12/19/2023 0 Comments Unencrypt and root nextab![]() I don't know if it is because LUKS does not support these kernel parameters. I also found this resource for ArchLinux, and I have tried adding the kernel parameters, but I have not had any luck with that either. ![]() The closest thing to a solution I think I have found, is this resource which is supposedly a way of accomplishing what I want for a VPS solution, but it is just a bunch of commands with no explanation, and I don't know how to adapt it: I have found multiple resources that explain how to use this to allow for remote unlocking the system, but I need to do it without interaction. I have done my fair bit of Googling to try and figure this one out, and most of what I find point towards a solution that swaps out the initramfs file. Things I have looked into before posting this question The password set during installation is temporary and will be changed by the service that runs after the first reboot, so the first password can be stored in clear text. ![]() I am trying to implement LUKS disc encryption in this flow, but I need it to remain non interactive, so it has to be able to restart the first time without a password. I have a flow for deploying Ubuntu that is based on an Ubuntu server installation with a custom preseed and kickstart file, kickstart installs a service that run after the first reboot (and only the first reboot) and then reboots again. I am not concerned with security at this step. I have the password it is encrypted with, and would be willing to save it in cleartext on the harddrive. I don't want to have to type the password on the system, or use a different system to unlock it, it has to unlock itself that one time. As well as this, I need a way to undo it after the reboot so that it after one more reboot will require the password again (or even a new password). I am looking for non interactive way to decrypt a root file partition and a swap partition encrypted with LUKS the next time the system reboots.
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |