Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Allow /etc/crypttab to be written with USB keyfiles #2488

Open
wants to merge 1 commit into
base: rawhide
Choose a base branch
from

Conversation

lmouelle
Copy link

@lmouelle lmouelle commented Dec 14, 2024

My attempt to fix the issue here:
#2190

Basically LUKS with keyfiles on a USB drive is busted, selinux is blocking systemd-cryptsetup-generator from accessing /run/var/init so units cannot be generated. Maybe there's a better way to write this policy, I created a module similar to this to bypass the issue in my environment

Pretty obviously wrong and broken for some time (not sure if this is the best target branch since this is impacting existing Fedora releases like IoT 41 and Workstation 41.

@lmouelle lmouelle changed the title Allow /etc/fstab to be written with USB keyfiles Allow /etc/crypttab to be written with USB keyfiles Dec 14, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant