Received: from mail.pinknet.de (themis.pinknet.de [5.9.106.70]) by nld3-dev1.alpinelinux.org (Postfix) with ESMTP id D76F9781926 for <~alpine/users@lists.alpinelinux.org>; Thu, 9 Jan 2020 07:58:13 +0000 (UTC) Received: from marco.lxc (marco.pinknet.de [IPv6:2a01:4f8:162:4246:ec0e:67ff:fede:74fc]) by mail.pinknet.de (Postfix) with ESMTPSA id 726E422137; Thu, 9 Jan 2020 08:58:11 +0100 (CET) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=misterunknown.de; s=dkim; t=1578556692; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:cc:mime-version:mime-version:content-type:content-type: in-reply-to:in-reply-to:references:references; bh=gbwB7n+xOK6ePnMhSj+6utPMFPa/wVT/cU8NvzND8cg=; b=f3ljVj0hVzPnNRH7OcMaj6nY+ESF/GOQtwrMSXouYZa31yqqdvIb+gso/g0otbsJYOOo3m pJhiOQ1tMAiU5T5TEMcfUE41IaMxobk5R3XWHY0moW4nSl5NIGVEDLaWK9BxexkE8QcuBo 7NSSAOwdvZjrd6fmuUQqcXw/liTnkaE//PQw2QO6db8YQru3WpvJ2PwW04ZHUu/qLVRuwJ oNFE2vW2GuMuP+NjjvFPmEopHi84YQzNs3N44Fa7jKt2VyKi/j3Vjt+lnpg10ckZnS9Tjf RdBDeftqma4S6zFwePBXoPC62klFgQXFCOkg26BR8AbVUSiwA/ADnFF+p3aTdQ== Date: Thu, 9 Jan 2020 08:58:09 +0100 From: Marco Dickert To: James Chase Cc: ~alpine/users@lists.alpinelinux.org Subject: Re: Decrypt LVM containing primary OS from USB on boot Message-ID: <20200109075809.GA20690@marco.lxc> References: MIME-Version: 1.0 Content-Type: multipart/signed; protocol="application/x-pkcs7-signature"; micalg=sha-256; boundary="DocE+STaALJfprDB" Content-Disposition: inline In-Reply-To: X-Promo: mutt is the best email client in the world. --DocE+STaALJfprDB Content-Type: text/plain; charset=us-ascii Content-Disposition: inline Content-Transfer-Encoding: quoted-printable Hi James, On 2020-01-08 17:13:56, James Chase wrote: > I have no idea how to use that or if it's what I'm looking for, > however. I'm also open to editing crypttab, but I can't figure out > what the syntax would be for the key field on a USB drive... Current > crypttab looks like this: > lvmcrypt UUI=3D*my UUID* none luks >=20 > Not sure what I'd put in the "none" slot to somehow denote the USB and > a file on that USB. Any help or resources would be appreciated! I don't use a crypted setup, but found this [1] page which describes what you want to achieve, at least as far as I understand. This may help you. [1] https://wiki.archlinux.org/index.php/Dm-crypt/System_configuration#Boot= _loader --=20 Marco Dickert marco@misterunknown.de https://misterunknown.de --DocE+STaALJfprDB Content-Type: application/x-pkcs7-signature Content-Disposition: attachment; filename="smime.p7s" Content-Transfer-Encoding: base64 MIIOKwYJKoZIhvcNAQcCoIIOHDCCDhgCAQExDzANBglghkgBZQMEAgEFADALBgkqhkiG9w0B BwGgggsxMIIGEDCCA/igAwIBAgIQTZQsENQ74JQJxYEtOisGTzANBgkqhkiG9w0BAQwFADCB iDELMAkGA1UEBhMCVVMxEzARBgNVBAgTCk5ldyBKZXJzZXkxFDASBgNVBAcTC0plcnNleSBD aXR5MR4wHAYDVQQKExVUaGUgVVNFUlRSVVNUIE5ldHdvcmsxLjAsBgNVBAMTJVVTRVJUcnVz dCBSU0EgQ2VydGlmaWNhdGlvbiBBdXRob3JpdHkwHhcNMTgxMTAyMDAwMDAwWhcNMzAxMjMx MjM1OTU5WjCBljELMAkGA1UEBhMCR0IxGzAZBgNVBAgTEkdyZWF0ZXIgTWFuY2hlc3RlcjEQ MA4GA1UEBxMHU2FsZm9yZDEYMBYGA1UEChMPU2VjdGlnbyBMaW1pdGVkMT4wPAYDVQQDEzVT ZWN0aWdvIFJTQSBDbGllbnQgQXV0aGVudGljYXRpb24gYW5kIFNlY3VyZSBFbWFpbCBDQTCC ASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAMo87ZQKQf/e+Ua56NY75tqSvysQTqoa vIK9viYcKSoq0s2cUIE/bZQu85eoZ9X140qOTKl1HyLTJbazGl6nBEibivHbSuejQkq6uIgy miqvTcTlxZql19szfBxxo0Nm9l79L9S+TZNTEDygNfcXlkHKRhBhVFHdJDfqB6Mfi/Wlda43 zYgo92yZOpCWjj2mz4tudN55/yE1+XvFnz5xsOFbme/SoY9WAa39uJORHtbC0x7C7aYivTox uIkEQXaumf05Vcf4RgHs+Yd+mwSTManRy6XcCFJE6k/LHt3ndD3sA3If/JBz6OX2ZebtQdHn Kav7Azf+bAhudg7PkFOTuRMCAwEAAaOCAWQwggFgMB8GA1UdIwQYMBaAFFN5v1qqK0rPVIDh 2JvAnfKyA2bLMB0GA1UdDgQWBBQJwPL8C9qU21/+K9+omULPyeCtADAOBgNVHQ8BAf8EBAMC AYYwEgYDVR0TAQH/BAgwBgEB/wIBADAdBgNVHSUEFjAUBggrBgEFBQcDAgYIKwYBBQUHAwQw EQYDVR0gBAowCDAGBgRVHSAAMFAGA1UdHwRJMEcwRaBDoEGGP2h0dHA6Ly9jcmwudXNlcnRy dXN0LmNvbS9VU0VSVHJ1c3RSU0FDZXJ0aWZpY2F0aW9uQXV0aG9yaXR5LmNybDB2BggrBgEF BQcBAQRqMGgwPwYIKwYBBQUHMAKGM2h0dHA6Ly9jcnQudXNlcnRydXN0LmNvbS9VU0VSVHJ1 c3RSU0FBZGRUcnVzdENBLmNydDAlBggrBgEFBQcwAYYZaHR0cDovL29jc3AudXNlcnRydXN0 LmNvbTANBgkqhkiG9w0BAQwFAAOCAgEAQUR1AKs5whX13o6VbTJxaIwA3RfXehwQOJDI47G9 FzGR87bjgrShfsbMIYdhqpFuSUKzPM1ZVPgNlT+9istp5UQNRsJiD4KLu+E2f102qxxvM3TE oGg65FWM89YN5yFTvSB5PelcLGnCLwRfCX6iLPvGlh9j30lKzcT+mLO1NLGWMeK1w+vnKhav 2VuQVHwpTf64ZNnXUF8p+5JJpGtkUG/XfdJ5jR3YCq8H0OPZkNoVkDQ5CSSF8Co2AOlVEf32 VBXglIrHQ3v9AAS0yPo4Xl1FdXqGFe5TcDQSqXh3TbjugGnG+d9yZX3lB8bwc/Tn2FlIl7tP bDAL4jNdUNA7jGee+tAnTtlZ6bFz+CsWmCIb6j6lDFqkXVsp+3KyLTZGXq6F2nnBtN4t5jO3 ZIj2gpIKHAYNBAWLG2Q2fG7Bt2tPC8BLC9WIM90gbMhAmtMGquITn/2fORdsNmaV3z/sPKuI n8DvdEhmWVfh0fyYeqxGlTw0RfwhBlakdYYrkDmdWC+XszE19GUi8K8plBNKcIvyg2omAdeb rMIHiAHAOiczxX/aS5ABRVrNUDcjfvp4hYbDOO6qHcfzy/uY0fO5ssebmHQREJJA3PpSgdVn LernF6pthJrGkNDPeUI05svqw1o5A2HcNzLOpklhNwZ+4uWYLcAi14ACHuVvJsmzNicwggUZ MIIEAaADAgECAhBFf37PNlXBgGgmp6fvD6f/MA0GCSqGSIb3DQEBCwUAMIGWMQswCQYDVQQG EwJHQjEbMBkGA1UECBMSR3JlYXRlciBNYW5jaGVzdGVyMRAwDgYDVQQHEwdTYWxmb3JkMRgw FgYDVQQKEw9TZWN0aWdvIExpbWl0ZWQxPjA8BgNVBAMTNVNlY3RpZ28gUlNBIENsaWVudCBB dXRoZW50aWNhdGlvbiBhbmQgU2VjdXJlIEVtYWlsIENBMB4XDTE5MDQzMDAwMDAwMFoXDTIw MDQyOTIzNTk1OVowJzElMCMGCSqGSIb3DQEJARYWbWFyY29AbWlzdGVydW5rbm93bi5kZTCC ASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAL5JtC8rwiOJKkIkUvgNBdfZKLgkdYPs 0ZLZDKj3Ipx1LS3XUNbfIEcOxkNQjmu+A2aNRCmF3G4FP8Q2wh+TY2ekVts/33/vO1i0Qsks IuTfKzTzQKLpqbH8NoErMo4zRFAiutnGbbdnKG09wKsd2PKkoJs7ccCAhRhxfjrnEbsZ6D6W WJOVm12b3P+F1SlvCn3YqVUVXGwaOrLuPDnrNkuo3h8+n3pAGBmeybZFAZtksGTvg1P8/XY1 TdSiKVV3Qi3RgMdokYglNeVfAtiFdK5C0YVmN+uceCAG9OvKRZPv0dVzeUqrsAxSrfXD0hkk qxT6QKFMpLBNlP2vFE1uVOUCAwEAAaOCAc8wggHLMB8GA1UdIwQYMBaAFAnA8vwL2pTbX/4r 36iZQs/J4K0AMB0GA1UdDgQWBBQpoCbO67qGuiYGx6tLPZi8unXeqjAOBgNVHQ8BAf8EBAMC BaAwDAYDVR0TAQH/BAIwADAdBgNVHSUEFjAUBggrBgEFBQcDBAYIKwYBBQUHAwIwQAYDVR0g BDkwNzA1BgwrBgEEAbIxAQIBAQEwJTAjBggrBgEFBQcCARYXaHR0cHM6Ly9zZWN0aWdvLmNv bS9DUFMwWgYDVR0fBFMwUTBPoE2gS4ZJaHR0cDovL2NybC5zZWN0aWdvLmNvbS9TZWN0aWdv UlNBQ2xpZW50QXV0aGVudGljYXRpb25hbmRTZWN1cmVFbWFpbENBLmNybDCBigYIKwYBBQUH AQEEfjB8MFUGCCsGAQUFBzAChklodHRwOi8vY3J0LnNlY3RpZ28uY29tL1NlY3RpZ29SU0FD bGllbnRBdXRoZW50aWNhdGlvbmFuZFNlY3VyZUVtYWlsQ0EuY3J0MCMGCCsGAQUFBzABhhdo dHRwOi8vb2NzcC5zZWN0aWdvLmNvbTAhBgNVHREEGjAYgRZtYXJjb0BtaXN0ZXJ1bmtub3du LmRlMA0GCSqGSIb3DQEBCwUAA4IBAQBkB+jN4l6f67IhQG7YZvUEbuwLboKuDt5muUg1zzZb bpzS0eDST35ZhRDLgvbHghTi3u5Jxy9WNMRtxsn8uAbRvG7IxHduUqIlQpEGUu8WGgHrXEpq Riw4Oj2ZUX8/oIGjL38XZ5MYr/lL9kKRA2DzQL8fe+HY3w9E2ZXHDHfGUmh/02iohHbsjw5W XvfHQZAZZSsMlzrJj86TBSuLcexCV4PFmoMpR4mJlbwFu2lKjG63bU7pY5qryuWsWlc3B3MT //vVoFcchwgtazf7xvirBjrQaWzyGwdmW9D4HdzdZDseMhsPMlE4VIYmnEijHrIQKKq6jrdx uv9wBgDDBK86MYICvjCCAroCAQEwgaswgZYxCzAJBgNVBAYTAkdCMRswGQYDVQQIExJHcmVh dGVyIE1hbmNoZXN0ZXIxEDAOBgNVBAcTB1NhbGZvcmQxGDAWBgNVBAoTD1NlY3RpZ28gTGlt aXRlZDE+MDwGA1UEAxM1U2VjdGlnbyBSU0EgQ2xpZW50IEF1dGhlbnRpY2F0aW9uIGFuZCBT ZWN1cmUgRW1haWwgQ0ECEEV/fs82VcGAaCanp+8Pp/8wDQYJYIZIAWUDBAIBBQCggeQwGAYJ KoZIhvcNAQkDMQsGCSqGSIb3DQEHATAcBgkqhkiG9w0BCQUxDxcNMjAwMTA5MDc1ODA5WjAv BgkqhkiG9w0BCQQxIgQg5/1Er+5lEW4CA86bqpT+wJ4n1RPfvJE93uoYPAd58LsweQYJKoZI hvcNAQkPMWwwajALBglghkgBZQMEASowCwYJYIZIAWUDBAEWMAsGCWCGSAFlAwQBAjAKBggq hkiG9w0DBzAOBggqhkiG9w0DAgICAIAwDQYIKoZIhvcNAwICAUAwBwYFKw4DAgcwDQYIKoZI hvcNAwICASgwDQYJKoZIhvcNAQEBBQAEggEALVVxUMHZJu9Fi3g5jrSrduX5Sh+hLm6daNXy 85uzNMUKne+DzI17n3p7lfE3h6I7P4HzvKGkIqEKPJqz53Ch3p9NJgTLdIeA1NpluOddq5KS SlwNmGEWlFbJaPMFluuRLxbRanm1SQuJU81svlH4OQO/3jsf8qdNAnOW9a55uoZAAd3FNcS5 UVhPY14CRySi/9lyCjjfIOpfU36yNKgAbMMe2JySNnrAIh6WicO3ptiS6KIH3Po0E42Qowi1 8KPqnmUBe2ZxwMZqFfGM1BlAJ+5+2HFJAGVCdmaMB3uqcf7elru8eGjxLs1QnkzkwffwD5kw uCIqn2l0AXuANikZAQ== --DocE+STaALJfprDB--