[Bug 1228863] System asking for recovery key while booting a default mode encrypted Aeon system after automatic update
https://bugzilla.suse.com/show_bug.cgi?id=1228863 https://bugzilla.suse.com/show_bug.cgi?id=1228863#c51 --- Comment #51 from Alberto Planas Dominguez <aplanas@suse.com> --- (In reply to Marc Thomas from comment #50)
The only way to fix this for me was a re-enroll of the TPM via the guide. After these steps the machine boots normally without asking for the recovery.
I understand then that we cannot reproduce the PolicyOR error message now?
Currently not, anything I should run next time?
For the PolicyOR error I would like to have the file list in /var/lib/pcrlock.d, to understand if there is a component with too many variants. If this is not the case, I would love to see how many entries as selected by sdbootutil to automatically unlock via the TPM2. For that we will need to copy sdbootutil in the home, and make some local modifications to print more information
If so, I would also forward this to the Telegram channel as I was not the only one with the issue. Maybe someone there still has it and can chime in.
That would be very helpful. -- You are receiving this mail because: You are on the CC list for the bug.
participants (1)
-
bugzilla_noreply@suse.com