Saturday, August 31, 2024
support@conference.yunohost.org
August
Mon Tue Wed Thu Fri Sat Sun
      1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
 
             

[17:19:42] <philientaylor> > <@anmol:im.anmol.net.in> That are good choices. I might try them on my old laptop and see if it works.

Hey, Anmol, I'm interested in doing encryption by smart card, which would be an easy thing to take of course. Thank you for asking this question, since I now know about mandos, and I've been curious about TPMs and Measured Boots. 🙇‍♀️💖
[23:02:08] <Anmol> > <@philientaylor:gitter.im> Hey, Anmol, I'm interested in doing encryption by smart card, which would be an easy thing to take of course. Thank you for asking this question, since I now know about mandos, and I've been curious about TPMs and Measured Boots. 🙇‍♀️💖

Right now I am doing it with Dropbear SSH using this guide https://www.pbworks.net/ubuntu-guide-dropbear-ssh-server-to-unlock-luks-encrypted-pc/
[23:07:04] <Anmol> But my ssh is not working after restore
[23:12:45] <Anmol> all the admins are not able to login. I am only able to login from the root on local ip's
[23:17:54] <Anmol> I don't know why the Yunohost ssh settings are not working.
[23:31:09] <philientaylor> Here's a thread if you can see it, Anmol: .🙇‍♀️
[23:31:40] <Anmol> > <@philientaylor:gitter.im> Is this because the system failed to boot and dropped into a secure, root-only shell? 🤔

BUt system is booting. But all the admins are not able to login. The ssh has gone on its own.
[23:41:11] <philientaylor> (I'm glad I can ask questions, Anmol: , I just am new to doing a lot of this encryption and boot work. So I am trying to learn alongside you. 🥺🙇‍♀️)
[23:43:47] <philientaylor> So the SSH connection is still maintained and it didn't drop after boot? 🤔😳
[23:44:13] <Anmol> > <@philientaylor:gitter.im> So the SSH connection is still maintained and it didn't drop after boot? 🤔😳

I mean it went down after reboot. it went to the asking my lvm encryption password which I did enter from remote. Then no admin can login. Only root user can login on local ip.
[23:49:53] <philientaylor> The next paragraph in the article says something about an encrypted home directory preventing users from logging in :O
Edit: from logging in via keys
[23:52:54] <Anmol> > <@philientaylor:gitter.im> The next paragraph in the article says something about an encrypted home directory preventing users from logging in :O
> Edit: from logging in via keys

That is only for initial step to enter password. Once the /root is available the system runs fine.
[23:59:03] <Anmol> But I am not really happy with this method, its little hacky and can break on any update.