Your message dated Tue, 09 Apr 2024 12:35:02 +0000
with message-id <[email protected]>
and subject line Bug#1068640: fixed in clevis 20-1
has caused the Debian Bug report #1068640,
regarding clevis-initramfs: clevis early boot DNS fail, no resolv.conf created
by ipconfig
to be marked as done.
This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.
(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact [email protected]
immediately.)
--
1068640: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1068640
Debian Bug Tracking System
Contact [email protected] with problems
--- Begin Message ---
Package: clevis-initramfs
Version: 19-2
Severity: normal
X-Debbugs-Cc: [email protected]
The early boot fails to unlock a volume automatically. We get a
prompt to unlock a volume (it's a swap volume) but clevis is
unable to unlock it automatically because it cannot resolve
the Tang server's hostname.
Please unlock disk luks-9594b5ea-9494-4c53-9344-9fcba158914b:
IP-Config: enp0s3 hardware address xx:xx:xx:xx:xx:xx mtu 1500 DHCP RARP
IP-Config: enp0s3 complete (dhcp from 192.168.1.1):
address: 192.168.1.117 broadcast: 192.168.1.255 netmask: 255.255.255.0
gateway: 192.168.1.1 dns0 : 192.168.1.1 dns1 : 0.0.0.0
domain : lan
rootserver: 192.168.1.1 rootpath:
filename :
Workaround / Debugging info:
If I use 'break=mount' I can make it work using these steps:
1. Append 'break=mount' to the kernel boot parameters.
2. Enter 'ipconfig enp0s3' to let ipconfig configure networking.
This mimicks what normally happens during the early boot if we
use clevis.
3. Manually create a resolv config:
echo 'nameserver 192.168.1.1' > /etc/resolv.conf
4. Enter 'exit' to continue the early boot.
5. Observe that clevis is now able to unlock the volume
automatically.
Good to know: /etc/resolv.conf did NOT exist before step 3,
so it seems that 'ipconfig' doesn't create it. Even though it
shows us that it gets DNS information from the DHCP server,
it doesn't appear to do anything with that information.
-- System Information:
Debian Release: 12.2
APT prefers stable-updates
APT policy: (500, 'stable-updates'), (500, 'stable-security'), (500, 'stable')
Architecture: amd64 (x86_64)
Kernel: Linux 6.1.0-18-amd64 (SMP w/1 CPU thread; PREEMPT)
Kernel taint flags: TAINT_OOT_MODULE, TAINT_UNSIGNED_MODULE
Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8),
LANGUAGE=en_US:en
Shell: /bin/sh linked to /usr/bin/dash
Init: systemd (via /run/systemd/system)
LSM: AppArmor: enabled
Versions of packages clevis-initramfs depends on:
ii clevis-luks 19-2
ii initramfs-tools 0.142
clevis-initramfs recommends no packages.
clevis-initramfs suggests no packages.
-- no debconf information
--- End Message ---
--- Begin Message ---
Source: clevis
Source-Version: 20-1
Done: Christoph Biedl <[email protected]>
We believe that the bug you reported is fixed in the latest version of
clevis, which is due to be installed in the Debian FTP archive.
A summary of the changes between this version and the previous one is
attached.
Thank you for reporting the bug, which will now be closed. If you
have further comments please address them to [email protected],
and the maintainer will reopen the bug report if appropriate.
Debian distribution maintenance software
pp.
Christoph Biedl <[email protected]> (supplier of updated clevis
package)
(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing [email protected])
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
Format: 1.8
Date: Tue, 09 Apr 2024 12:12:39 +0200
Source: clevis
Architecture: source
Version: 20-1
Distribution: unstable
Urgency: medium
Maintainer: Christoph Biedl <[email protected]>
Changed-By: Christoph Biedl <[email protected]>
Closes: 1060561 1068603 1068640
Changes:
clevis (20-1) unstable; urgency=medium
.
* New upstream version 20. Closes: #1068640
* Update build dependency to systemd-dev. Closes: #1060561
* Add jq to install dependncies of clevis-luks. Closes: #1068603
Checksums-Sha1:
f73cc0d7ee3cb0d986c9d57e131519d01f4f0804 2535 clevis_20-1.dsc
905a3b7a326dfc8e84a0b09d3246bea3d048fa78 68124 clevis_20.orig.tar.xz
4c08be2ef5ffe684d43dc732ac75c668fdc2ba2e 6916 clevis_20-1.debian.tar.xz
a370ea73d9f77a73af056f815bc8fc77e75b48c6 12410 clevis_20-1_armel.buildinfo
Checksums-Sha256:
ba577a1624d07ea3044bfaead46fd6ebe1318b7f2711952e90505034d16e17f4 2535
clevis_20-1.dsc
e4c280b5b6cc8876d2e2e4d6ea864168be44c0cf0ad2bc2d2e065b896e4fab1e 68124
clevis_20.orig.tar.xz
53487c1682fd2d468317b03d047ea8dac9ae5b9149e0fe0b4b9c92c0b450b43b 6916
clevis_20-1.debian.tar.xz
8244dee15dd7de819a3056b6049185d4242b913dd3e9950c4e533fd914f7cde7 12410
clevis_20-1_armel.buildinfo
Files:
ffbbaccc57542e2f8ade3f2958876217 2535 net optional clevis_20-1.dsc
a5307d8970db42929c5a619d0b51dd4d 68124 net optional clevis_20.orig.tar.xz
933b72c24472494af0cc4dee1186eaf2 6916 net optional clevis_20-1.debian.tar.xz
1f0a30019fa95a8167eb641a70ecdb9f 12410 net optional clevis_20-1_armel.buildinfo
-----BEGIN PGP SIGNATURE-----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=sin7
-----END PGP SIGNATURE-----
pgpsGrZcRmJVL.pgp
Description: PGP signature
--- End Message ---