-
Notifications
You must be signed in to change notification settings - Fork 96
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
systemd-cryptenroll fails due to policy digest mismatch #2386
Comments
@kreeuwijk with which version of the osbuilder image the keys were generated with? |
@mudler quay.io/kairos/osbuilder-tools:v0.200.8 |
|
Relevant? systemd/systemd#31925 |
a working manual enrollment
|
Opened upstream to see if systemd folks can guide us on the core issue on this: systemd/systemd#32114 |
If we test with a fedora 39 based build and it works then we know this was the original issue. Otherwise we reopen the upstream issue. |
It indeed works with Fedora 39, thanks for clarifying. |
Then closing this as there is not much that we can do if the TPM hardware doesnt preoperly work with systemd 253 other than wait for ubuntu 24.04/10? |
Created tickets to bump Ubuntu and Fedora to latest versions: Let's see what versions of systemd they come with. |
It look like Ubuntu 24.04 will have Systemd v255, so that's unexpected good news |
Kairos version:
CPU architecture, OS, and Version:
Describe the bug
When flashing the device after enrolling the secure boot keys, partition encryption fails to succeed, throwing the error
To Reproduce
Expected behavior
Partition encryption succeeds normally.
Logs
Additional context
Using a Lenovo ThinkCentre M910q
The text was updated successfully, but these errors were encountered: