Bug#939357: cryptsetup-run: invoking "sudo cryptdisks_start" with "decrypt_keyctl" in crypttab fails

2019-09-04 Thread Guilhem Moulin
Control: reassign -1 sudo 1.8.27-1 Control: affects -1 cryptsetup Control: merge -1 906752 On Thu, 05 Sep 2019 at 02:03:34 +0200, Guilhem Moulin wrote: > Perhaps keyctl(1) could provide a wrapper using thread-keyring(7) as > temporary keyring, like the attached PoC. Of course I forgot the

Bug#939357: [pkg-cryptsetup-devel] Bug#939357: cryptsetup-run: invoking "sudo cryptdisks_start" with "decrypt_keyctl" in crypttab fails

2019-09-04 Thread Guilhem Moulin
Control: retitle -1 `decrypt_keyctl` fails when the user-keyring(7) isn't attached to the calling process Hi Sebastian, Thanks for the detailed report! I was able to reproduce this in a fresh Buster netinstall, taking SSH sessions and sudo(8)'s ā€˜-iā€™ flag out of the picture. This is what I get

Bug#939357: cryptsetup-run: invoking "sudo cryptdisks_start" with "decrypt_keyctl" in crypttab fails

2019-09-03 Thread Sebastian Mohr
Package: cryptsetup-run Version: 2:2.1.0-5 Severity: normal File: /lib/cryptsetup/scripts/decrypt_keyctl Dear Maintainer, when configuring this encrypted machine running debian stable with keyscript "decryt_keyctl", the invocation of "cryptdisks_start data{0,1}_crypt" when logged in via ssh as