!DBFhtjpqmJNENpLDOv:nixos.org

NixOS systemd

624 Members
NixOS ❤️ systemd173 Servers

Load older messages


SenderMessageTime
4 Oct 2024
@mjm:midna.devmjm i'm putting it in /etc/credstore.encrypted/bcachefs-sysroot-persist with boot.initrd.systemd.contents 02:28:37
@elvishjerricco:matrix.orgElvishJerricco mjm: the file needs a .mount suffix 02:29:04
@elvishjerricco:matrix.orgElvishJerricco(I should maybe not do that...)02:29:11
@mjm:midna.devmjmoh you're right, i see02:30:06
@mjm:midna.devmjm ElvishJerricco: it's failing pretty catastrophically, and I can't really tell why. emergency mode says my root account is locked, do you know what i can do to make it work? 02:41:11
@elvishjerricco:matrix.orgElvishJerricco mjm: boot.initrd.systemd.emergencyAccess. You can set it to a hashed password or true for no password. Or you can add rd.systemd.debug_shell to the kernel params to get a shell on tty9 02:42:07
@mjm:midna.devmjmoh i might have found it02:42:07
@mjm:midna.devmjmthanks, yeah i literally just found the option :)02:42:25
@mjm:midna.devmjmjust gonna set it to true for now while figuring this out02:42:58
@mjm:midna.devmjmI’m dumb, need to regenerate the credential with the right name, with the .mount suffix02:47:51
@elvishjerricco:matrix.orgElvishJerriccooh, I completely forgot the name is important when generating these things02:48:17
@elvishjerricco:matrix.orgElvishJerriccothat's slightly frustrating but I totally get why they do it, and it makes perfect sense02:48:32
@mjm:midna.devmjmyeah so did i 02:48:31
@mjm:midna.devmjmit works!02:53:50
@mjm:midna.devmjmautomatic unlock, no clevis02:53:56
@elvishjerricco:matrix.orgElvishJerriccofantastic!02:54:49
@elvishjerricco:matrix.orgElvishJerricco Did it need the after = ["tpm2.target"]; thing? 02:55:01
@mjm:midna.devmjmi'll need to test without it02:55:22
@mjm:midna.devmjmwhich i'll do shortly02:55:36
@elvishjerricco:matrix.orgElvishJerriccocool, thanks for test :)02:55:49
@elvishjerricco:matrix.orgElvishJerricco * cool, thanks for testing :)02:56:24
@mjm:midna.devmjmyeah np02:56:51
@mjm:midna.devmjm i think there may be something else weird here with impermanence, it makes this create-needed-for-boot-dirs service in initrd that is failing, not sure why yet. it's possible it was failing before though, since it doesn't seem to be blocking boot 02:58:09
@elvishjerricco:matrix.orgElvishJerriccohm, yea I can't imagine why this would have any effect on that02:59:10
@elvishjerricco:matrix.orgElvishJerriccoif clevis didn't02:59:14
@mjm:midna.devmjmtrue03:00:13
@mjm:midna.devmjm okay after = ["tpm2.target"] does not appear to be necessary 03:03:00
@mjm:midna.devmjmworks fine without it03:03:05
@elvishjerricco:matrix.orgElvishJerriccointeresting03:03:06
@elvishjerricco:matrix.orgElvishJerriccoI wonder if systemd is actually making sure to wait for the TPM or if you're just winning the race03:03:21

Show newer messages


Back to Room ListRoom Version: 6