Good evening.

I'm hoping someone can give me a hand here. What I am trying to do is setup my 
Qubes install so that "/" is unlocked with a keyfile and not a passphrase. 
Preferably an encrypted keyfile that can be decrypted using keyscript in 
/etc/crypttab. 

Adding a keyfile using cryptsetup and then adding an entry in /etc/crypttab 
doesn't seem to work and I do not think forcing dracut to omit "systemd" is a 
good idea, from my limited know-how.

Another solution I found is to copy the keyfile to initramfs but if it isn't 
encrypted, another bad idea. I have not yet found a way to get keyscript to 
work in order to encrypt the keyfile copied to initramfs.

Any information and help on this matter is greatly appreciated.

-- 
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to qubes-users+unsubscr...@googlegroups.com.
To post to this group, send email to qubes-users@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/035bf29b-299a-4695-ab95-094df899dde9%40googlegroups.com.
For more options, visit https://groups.google.com/d/optout.

Reply via email to