Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 25 Oct 2018 12:25:14 +0200
From:      "Michael .." <mikey@usa.com>
To:        freebsd-geom@freebsd.org
Subject:   GELI without passphrase on ZFS root
Message-ID:  <trinity-1e9f4851-d935-4fd2-b2af-d362644295eb-1540463114302@3c-app-mailcom-lxa11>

next in thread | raw e-mail | index | archive | help

Hi,
 
Has anyone been able to achieve this?
 
I installed FreeBSD 11.2 using AutoZFS option with encryption turned on.  Passphrase is specified as part of install.
 
I want to switch to only a keyfile and no passphrase:
 
geli setkey -K /boot/encryption.key -P /dev/xyz
 
This completes, but I'm still prompted for passphrase on boot.  Nothing appears accepted by the prompt (as the userkey is using only keyfile now?)
 
Setting geom_eli_passphrase_prompt="NO" doesn't help.
 
Michael.



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?trinity-1e9f4851-d935-4fd2-b2af-d362644295eb-1540463114302>