <deloptes@gmail.com>
Date2019-05-28 22:20 +0200
SubjectRe: Fwd: Debian Stretch, no password prompt for luks-encrypted home partition during boot
Message-ID<y2QJH-7g8-1@gated-at.bofh.it>
In reply to#209294
Sergey Belyashov wrote:

> As expected nothing is changed. I did not forget to run update-initramfs
> after change of fstab.
> Attached 3 photos: normal boot, recovery boot before pasword enter,
> recovery boot after password and Ctrl-D in recovery shell.

I am not a systemd expert. The images does not speak to me. You could try as
suggested adding init=/bin/sh and see what is in the initrd and what works
and does not work.

You could extract the initrd to investigate what is in there - or to
remaster and test updated version.

https://wiki.debian.org/initramfs

In my case following works (microcode size here is 4712) as I do not have
unmakeinitramfs.

dd if=/boot/initrd.img-4.19.25eko4 bs=512 skip=4712 | zcat - |cpio -i

Finally you can try installing sysvinit-core & Co and see if it makes a
difference or someone else can help you better

regards

[toc] | [prev] | [next] | [standalone]


#209372 — Re: Fwd: Debian Stretch, no password prompt for luks-encrypted home partition during boot

FromSergey Belyashov <sergey.belyashov@gmail.com>
Date2019-05-29 14:00 +0200
SubjectRe: Fwd: Debian Stretch, no password prompt for luks-encrypted home partition during boot
Message-ID<y35pn-80O-7@gated-at.bofh.it>
In reply to#209349

[Multipart message — attachments visible in raw view] — view raw

I have examine initramfs image and found that it is not tries to mount
encrypted partitions other than root. Moreover, it is confirmed by dmesg
output: systemd starts before mounting of /var and /home So it is not
initrd problem. Problem somethere in system.

Best regards,
Sergey Belyashov

вт, 28 мая 2019 г. в 23:14, deloptes <deloptes@gmail.com>:

> Sergey Belyashov wrote:
>
> > As expected nothing is changed. I did not forget to run update-initramfs
> > after change of fstab.
> > Attached 3 photos: normal boot, recovery boot before pasword enter,
> > recovery boot after password and Ctrl-D in recovery shell.
>
> I am not a systemd expert. The images does not speak to me. You could try
> as
> suggested adding init=/bin/sh and see what is in the initrd and what works
> and does not work.
>
> You could extract the initrd to investigate what is in there - or to
> remaster and test updated version.
>
> https://wiki.debian.org/initramfs
>
> In my case following works (microcode size here is 4712) as I do not have
> unmakeinitramfs.
>
> dd if=/boot/initrd.img-4.19.25eko4 bs=512 skip=4712 | zcat - |cpio -i
>
> Finally you can try installing sysvinit-core & Co and see if it makes a
> difference or someone else can help you better
>
> regards
>
>

[toc] | [prev] | [next] | [standalone]


#209281 — Re: Debian Stretch, no password prompt for luks-encrypted home partition during boot

Fromdeloptes <deloptes@gmail.com>
Date2019-05-28 08:20 +0200
SubjectRe: Debian Stretch, no password prompt for luks-encrypted home partition during boot
Message-ID<y2DCN-7rd-7@gated-at.bofh.it>
In reply to#209273
Ross Boylan wrote:

> I've discovered that if I type my pass-phrase (waiting long enough
> that I think things have settled down), the system boots.
> 

Have you tried setting up the display parameters properly in grub? Sometimes
on notebooks the default settings are different and do not match predefined
values in grub

# The resolution used on graphical terminal
# note that you can use only modes which your graphic card supports via VBE
# you can see them in real GRUB with the command `vbeinfo'
#GRUB_GFXMODE=640x480
GRUB_GFXMODE=1280x1024
GRUB_GFXPAYLOAD_LINUX=keep

[toc] | [prev] | [next] | [standalone]


#209411 — Re: Debian Stretch, no password prompt for luks-encrypted home partition during boot

FromSergey Belyashov <sergey.belyashov@gmail.com>
Date2019-05-30 11:00 +0200
SubjectRe: Debian Stretch, no password prompt for luks-encrypted home partition during boot
Message-ID<y3p4K-3I5-21@gated-at.bofh.it>
In reply to#209215

[Multipart message — attachments visible in raw view] — view raw

I have found related bug in the Debian bug system:
https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=868164

пн, 27 мая 2019 г. в 13:09, Sergey Belyashov <sergey.belyashov@gmail.com>:

> I have system with soft raid and /home is encrypted (luks with password).
> When I boot it using default boot kernel options (ro quiet) systemd stops
> on waiting for partition, but no any password prompt. I try to boot with
> plymouth (ro quiet splash), but it does not help me. I may boot only using
> "recovery mode". In this case system asks me for password and I may enter
> it (but there are lot of kernel messages after prompt).
> update-initramfs finishes without errors or warnings.
> What I'm doing wrong?
>
> Best regards,
> Sergey Belyashov
>
> Additional information:
>
> mdadm.conf:
> ARRAY /dev/md0 metadata=0.90 UUID=91f74976:a3538ec7:cb201669:f728008a
> ARRAY /dev/md1 metadata=1.2 UUID=d68931c6:642d72fc:b7471e62:33eab4d7
> name=my-server:1
> ARRAY /dev/md2 metadata=1.2 UUID=c42e4696:cb876ca7:c2773edf:e9b17a82
> name=my-server:2
>
> /proc/mdstat:
> md0 : active raid1 sda3[0] sdc3[1]
>       1462886848 blocks [2/2] [UU]
>
> md1 : active (auto-read-only) raid1 sdc2[1] sda2[0]
>       1998848 blocks super 1.2 [2/2] [UU]
>
> md2 : active raid1 sdc1[1] sda1[0]
>       248640 blocks super 1.2 [2/2] [UU]
>
> crypttab:
> #UUID=e7a2e597-8f57-4faf-b32d-f24b5720ffe5 same as /dev/md0p3
> crypto-home UUID=e7a2e597-8f57-4faf-b32d-f24b5720ffe5 none luks
>
> fstab:
> /dev/md0p1                                         /               ext4
>  errors=remount-ro 0       1
> /dev/md0p2                                         /var            ext4
>  defaults        0       2
> /dev/md1                                             none            swap
>    sw              0       0
> /dev/md2                                             /boot           ext4
>    defaults        0       2
> /dev/mapper/crypto-home                   /home           auto    defaults
>        0       2
> ...
>
> $ egrep "^CRYPTSETUP" /etc/cryptsetup-initramfs/conf-hook
> CRYPTSETUP=y
>
> $ uname -a
> Linux my-server 4.9.0-9-amd64 #1 SMP Debian 4.9.168-1+deb9u2 (2019-05-13)
> x86_64 GNU/Linux
>
> systemd has version: 232-25+deb9u11
> cryptsetup has version: 2:1.7.3-4
> initramfs-tools has version: 0.130
>

[toc] | [prev] | [standalone]


Back to top | Article view | linux.debian.user


csiph-web