LUKS password prompt; suspend

I just did a fresh Arch install using the Archlinux-i686-2007.11-0.4.core.iso and following the LUKS Encrypted Root how-to in the wiki to set up encrypted /, /home, and swap partitions. Everything works fine except for two issues:
1) On boot, the LUKS prompt asking for my password gets overwritten by USB-related boot messages. Hitting the Enter key gives me a new prompt and I can enter my password, so this is merely a cosmetic problem.
2) I haven't had any luck trying to get µswsusp to work. Is this at all possible with an encrypted swap?
Thanks for any hints.

This is the current patch as of 2007-11-15, cryptsetup version 1.0.5-5.
--- /lib/initcpio/hooks/encrypt 2007-11-15 19:15:21.000000000 +0100
+++ /lib/initcpio/hooks/encrypt 2008-01-28 18:22:50.000000000 +0100
@@ -60,10 +60,24 @@ run_hook ()
fi
# Ask for a passphrase
if [ ${dopassphrase} -gt 0 ]; then
- echo ""
- echo "A password is required to access the ${cryptname} volume:"
+ # Set some vars.
+ blue='\033[1;35m' # for the blue arch color
+ white='\033[0;34m' # white!
+ reset='\033[0m' # restore color to default
+ clear='\033[H\033[2J' # clears the terminal BEFORE output
- #loop until we get a real password
+ # Print a nice message and ask for the passphrase.
+ echo "$clear "
+ echo "$blue __ $white "
+ echo "$blue ___ __ __ __ ____| |___ $white "
+ echo "$blue | __' | '__| ___| ' |$white There won't be any Core Dump files to read on "
+ echo "$blue |___,__|__| |____|__||__|$white this volume unless you know the passphrase. "
+ echo "$blue ------------------------ $white "
+ echo "$reset "
+ echo " "
+ echo " A passphrase is required to access the ${cryptname} volume:\033[37;40m "
+
+ # Loop until we get a real password
while ! eval /bin/cryptsetup luksOpen ${cryptdev} ${cryptname} ${CSQUIET}; do
sleep 2;
done
And a little script for autoinstalling, this is dangerous, make sure to have a working fallback image!
Cut and paste into a empty file, chmod +x, and ./execute as root AT YOUR OWN RISK.
#!/bin/bash
if [ `pacman -Qi cryptsetup |grep Version |awk '{ print $3 }'` == "1.0.5-5" ]
then
cp /lib/initcpio/hooks/encrypt /lib/initcpio/hooks/encrypt.bak
wget http://timtux.net/tmp/cryptsetup-1.0.5-fixpwprompt.diff
patch -p1 /lib/initcpio/hooks/encrypt cryptsetup-1.0.5-fixpwprompt.diff
mkinitcpio -p kernel26
fi
Last edited by timtux (2008-01-28 17:43:39)

Similar Messages

  • How do i stop an old apple ID and password prompt from always popping up on my phone during normal use ?

    How do i stop an old apple ID and password prompt from popping up on my phone screen during normal operations ?

    How to change the Apple ID on my iOS Device
    Settings > iTunes & App stores.
    Tap your Apple ID, sign out then sign back in with new AppleID.
    Settings > Facetime.
    Tap your Apple ID, sign out then sign back in with new AppleID.
    Settings > Messages.
    Turn off iMessages, wait 10 seconds, then turn it back on.  Go to 'Receive messages at' and then tap your Apple ID.  Sign out of the old ID, then sign in with new Apple ID.
    Settings > iCloud.
    Delete the account (make sure to KEEP the information on your phone), then turn it back on with new Apple ID.
    Also, delete any apps that were downloaded with the 'old' Apple ID, then reinstall them with your 'new' ID.

  • Computer Shuts Down At BitLocker Boot Password Prompt

    Hi All,
    I have been using this computer for almost 6 months now with absolutely no problems until I encrypted my system drive with BitLocker. I am not using a TPM. Now, almost every time I get to the password prompt for BitLocker at boot, my computer turns completely
    off. I am using an ASUS Z97-E. ASUS tech support was completely useless and wanted to pass the blame instead of help, so I guess I'm on my own as far as their support.
    I have read previously that this may be related to ASUS products. I cannot seem to get it to boot reliably. If I completely remove power from the machine by unplugging it, sometimes that will give me enough time to enter my password. If I don't, often, it
    will only give me a couple seconds (and my password is pretty long) before shutting down.
    I have tried disabling Secure Boot and that seemed to help at first but then the problem came right back.
    There is a BIOS update available but I'm not confident it will fix the problem.
    Are there any specific BIOS settings I can change to make BitLocker stop making my computer shut down? Any Windows settings I can change that might help? 
    I'd really like to keep my data encrypted but I'm not sure if this hassle is worth it.

    Hi,
    Based on my research, this is a firmware problem. It does not matter what authentication method (TPM/without TPM/PIN+TPM/Password only/...) is used, it leaves you only some seconds before it shuts down.
    It's recommend you contact ASUS tell them to try and reproduce it. They would need to fix their BIOS.
    In addition, we could try to disable "fast startup" as below steps to see if it could be as a workaround:
    1.In Control Panel, open the Power Options item.
    2.Click the Choose what the power buttons do link.
    3.Clear the Turn on fast startup (recommended) check box.
    4.Click Save Settings.
    Please remember to mark the replies as answers if they help, and unmark the answers if they provide no help. If you have feedback for TechNet Support, contact [email protected]

  • Freezes on startup during password prompt

    Whenever I restart my computer it boots normally until the password prompt comes on. It still looks fine until i go to enter in a password.
    As soon as i begin to enter a password the color spinning wheel appears and will start spinning forever. I usually have to turn it off and then turn it back on again.
    Then sometimes on restart it will just go to a gray apple screen with the apple logo and hte spinning progress dial. This can also go on forever.
    After many times of restarting the computer it will work. But i just switched to a mac and was wondering if there is anything I might be doing wrong or anything I should do to fix this.
    Thanks
    MacBook Pro Mac OS X (10.4.10)

    There's no reason not to take it in or call Applecare on the phone--I have found them to be very good at walking you through problems and determining if it is just a matter of setting preferences or if there is something actually wrong.
    If you have access to an Apple store, I think they have free classes which will teach you how to use your computer (at least our Apple Store does). You might find this helpful if you are new to Macs.
    Good luck!

  • Password prompt after screen saver or lock screen

    I am running Yosemite on two Macs – an early-2008 MBP 15" and a mid-2010 MBP 13". Both are configured for password after screen saver or when waking up. I have hot corners configured to enable screen saver (lower left), lock screen (upper right), disable screen saver (lower right). On awakening from either screen saver or lock screen, the 15" requests the password in a screen similar to the login after boot or switch user screen – the fullscreen, blurry background, prompt in the center. The 13" prompts for a password in an ordinary modal dialogue window that includes a lock icon and displays on a black background. The 13" has an external monitor attached, but the behavior is the same if it's disconnected. Both systems have one user, and identical settings in Users and Groups. The behavior is the same whether the Guest user is enabled or disabled.
    I can't find any settings to account for the difference, even obscure ones shown in Onyx. Any ideas as to why the password prompt is handled differently in these two cases? Thanks in advance...

    Hi Betty,
    http://www.cmu.edu/computing/doc/security/mac/screensaver/index.html

  • Shell script for password prompt

    Hi
    I am using Solaris9 and trying to change password of a user with command:
    passwd userid
    i want password to be given from text file or command line so that password is not prompted on the command line. Is there any way to do this?
    I guess i am able to force the carriage return to be entered while entering the password from command line.
    This is what I am doing:
    passwd userid << EOF
    newpassword
    newpassword
    EOF
    But after this, it still gives me New Password prompt. Any help will be appreciated.

    You could have a look at 'expect', it can set the password for you..
    .7/M.

  • WEB DMS Office Document Access- Password Prompt

    Dear All,
    Business Users are Using MS Office 2007 and MS Office 2003
    We have Configured WEB DMS for Development System
    In SE80 when CVAW_ENTIRE is Executed and when DIR is Accessed there using Display/Change, All file formats are accesed fine without any password prompt,But While Opening Microsoft Office Documents(.doc,.docx,.xls,.xlsx,.ppt..pptx) from WEB DMS DIR it gives UserName Password Prompt (Warning: This server is requesting that your username and password be sent in an insecure manner (basic authentication without a secure connection))....
    When i don't enter username and password and press cancel file opens in Read Only Mode...So, i need is by default file shoud open in read only mode without asking unnecessary Password Prompt...Above is applicable when MS Office 2007 is installed in local PC
    For Office 2003 the problem is there for .xls,.xlsx,.ppt,.pptx files , however .doc files opens fine and does not ask for any password prompt and opens in read only mode directly.
    The above both scenarios for Office 2007 & Office 2003 works fine with Mozilla Firefox Browser and does not prompt for any passwords.
    Help is Required urgently
    Regards,
    Akshit Patel

    Dude
    I'm also trying to enable WebDMS. I have already configured in SPRO.
    In SE80, pointing on "CVAW_ENTIRE->Pages with Flow Logic->index.htm", when I click on "Test/Execute", a webpage opens but throws an error:
    Business Server Page (BSP) error
    What happened?
    Calling the BSP page was terminated due to an error.
    SAP Note
    +    * The following error text was processed in the system:+
    +      Die URL enthält keine vollständige Domainangabe (sap-dev statt sap-dev.).+
    Exception Class     CX_FQDN
    +Error Name     +
    Program     CX_FQDN=======================CP
    Include     CX_FQDN=======================CM002
    ABAP Class     CX_FQDN
    Method     CHECK
    Line     10
    Long text     -
    Error type: Exception
    Your SAP Business Server Pages Team
    The URL of the webpage looks like this:
    http://sap-dev:8080/sap/bc/bsp/sap/cvaw_entire/index.htm?sap-client=747&sap-sessioncmd=open
    Please help.
    Thanks & Regards
    Amaresh Makal

  • Password prompt Error with Bex and Excel 2007

    Hi Guru's,
    We have a problem with end users that have the Bex add-in loaded in Excel 2007 when they are using a different 3rd party add-in.  The problem is when they close Excel, they get password prompted for a password protected VB project in the workbook.
    I found a MSFT article that sounds exactly like the problem I'm seeing.  Link is below. 
    [http://support.microsoft.com/kb/280454]
    Has anyone experienced this problem?
    Thanks
    Brian Winterlich

    Hi Brian:
    Take a look at SAP Note 1397278 - "BPC: Pop-up window prompting for a password to unprotect the sheet in Journal template with Office 2007 SP2".
    Regards,
    Francisco Milá

  • Password prompts - Exchange 2013 RTM vs. [Outlook 2007 & Outlook 2010] - Fully patched

    Exchange 2013 RTM  - Multi-Tenant
    ExternalClientAuthenticationMethod : Ntlm
    InternalClientAuthenticationMethod : Ntlm
    IISAuthenticationMethods           : {Basic, Ntlm, Negotiate}
    Clients using Outlook Anywhere only, not Exchange domain members.
    1. Windows XP SP3 (fully patched), Outlook 2007 SP3 + Nov 2012 Patch - When launching Outlook prompts for password only once.
    2. Windows 7 (fully patched), Outlook 2010 (fully patched) - When launching Outlook doesn't prompt for password.
    I'm aware of this:
    http://support.microsoft.com/kb/956531
    The goal - Eliminate issue with password prompts for Windows XP.
    Any chance resolving this? CU install? Anything else?
    Thanks.
    Memento Mori

    Hi,
    Based on my experience, the credential issue is mostly likely caused by authentication method.
    And I recommend the following troubleshooting:
    1. Change LmCompatibilityLevel on the windows XP client to a value of 2 or 3:
    a. Click Start, click Run, type regedit in the Open box, and then press ENTER.
    b. Locate and then click the following registry subkey:
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\
    c. In the pane on the right side, double-click lmcompatibilitylevel.
    d. In the Value data box, type a value of 2 or 3 that is appropriate for your environment, and then click OK.
    e. Exit Registry Editor.
    f. Restart your computer
    2. Reset the windows credential store.
    If you have any question, please feel free to let me know. 
    Thanks,
    Angela Shi
    TechNet Community Support

  • Exchange 2003 - Continous password prompts in Outlook 2010

    Hi. 
    A customer is experiencing continous password prompts in Outlook 2010. Outlook is configured against the Exchange 2003 BE server (FQDN) and Outlook Anywhere is configured to sync.customer.com with a valid 3rd party certificate. 
    Outlook is configured with Negotitate as Logon network security, setting this to basic/NTLM does not help. Connect to Microsoft Exchange using HTTP is set and configured with sync.customer.com, and msstd:sync.customer.com. All points checked except "On
    fast networks, connect using HTTP first, then connect using TCP/IP", authentication is set to Basic. Changing authentication from Basic to NTLM seem to make the problem vanish. 
    Outlook Anywhere is functioning correctly and only prompting once for password when connecting from an external network. ISA is not configured for NTLM/Kerberos.
    Exchange 2003 is located in main site in a resource domain. The prompts occur more often in two remote sites than the main site. 
    When opening Outlook RPCDiag shows established connection to BE and Active Directory, sometimes with prompt and sometimes without. After about 5 minutes the prompt may reappear, entering password does not remove the prompt, clicking cancel puts Outlook in
    the "Need password" state, clicking this usually successfully connect Outlook to Exchange. Other times this just cause the prompt to reappear. 
    I´ve tried adding the internal and/or external IP address of the ISA server as sync.customer.com in the host-file on a client and forcing RPC/HTTPS through the DisableRpcTcpFallback, still getting the password prompts. 
    We have also been through the KB975363, changing the MaxConcurrentAPI on all domain controllers. 
    Finally, we know Exchange 2003 is in a unsupported state so there is no need to comment this. 

    Hi,
    Firstly, I'd like to explian, basic authentication requires the user to enter domain, user name, and password. Thus, it's an expected behavior that the credential prompts once when the authentication is set to basic and it disappears when it's NTLM authentication:
    http://technet.microsoft.com/en-us/library/aa996225(v=exchg.65).aspx
    For the issue that the credential keeps prompting, I'd like to confirm if Outlook 2003 works well. If yes, you can refer to the following article:
    http://support.microsoft.com/kb/927612/en-us
    If all outlook clients prompt credential, you can check the RPC over HTTP connectivity by ExRCA:
    https://testconnectivity.microsoft.com/
    http://support.microsoft.com/kb/820281/en-us
    Thanks,
    Angela Shi
    TechNet Community Support

  • How to avoid password prompt in shell script for zip password protection

    Hi
    I am trying to set password protection to my oracle database export backup. Once the backup completed, it should compress with a password protection. Thats the plan. Initialy we were using the gzip for the compression. Then realized that there is no password protection for the gzip. Started using zip option. I tried using
    zip -P <password> filename
    But it was throwing below error.
    -bash-3.2$ zip -P expreports REPORTS_2013FEB14.dmp
    zip warning: missing end signature--probably not a zip file (did you
    zip warning: remember to use binary mode when you transferred it?)
    zip warning: (if you are trying to read a damaged archive try -F)
    zip error: Zip file structure invalid (REPORTS_2013FEB14.dmp)
    Not quite sure why.
    Then I used zip -e REPORTS_2013FEB14.dmp.zip REPORTS_2013FEB14.dmp
    But this prompting for the password. As I am trying to put the command in the script. It will be tough if it prompts for the password.
    I would like to know how to avoid the password prompting by saving somewhere or how the code should be written. Tried using expect feature of shell script. Below was the code I tried. It didnt work.
    [oracle@SF40V6636 test]$ cat repexp.sh
    zip -e REPORTS_imp.log.zip REPORTS_imp.log
    expect "Enter password:"
    send "imprep"
    expect "Verify password:"
    send "imprep"
    So please help in avoiding this password prompt or let me know how to change the code.
    Thanks
    SHIYAS M

    How about using gpg and adding a secret key to the requirement of a password? No one should be able to decrypt your file, not by knowing only the password.
    1. Generate a public and private key pair:
    $ gpg --gen-key
    When it shows "We need to generate a lot of random bytes…" open another terminal session and type "dd if=/dev/sda of=/dev/null" to create traffic. When the public and secret key created and signed you can Ctrl-C the dd command.
    To see what you have created:
    $ gpg --list-keys
    2. Encrypt and gzip your stuff:
    $ tar zcf stuff.tgz file_or_folder
    $ gpg recipient "Some Name" encrypt stuff.tgz
    $ rm -f stuff.tgz
    3. Decrypt and extract the archive:
    $ gpg batch yes --passphrase "password" -d stuff.tgz.gpg > stuff.tgz
    $ tar zxvf stuff.tgz
    Again, knowing the password alone will not let anybody decrypt your stuff.

  • Ssh: /etc/issue display between login and password prompts

    Hi All,
    I currently have ssh installed on one a Solaris 10 (non-global) zone. I have configured the sshd_config to run on protocol 2 and unhashed the 'Banner /etc/issue' parameter.
    When I attempt to log into this zone via ssh I get (in this order)...
    1. A login prompt
    2. The message I have put in /etc/issue
    3. A password prompt.
    Is there some further configuration I need to consider here?
    Any help would be great.
    Thanks.

    Sorry, it's probably worth mentioning that what i would ultimately like to do is have the message in /etc/issue display itself prior to asking for a login, not after as it currently is.
    Thanks.

  • CAPI password prompt from CryptSignMessage is not in focus

    Microsoft CryptSignMessage produces dialog box to collect private key password and allow to use it. This dialog always "fall behind" of the application and just blink on taskbar. Our application is add-on for Microsoft Outlook and when we call CryptSignMessage
    password prompt is behind of the Outlook explorer.
    We tried to use CryptSetProvParam(NULL, PP_CLIENT_HWND, (const BYTE*)&hwnd, 0); before any calls to acquire crypto context, as described in MSDN, but this was not successful. Whenever we call it, right before CryptSignMessage
    call or way before we acquire signing cert it always return TRUE (success) and GetLastError() is 0. Same for hwnd. We tried to pass Outlook new compose message window, outlook explorer window, just NULL with the same successful result, but password prompt
    dialog still behind.
    What are we do wrong or is there other ways to set parent window for any UI which may comes up from CAPI calls?
    Always appreciated your response.
    Slava Ivanov

    First off, no modern Mac is running Mac OS 9.2.x
    Go to Apple menu -> About this Mac to find out what you really are running.

  • Cannot see AAA banner, username and password prompts on IOS switch

    Hi,
    I have configured RADIUS authentication for VTY access to a Catalyst 2960S running 15.0(2)SE2.
    The RADIUS server is a Microsoft server running the Network Policy and Access Service role (Microsoft's own RADIUS server).
    Everything is ok apart from the login prompts. I want to customise these with a banner, username prompt and password prompt. I have added the lines below to my config:
    aaa authentication banner ^Chello^C
    aaa authentication password-prompt "Enter your password:"
    aaa authentication username-prompt "Enter your username:"
    However when I ssh to the switch I just see the output below:
    login as: james.hawkins
    Using keyboard-interactive authentication.
    Password:
    ASWTRE-BF01#
    My config is shown below:
    aaa authentication banner ^Chello^C
    aaa authentication password-prompt "Enter your password:"
    aaa authentication username-prompt "Enter your username:"
    aaa authentication login default local-case
    aaa authentication login SSH group radius local-case
    aaa authentication enable default enable
    aaa authorization exec default local
    aaa authorization exec SSH group radius local
    radius server TREREC-01
    address ipv4 10.3.32.51 auth-port 1812 acct-port 1813
    key 7 08171E61K281D08461C
    line con 0
    logging synchronous
    line vty 0 4
    exec-timeout 360 0
    authorization exec SSH
    logging synchronous
    login authentication SSH
    transport input ssh
    line vty 5 15
    exec-timeout 360 0
    authorization exec SSH
    logging synchronous
    login authentication SSH
    transport input ssh
    Is there anything that I am missing?

    James:
    you use the line:
    aaa authentication login SSH group radius local-case
    are you sure that the RADIUS is reachable? if the radius is not reachable it will check the local DB for the username. I am not pretty sure if local DB auth displays the banner.
    Rating useful replies is more useful than saying "Thank you"

  • Need MBAM 2.5 Helpdesk and selfservice sites to open for authenticated users with no password prompt

    I Need MBAM 2.5 Helpdesk and self service sites to open for authenticated users with no password prompt. I just cant seem to get this to work. The account used in the application pool has its SPN registered and delegation set. I can use that account to login
    to the sites but am prompted for a password. That said anyone I add into the helpdesk users group cannot negotiate the sites. Only the account I have set in the application pool can. I want domain authenticated users that have been added to the MBAM Help Desk
    Users group to negotiate the site with NO password challenge at all.
    tconners

    This generally means that your SPN is not set up correctly.  Let's say the web server you installed the SSP on is lance.contoso.com and your app pool creds are corp\lance.  You should set an SPN similar to setspn -s http/lance.contoso.com
    corp\lance.  In your browser, you should now be able to access the SSP without prompts.  However, if you still get prompted, generally that means that your local intranet zone in IE does not have an entry for *.contoso.com.  Since you are entering
    an FQDN in your browser, IE interprets the "." to mean "on the internet" which breaks Kerberos authentication.  By adding *.contoso.com to your local intranet zone, you are telling it that lance.contoso.com is on the intranet, so use
    Kerberos.
    I can confirm, that I have exact configuration and I always get the password promt for the very first time. We have 2 server (1xIIS and 1xSQL) infrastructure in production with SPN set like it should and I get the password prompt.

Maybe you are looking for

  • Report for Inventory Status for Serialized Materials

    I am trying to generate a report which would display the material #, all serial #s related to that material and the stock type for each of these serial#s. I currently following this approach, I will fetch all the material number from MARC for a parti

  • Issue that needs to be addressed...

    Alright, Switched to Verizon FiOS in December and TV and Phone have been excellent. One problem... The internet is terrible. Yes. I'm going to rant about the internet. Router that is supplied is low quality and what's the point of high speed internet

  • NTP client in Windows 7 Professional Does Not Sync

    I have an NTP server running on an Ubuntu Linux box.  All of my other linux boxes are able to synchronize to this NTP server.  My Windows 7 Professional box is not even after trying multiple steps suggested in these forums. The NTP server is on the l

  • Selection screen change

    hallow i wonder  if i can change the block in selection screen, size & location in the program. regards this is my block <b>SELECTION-SCREEN BEGIN OF BLOCK b2 WITH FRAME TITLE text-t02.</b> SELECT-OPTIONS c_course FOR z_course_table-objid OBLIGATORY

  • Playing midi back via Roland TD30 Module.....

    I can record my drum parts into Garageband via midi no problem at all.... What I would like to do is to play them back via the module not the inbuilt GarageBand sounds.... Is this possible and if so how doI do it? If not, what software would let me d