Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Tang for multiple devices on the same system #441

Open
dimitrigee opened this issue Oct 18, 2023 · 1 comment
Open

Tang for multiple devices on the same system #441

dimitrigee opened this issue Oct 18, 2023 · 1 comment

Comments

@dimitrigee
Copy link

I am using clevis and tang just fine on a RHEL 8.8 system with an encrypted root device. However, when I encrypt a second device (internal drive) with the same passphrase the system prompts for the passphrase at boot. I have added _netdev flag to crypttab and fstab. However, I did NOT bind the second device to the tang server. Do all additional devices need to be bound independently? If so, I suppose this means there is a functional limit of 8 encrypted devices per system since there are only 8 key slots. Is that right? clevis-luks-askpass service is enabled, but I am not clear on if it is helpful in this case.

@sarroutbi
Copy link
Collaborator

Yes, you need to bind each device that requires automated unlock separately.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants