[Bug 1980018] [NEW] Cryptsetup-initramfs cant deal with tpm2-device option

Launchpad Bug Tracker 1980018 at bugs.launchpad.net
Fri Sep 30 18:25:28 UTC 2022


You have been subscribed to a public bug by Nick Rosbrook (enr0n):

In order to boot an encrypted system and autounlock with tpm2, the
tpm2-device= option must be specified in  /etc/crypttab. This works for
non-root filesystems for some reason, but when applied to root
filesystems it doesnt. Tested working on both arch and fedora, so the
method is good, something is off in the background.


root at test:~# update-initramfs -u
update-initramfs: Generating /boot/initrd.img-5.15.0-40-generic
cryptsetup: WARNING: sda3_crypt: ignoring unknown option 'tpm2-device'


Manually adding it to  /lib/cryptsetup/functions produces this

root at test:~# update-initramfs -u
update-initramfs: Generating /boot/initrd.img-5.15.0-40-generic
/usr/share/initramfs-tools/hooks/cryptroot: 1: eval: CRYPTTAB_OPTION_tpm2-device=auto: not found


That file belongs to cryptsetup-initramfs

** Affects: cryptsetup (Ubuntu)
     Importance: Wishlist
         Status: Confirmed

-- 
Cryptsetup-initramfs cant deal with tpm2-device option
https://bugs.launchpad.net/bugs/1980018
You received this bug notification because you are a member of Ubuntu Foundations Bugs, which is subscribed to the bug report.



More information about the foundations-bugs mailing list