Package: yubikey-luks Version: 0.5.1+29.g5df2b95-6build1 Severity: wishlist Tags: upstream newcomer X-Debbugs-Cc: jerico....@gmail.com
Hi! The following proposal (RFC) in upstream outlines an approach how users could enter a single challenge to unlock several LUKS-encrypted partitions via decrypt_keyctl. The usual askpassword approach (via cryptsetup or systemd) won't work here AFAICS as the challenge is only half of the equation: https://github.com/cornelinux/yubikey-luks/issues/79#issuecomment-2016630996 I could provide a patch or an upstream PR. If you think that the improvement is worthwhile, then please let me know whether anyone of the maintainers/uploaders would be available for review and help me with the upload. -- System Information: Debian Release: bookworm/sid APT prefers jammy-updates APT policy: (500, 'jammy-updates'), (500, 'jammy-security'), (500, 'jammy'), (100, 'jammy-backports') Architecture: amd64 (x86_64) Foreign Architectures: i386 Kernel: Linux 5.15.0-101-generic (SMP w/8 CPU threads) Locale: LANG=de_DE.UTF-8, LC_CTYPE=de_DE.UTF-8 (charmap=UTF-8), LANGUAGE not set Shell: /bin/sh linked to /usr/bin/dash Init: systemd (via /run/systemd/system) LSM: AppArmor: enabled Versions of packages yubikey-luks depends on: ii cryptsetup-run 2:2.4.3-1ubuntu1.2 ii initramfs-tools 0.140ubuntu13.4 ii yubikey-personalization 1.20.0-3 Versions of packages yubikey-luks recommends: ii cryptsetup-initramfs 2:2.4.3-1ubuntu1.2 ii expect 5.45.4-2build1 yubikey-luks suggests no packages. -- Configuration Files: /etc/ykluks.cfg changed [not included] -- no debconf information