Page MenuHomeSolus

systemd: Enable FIDO2, PKCS11 and TPM2 cryptsetup integration
ClosedPublic

Authored by silke on Jul 12 2023, 3:46 PM.
Tags
None
Referenced Files
Unknown Object (File)
Sat, Aug 31, 12:42 AM
Unknown Object (File)
Thu, Aug 29, 10:44 PM
Unknown Object (File)
Wed, Aug 14, 8:38 PM
Unknown Object (File)
Aug 8 2024, 3:41 PM
Unknown Object (File)
Aug 8 2024, 12:24 AM
Unknown Object (File)
Aug 7 2024, 11:35 PM
Unknown Object (File)
Aug 7 2024, 9:50 PM
Unknown Object (File)
Aug 6 2024, 7:52 AM
Subscribers

Details

Summary

Enable cryptsetup integration with FIDO2 and TPM2.
This allows one enroll a FIDO2 or TPM2 key for LUKS decryption.

Test Plan

Use systemd-cryptenroll to enroll TPM2 PCRs 7 and 12.

Diff Detail

Repository
R2999 systemd
Lint
Lint Not Applicable
Unit
Tests Not Applicable

Event Timeline

silke requested review of this revision.Jul 12 2023, 3:46 PM
silke retitled this revision from Draft: systemd: Enable FIDO2, PKCS11 and TPM2 cryptsetup integration to systemd: Enable FIDO2, PKCS11 and TPM2 cryptsetup integration.Jul 12 2023, 5:02 PM

Rebase and remove PKCS11 integration

What new runtime dependencies are being added to systemd here? Are there any that are not already in system.base that will need to be?

This revision is now accepted and ready to land.Jul 31 2023, 7:54 PM