Allow --link-vk-to-keyring with --test-passphrase option.

To make it possible to upload volume key in user specified kernel
keyring without need to (re)activate the device.
This commit is contained in:
Ondrej Kozina
2024-02-29 14:16:43 +01:00
parent db635c428b
commit 5a0208cd06
4 changed files with 61 additions and 1 deletions

View File

@@ -104,6 +104,9 @@ void set_activation_flags(uint32_t *flags)
(ARG_SET(OPT_KEY_SLOT_ID) || ARG_SET(OPT_UNBOUND_ID)))
*flags |= CRYPT_ACTIVATE_ALLOW_UNBOUND_KEY;
if (ARG_SET(OPT_LINK_VK_TO_KEYRING_ID))
*flags |= CRYPT_ACTIVATE_KEYRING_KEY;
if (ARG_SET(OPT_SERIALIZE_MEMORY_HARD_PBKDF_ID))
*flags |= CRYPT_ACTIVATE_SERIALIZE_MEMORY_HARD_PBKDF;