You are not logged in.

#1 2025-01-03 11:03:18

AyXgoN
Member
Registered: 2025-01-03
Posts: 3

i cant edit boot configure luks &TPM

(sorry for my garbage english)
hi when i try to activate TPM for luks but there is no arch.conf and linux.conf there is only conf file like this
loader.conf
refind.conf
refind_linux,conf

but when i use journalctl --boot

{my host name} kernel: Command line: cryptdevice=PARTUUID=beb56200-467a-461a-898f-3893e3651257:root:allow-discards root=/dev/mapper/root zswap.enabled=0 rootflags=subvol=@ rw rootfstype=btrfs

but i cant find config file

Last edited by AyXgoN (2025-01-03 15:29:46)

Offline

#2 2025-01-03 12:05:19

Lone_Wolf
Administrator
From: Netherlands, Europe
Registered: 2005-10-04
Posts: 14,993

Re: i cant edit boot configure luks &TPM

You will need to perform additional steps to use TPM with luks , https://wiki.archlinux.org/title/Truste … dule#Usage should help to get you started.

EDIT: please change the title to reflecrt this has to do with luks & tpm


Disliking systemd intensely, but not satisfied with alternatives so focusing on taming systemd.

clean chroot building not flexible enough ?
Try clean chroot manager by graysky

Offline

#3 2025-01-03 15:39:28

AyXgoN
Member
Registered: 2025-01-03
Posts: 3

Re: i cant edit boot configure luks &TPM

i already done these steps before the only problem is i cannot find arch.conf & linux.conf file  only .efi files available on boot directory
and systemd-boot detects TPM

{my host name}  kernel: efi: ACPI=0x44bfe000 ACPI 2.0=0x44bfe014 TPMFinalLog=0x44ae5000 SMBIOS=0x429de000 SMBIOS 3.0=0x429dc000 MEMATTR=0x3bf84018 ESRT=0x3bf83a98 RNG=0x44b77f18 INITRD=0x3bf07818 TPMEventLog=0x44b70018
{my host name} kernel: ACPI: TPM2 0x0000000044BF0000 00004C (v04 ACRSYS ACRPRDCT 00000002 1025 00040000)
{my host name} kernel: ACPI: Reserving TPM2 table memory at [mem 0x44bf0000-0x44bf004b]
{my host name}  kernel: tpm tpm0: tpm_read_log_acpi: Failed to map ACPI memory

{my host name}: systemd 257.1-1-arch running in system mode (+PAM +AUDIT -SELINUX -APPARMOR -IMA +IPE +SMACK +SECCOMP +GCRYPT +GNUTLS +OPENSSL +ACL +BLKID +CURL +ELFUTILS +FIDO2 +IDN2 -IDN +IPTC +KMOD +LIBCRYPTSETUP +LIBCRYPTSETUP_PLUGINS +LIBFDISK +PCRE2 +PWQUALITY +P11KIT +QRENCODE +TPM2 +BZIP2 +LZ4 +XZ +ZLIB +ZSTD +BPF_FRAMEWORK +BTF +XKBCOMMON +UTMP -SYSVINIT +LIBARCHIVE)
{my host name}  systemd-tpm2-setup[904]: SRK already stored in the TPM.
{my host name}  systemd-tpm2-setup[904]: SRK fingerprint is {my fingerprint key}
{my host name} systemd-tpm2-setup[904]: SRK public key saved to '/run/systemd/tpm2-srk-public-key.pem' in PEM format.
{my host name} systemd-tpm2-setup[904]: SRK public key saved to '/run/systemd/tpm2-srk-public-key.tpm2b_public' in TPM2B_PUBLIC format.


note: i got these log using journalctl --boot command

Last edited by AyXgoN (2025-01-03 15:54:57)

Offline

#4 2025-01-03 19:32:09

Lone_Wolf
Administrator
From: Netherlands, Europe
Registered: 2005-10-04
Posts: 14,993

Re: i cant edit boot configure luks &TPM

Those files are needed for systemd-boot ?

It looks like you must create them yourself, https://wiki.archlinux.org/title/System … ng_loaders has an example of an arch.conf .


Disliking systemd intensely, but not satisfied with alternatives so focusing on taming systemd.

clean chroot building not flexible enough ?
Try clean chroot manager by graysky

Offline

#5 2025-02-25 16:20:37

AyXgoN
Member
Registered: 2025-01-03
Posts: 3

Re: i cant edit boot configure luks &TPM

its worked thank you so much
sorry for late reply

Offline

#6 2025-02-26 14:58:19

Lone_Wolf
Administrator
From: Netherlands, Europe
Registered: 2005-10-04
Posts: 14,993

Re: i cant edit boot configure luks &TPM

Happy to Help.

If you're statisifed with the outcome please prepend [Solved] to the thread title (edit first post)


Disliking systemd intensely, but not satisfied with alternatives so focusing on taming systemd.

clean chroot building not flexible enough ?
Try clean chroot manager by graysky

Offline

Board footer

Powered by FluxBB