Open ShapeShifter499 opened 3 years ago
You might be interested in booster
initramfs that supports clevis tokens out of the box https://github.com/anatol/booster
You might be interested in
booster
initramfs that supports clevis tokens out of the box https://github.com/anatol/booster
So I could setup tang as normal and then use booster to help with the clevis side on other boxes?
So I could setup tang as normal and then use booster to help with the clevis side on other boxes?
Yes. Booster works with clevis tokens out-of-the-box. See https://wiki.archlinux.org/title/Booster
I'm not sure if I should close this since I feel like some support for Clevis and Tang should be brought to mkinitcpio. But I have since switched to booster and it does seem to be working alright after some setup hiccups.
I use Arch Linux and someone I've talked with on their IRC channel stated that the clevis package for Arch Linux doesn't have mkinitcpio support because upstream didn't. For Arch Linux mkinitcpio is the default way of generating a init ram disk including adding any modules and features you may want to have at boot time. https://wiki.archlinux.org/title/Mkinitcpio
This is a mkinitcpio install and hook I found from the Arch Linux forums that would enable clevis at boot but I am not sure if this is totally correct. https://bbs.archlinux.org/viewtopic.php?id=230948
clevis-mkinitcpio-install:
clevis-mkinitcpio-hook: