[Bug 1877533] [NEW] [20.10 FEAT] Increase the crashkernel setting if the root volume is luks2-encrypted

Launchpad Bug Tracker 1877533 at bugs.launchpad.net
Fri Feb 18 16:24:51 UTC 2022


You have been subscribed to a public bug by Ubuntu Foundations Team Bug Bot (crichton):

Description:
In case the volume containing the root filesystem is encrypted using LUKS2 the memory used while unlocking the volume may exceed the size allocated to the kdump kernel. This will lead to a failure while processing kdump and the dump file will not be stored. Unfortunately, this condition may not be detected by a client before a problem occurs.
The request is to have the kdump package installation script check for LUKS2 encryption (more precisely for Argon2i PBKDF, which is the root cause of the high memory usage). If the condition is met, the installation procedure should increase the crashkernel parameter to a higher value (>=512M)or issue a warning, if the system memory is insufficient to reserve enough crashkernel memory.

Business Case:
Pervasive Encryption and Secure Execution require encryption of the filesystems in order to keep customer data secure at all times. With the increasing usage of these technologies, the number of kdump will rise too, typically at inconvenient times, when the kdump is triggered due to a real customer issue.
With the suggested change, the number of customer complaints and effort to handle them will be reduced.

** Affects: ubuntu-z-systems
     Importance: High
     Assignee: Skipper Bug Screeners (skipper-screen-team)
         Status: In Progress

** Affects: kdump-tools (Ubuntu)
     Importance: Undecided
         Status: Fix Committed

** Affects: makedumpfile (Ubuntu)
     Importance: Undecided
         Status: Invalid

** Affects: kdump-tools (Ubuntu Focal)
     Importance: Undecided
         Status: Invalid

** Affects: makedumpfile (Ubuntu Focal)
     Importance: Undecided
         Status: In Progress

** Affects: kdump-tools (Ubuntu Groovy)
     Importance: Undecided
         Status: Invalid

** Affects: makedumpfile (Ubuntu Groovy)
     Importance: Undecided
     Assignee: Thadeu Lima de Souza Cascardo (cascardo)
         Status: In Progress


** Tags: architecture-s39064 bugnameltc-185824 patch severity-high targetmilestone-inin2010
-- 
[20.10 FEAT] Increase the crashkernel setting if the root volume is luks2-encrypted
https://bugs.launchpad.net/bugs/1877533
You received this bug notification because you are a member of Ubuntu Sponsors Team, which is subscribed to the bug report.



More information about the Ubuntu-sponsors mailing list