You are not logged in.

#1 2023-05-04 09:36:59

dcy3rka
Member
Registered: 2022-01-19
Posts: 52

LUKS systemd-fido2: change feature without re-enrollment

My luksDump looks like this:

# cryptsetup luksDump /dev/nvme0n1p2
...
Tokens:
  0: systemd-fido2
        fido2-credential:
                    {...}
        fido2-salt: {...}
        fido2-rp:   io.systemd.cryptsetup
        fido2-clientPin-required:
                    true
        fido2-up-required:
                    true
        fido2-uv-required:
                    false
        Keyslot:    2
...

I want to change the 'fido2-uv-required' feature to 'true'. Does anyone know an automated/unattended way to do this without re-enrollment?

Offline

Board footer

Powered by FluxBB