diff --git a/README.md b/README.md index d56ab705..d6a859b7 100644 --- a/README.md +++ b/README.md @@ -39,19 +39,19 @@ Download Release notes and tarballs are available at [kernel.org](https://cdn.kernel.org/pub/linux/utils/cryptsetup/). +**The latest stable cryptsetup release candidate version is 2.8.0-rc1** + * [cryptsetup-2.8.0-rc1.tar.xz](https://www.kernel.org/pub/linux/utils/cryptsetup/v2.8/cryptsetup-2.8.0-rc1.tar.xz) + * Signature [cryptsetup-2.8.0-rc1.tar.sign](https://www.kernel.org/pub/linux/utils/cryptsetup/v2.8/cryptsetup-2.8.0-rc1.tar.sign) + _(You need to decompress file first to check signature.)_ + * [Cryptsetup 2.8.0-rc1 Release Notes](https://www.kernel.org/pub/linux/utils/cryptsetup/v2.8/v2.8.0-rc1-ReleaseNotes). + **The latest stable cryptsetup release version is 2.7.5** * [cryptsetup-2.7.5.tar.xz](https://cdn.kernel.org/pub/linux/utils/cryptsetup/v2.7/cryptsetup-2.7.5.tar.xz) * Signature [cryptsetup-2.7.5.tar.sign](https://cdn.kernel.org/pub/linux/utils/cryptsetup/v2.7/cryptsetup-2.7.5.tar.sign) _(You need to decompress file first to check signature.)_ * [Cryptsetup 2.7.5 Release Notes](https://cdn.kernel.org/pub/linux/utils/cryptsetup/v2.7/v2.7.5-ReleaseNotes). -Previous versions - * [Version 2.6.1](https://cdn.kernel.org/pub/linux/utils/cryptsetup/v2.6/cryptsetup-2.6.1.tar.xz) - - [Signature](https://cdn.kernel.org/pub/linux/utils/cryptsetup/v2.6/cryptsetup-2.6.1.tar.sign) - - [Release Notes](https://cdn.kernel.org/pub/linux/utils/cryptsetup/v2.6/v2.6.1-ReleaseNotes). - * [Version 1.7.5](https://cdn.kernel.org/pub/linux/utils/cryptsetup/v1.7/cryptsetup-1.7.5.tar.xz) - - [Signature](https://cdn.kernel.org/pub/linux/utils/cryptsetup/v1.7/cryptsetup-1.7.5.tar.sign) - - [Release Notes](https://cdn.kernel.org/pub/linux/utils/cryptsetup/v1.7/v1.7.5-ReleaseNotes). +[Previous versions](https://cdn.kernel.org/pub/linux/utils/cryptsetup) Source and API documentation ---------------------------- diff --git a/configure.ac b/configure.ac index fcec5e67..a7010e5a 100644 --- a/configure.ac +++ b/configure.ac @@ -1,5 +1,5 @@ AC_PREREQ([2.67]) -AC_INIT([cryptsetup],[2.8.0-rc0]) +AC_INIT([cryptsetup],[2.8.0-rc1]) dnl library version from ..[-] LIBCRYPTSETUP_VERSION=$(echo $PACKAGE_VERSION | cut -f1 -d-) diff --git a/docs/on-disk-format-luks2.pdf b/docs/on-disk-format-luks2.pdf index eb7eaa62..6a9df019 100644 Binary files a/docs/on-disk-format-luks2.pdf and b/docs/on-disk-format-luks2.pdf differ diff --git a/meson.build b/meson.build index e61d6b50..01dcfb85 100644 --- a/meson.build +++ b/meson.build @@ -2,7 +2,7 @@ project('cryptsetup', 'c', default_options: [ 'prefix=/usr' ], meson_version: '>=0.64', - version: '2.8.0-rc0') + version: '2.8.0-rc1') libcryptsetup_version = '12.11.0' diff --git a/misc/fedora/cryptsetup.spec b/misc/fedora/cryptsetup.spec index e9f749f2..9cbeab06 100644 --- a/misc/fedora/cryptsetup.spec +++ b/misc/fedora/cryptsetup.spec @@ -2,7 +2,7 @@ Summary: Utility for setting up encrypted disks Name: cryptsetup -Version: 2.8.0-rc0 +Version: 2.8.0-rc1 Release: 1%{?dist} License: GPL-2.0-or-later WITH cryptsetup-OpenSSL-exception AND LGPL-2.1-or-later WITH cryptsetup-OpenSSL-exception URL: https://gitlab.com/cryptsetup/cryptsetup @@ -18,7 +18,7 @@ Obsoletes: %{name}-reencrypt <= %{version} Provides: %{name}-reencrypt = %{version} %global upstream_version %{version_no_tilde} -Source0: https://cdn.kernel.org/pub/linux/utils/cryptsetup/v2.7/cryptsetup-%{upstream_version}.tar.xz +Source0: https://cdn.kernel.org/pub/linux/utils/cryptsetup/v2.8/cryptsetup-%{upstream_version}.tar.xz %description The cryptsetup package contains a utility for setting up diff --git a/po/cryptsetup.pot b/po/cryptsetup.pot index b3804b06..ce32e6ea 100644 --- a/po/cryptsetup.pot +++ b/po/cryptsetup.pot @@ -5,9 +5,9 @@ #, fuzzy msgid "" msgstr "" -"Project-Id-Version: cryptsetup 2.7.0\n" +"Project-Id-Version: cryptsetup 2.8.0-rc1\n" "Report-Msgid-Bugs-To: cryptsetup@lists.linux.dev\n" -"POT-Creation-Date: 2024-01-24 09:44+0100\n" +"POT-Creation-Date: 2025-06-16 13:51+0200\n" "PO-Revision-Date: YEAR-MO-DA HO:MI+ZONE\n" "Last-Translator: FULL NAME \n" "Language-Team: LANGUAGE \n" @@ -24,1122 +24,1168 @@ msgstr "" msgid "Cannot initialize device-mapper. Is dm_mod kernel module loaded?" msgstr "" -#: lib/libdevmapper.c:1103 +#: lib/libdevmapper.c:1125 msgid "Requested deferred flag is not supported." msgstr "" -#: lib/libdevmapper.c:1172 +#: lib/libdevmapper.c:1194 #, c-format msgid "DM-UUID for device %s was truncated." msgstr "" -#: lib/libdevmapper.c:1510 +#: lib/libdevmapper.c:1598 msgid "Unknown dm target type." msgstr "" -#: lib/libdevmapper.c:1629 lib/libdevmapper.c:1635 lib/libdevmapper.c:1738 -#: lib/libdevmapper.c:1741 +#: lib/libdevmapper.c:1725 lib/libdevmapper.c:1731 lib/libdevmapper.c:1850 +#: lib/libdevmapper.c:1853 msgid "Requested dm-crypt performance options are not supported." msgstr "" -#: lib/libdevmapper.c:1644 lib/libdevmapper.c:1656 +#: lib/libdevmapper.c:1740 lib/libdevmapper.c:1746 lib/libdevmapper.c:1758 msgid "Requested dm-verity data corruption handling options are not supported." msgstr "" -#: lib/libdevmapper.c:1650 +#: lib/libdevmapper.c:1752 msgid "Requested dm-verity tasklets option is not supported." msgstr "" -#: lib/libdevmapper.c:1662 +#: lib/libdevmapper.c:1764 msgid "Requested dm-verity FEC options are not supported." msgstr "" -#: lib/libdevmapper.c:1668 +#: lib/libdevmapper.c:1770 msgid "Requested data integrity options are not supported." msgstr "" -#: lib/libdevmapper.c:1672 +#: lib/libdevmapper.c:1774 msgid "Requested sector_size option is not supported." msgstr "" -#: lib/libdevmapper.c:1677 +#: lib/libdevmapper.c:1779 msgid "The device size is not multiple of the requested sector size." msgstr "" -#: lib/libdevmapper.c:1684 lib/libdevmapper.c:1690 +#: lib/libdevmapper.c:1783 +msgid "Requested integrity_key_size option is not supported." +msgstr "" + +#: lib/libdevmapper.c:1790 lib/libdevmapper.c:1796 msgid "Requested automatic recalculation of integrity tags is not supported." msgstr "" -#: lib/libdevmapper.c:1696 lib/libdevmapper.c:1744 lib/libdevmapper.c:1747 -#: lib/luks2/luks2_json_metadata.c:2754 +#: lib/libdevmapper.c:1802 lib/libdevmapper.c:1856 lib/libdevmapper.c:1859 +#: lib/luks2/luks2_json_metadata.c:2777 msgid "Discard/TRIM is not supported." msgstr "" -#: lib/libdevmapper.c:1702 +#: lib/libdevmapper.c:1808 msgid "Requested dm-integrity bitmap mode is not supported." msgstr "" -#: lib/libdevmapper.c:2738 +#: lib/libdevmapper.c:1814 +msgid "Requested dm-integrity inline mode is not supported." +msgstr "" + +#: lib/libdevmapper.c:2870 #, c-format msgid "Failed to query dm-%s segment." msgstr "" -#: lib/random.c:73 +#: lib/random.c:60 msgid "" "System is out of entropy while generating volume key.\n" "Please move mouse or type some text in another window to gather some random " "events.\n" msgstr "" -#: lib/random.c:77 +#: lib/random.c:64 #, c-format msgid "Generating key (%d%% done).\n" msgstr "" -#: lib/random.c:163 +#: lib/random.c:150 msgid "Running in FIPS mode." msgstr "" -#: lib/random.c:169 +#: lib/random.c:156 msgid "Fatal error during RNG initialisation." msgstr "" -#: lib/random.c:207 +#: lib/random.c:194 msgid "Unknown RNG quality requested." msgstr "" -#: lib/random.c:212 +#: lib/random.c:199 msgid "Error reading from RNG." msgstr "" -#: lib/setup.c:262 +#: lib/setup.c:248 msgid "OPAL support is disabled in libcryptsetup." msgstr "" -#: lib/setup.c:264 +#: lib/setup.c:250 #, c-format msgid "Device %s or kernel does not support OPAL encryption." msgstr "" -#: lib/setup.c:280 +#: lib/setup.c:266 msgid "Cannot initialize crypto RNG backend." msgstr "" -#: lib/setup.c:286 +#: lib/setup.c:272 msgid "Cannot initialize crypto backend." msgstr "" -#: lib/setup.c:318 lib/setup.c:2778 lib/verity/verity.c:122 +#: lib/setup.c:305 lib/setup.c:2766 lib/verity/verity.c:109 #, c-format msgid "Hash algorithm %s not supported." msgstr "" -#: lib/setup.c:321 lib/loopaes/loopaes.c:90 +#: lib/setup.c:308 lib/loopaes/loopaes.c:78 #, c-format msgid "Key processing error (using hash %s)." msgstr "" -#: lib/setup.c:392 lib/setup.c:429 +#: lib/setup.c:389 lib/setup.c:426 msgid "Cannot determine device type. Incompatible activation of device?" msgstr "" -#: lib/setup.c:398 lib/setup.c:3973 +#: lib/setup.c:395 lib/setup.c:4139 msgid "This operation is supported only for LUKS device." msgstr "" -#: lib/setup.c:435 +#: lib/setup.c:432 msgid "This operation is supported only for LUKS2 device." msgstr "" -#: lib/setup.c:492 lib/luks2/luks2_reencrypt.c:3071 +#: lib/setup.c:489 lib/luks2/luks2_reencrypt.c:3093 msgid "All key slots full." msgstr "" -#: lib/setup.c:503 +#: lib/setup.c:500 #, c-format msgid "Key slot %d is invalid, please select between 0 and %d." msgstr "" -#: lib/setup.c:509 +#: lib/setup.c:506 #, c-format msgid "Key slot %d is full, please select another one." msgstr "" -#: lib/setup.c:620 lib/setup.c:3673 +#: lib/setup.c:531 lib/setup.c:3854 msgid "Device size is not aligned to device logical block size." msgstr "" -#: lib/setup.c:718 +#: lib/setup.c:628 #, c-format msgid "Header detected but device %s is too small." msgstr "" -#: lib/setup.c:759 lib/setup.c:3564 lib/setup.c:5351 lib/setup.c:5371 -#: lib/luks2/luks2_reencrypt.c:3863 lib/luks2/luks2_reencrypt.c:4320 +#: lib/setup.c:669 lib/setup.c:3739 lib/setup.c:5206 +#: lib/luks2/luks2_reencrypt.c:3937 lib/luks2/luks2_reencrypt.c:4425 msgid "This operation is not supported for this device type." msgstr "" -#: lib/setup.c:764 +#: lib/setup.c:674 msgid "Illegal operation with reencryption in-progress." msgstr "" -#: lib/setup.c:896 +#: lib/setup.c:806 msgid "Failed to rollback LUKS2 metadata in memory." msgstr "" -#: lib/setup.c:983 lib/luks1/keymanage.c:249 lib/luks1/keymanage.c:527 -#: lib/luks2/luks2_json_metadata.c:1374 src/cryptsetup.c:1878 -#: src/cryptsetup.c:2059 src/cryptsetup.c:2114 src/cryptsetup.c:2319 -#: src/cryptsetup.c:2489 src/cryptsetup.c:2770 src/cryptsetup.c:3078 -#: src/cryptsetup.c:3146 src/utils_reencrypt.c:1488 -#: src/utils_reencrypt_luks1.c:1192 tokens/ssh/cryptsetup-ssh.c:85 +#: lib/setup.c:893 lib/luks1/keymanage.c:236 lib/luks1/keymanage.c:514 +#: lib/luks2/luks2_json_metadata.c:1361 src/cryptsetup.c:1773 +#: src/cryptsetup.c:1957 src/cryptsetup.c:2012 src/cryptsetup.c:2210 +#: src/cryptsetup.c:2355 src/cryptsetup.c:2633 src/cryptsetup.c:2946 +#: src/cryptsetup.c:3014 src/utils_reencrypt.c:2280 +#: src/utils_reencrypt_luks1.c:1137 tokens/ssh/cryptsetup-ssh.c:72 #, c-format msgid "Device %s is not a valid LUKS device." msgstr "" -#: lib/setup.c:986 lib/luks1/keymanage.c:530 +#: lib/setup.c:896 lib/luks1/keymanage.c:517 #, c-format msgid "Unsupported LUKS version %d." msgstr "" -#: lib/setup.c:1359 +#: lib/setup.c:1270 #, c-format msgid "No known cipher specification pattern detected for active device %s." msgstr "" -#: lib/setup.c:1605 lib/setup.c:3318 lib/setup.c:3400 lib/setup.c:3412 -#: lib/setup.c:3582 lib/setup.c:5995 +#: lib/setup.c:1515 lib/setup.c:3486 lib/setup.c:3578 lib/setup.c:3590 +#: lib/setup.c:3762 lib/setup.c:5781 #, c-format msgid "Device %s is not active." msgstr "" -#: lib/setup.c:1622 +#: lib/setup.c:1532 #, c-format msgid "Underlying device for crypt device %s disappeared." msgstr "" -#: lib/setup.c:1704 +#: lib/setup.c:1614 msgid "Invalid plain crypt parameters." msgstr "" -#: lib/setup.c:1709 lib/setup.c:2681 +#: lib/setup.c:1619 lib/setup.c:2669 msgid "Invalid key size." msgstr "" -#: lib/setup.c:1714 lib/setup.c:2686 lib/setup.c:2889 +#: lib/setup.c:1624 lib/setup.c:2674 lib/setup.c:2879 msgid "UUID is not supported for this crypt type." msgstr "" -#: lib/setup.c:1719 lib/setup.c:2691 +#: lib/setup.c:1629 lib/setup.c:2679 msgid "Detached metadata device is not supported for this crypt type." msgstr "" -#: lib/setup.c:1729 lib/setup.c:1964 lib/luks2/luks2_reencrypt.c:3027 -#: src/cryptsetup.c:1475 src/cryptsetup.c:3847 +#: lib/setup.c:1639 lib/setup.c:1887 lib/luks2/luks2_reencrypt.c:3026 +#: src/cryptsetup.c:1485 src/cryptsetup.c:3753 msgid "Unsupported encryption sector size." msgstr "" -#: lib/setup.c:1737 lib/setup.c:1993 lib/setup.c:3667 +#: lib/setup.c:1647 lib/setup.c:1916 lib/setup.c:3848 msgid "Device size is not aligned to requested sector size." msgstr "" -#: lib/setup.c:1789 lib/setup.c:2026 lib/setup.c:2358 +#: lib/setup.c:1699 lib/setup.c:1951 lib/setup.c:2328 msgid "Can't format LUKS without device." msgstr "" -#: lib/setup.c:1795 lib/setup.c:2032 lib/setup.c:2364 +#: lib/setup.c:1704 lib/setup.c:1956 +#, c-format +msgid "Zoned device %s cannot be used for LUKS header." +msgstr "" + +#: lib/setup.c:1711 lib/setup.c:1963 lib/setup.c:2334 msgid "Requested data alignment is not compatible with data offset." msgstr "" -#: lib/setup.c:1835 lib/setup.c:2050 +#: lib/setup.c:1751 lib/setup.c:1981 msgid "" "WARNING: DAX device can corrupt data as it does not guarantee atomic sector " "updates.\n" msgstr "" -#: lib/setup.c:1873 lib/setup.c:2145 lib/setup.c:2166 lib/setup.c:2542 -#: lib/setup.c:2588 lib/setup.c:2901 +#: lib/setup.c:1789 lib/setup.c:2088 lib/setup.c:2109 lib/setup.c:2517 +#: lib/setup.c:2564 lib/setup.c:2896 #, c-format msgid "Cannot wipe header on device %s." msgstr "" -#: lib/setup.c:1886 lib/setup.c:2205 +#: lib/setup.c:1802 lib/setup.c:2161 #, c-format msgid "" "Device %s is too small for activation, there is no remaining space for " "data.\n" msgstr "" -#: lib/setup.c:1926 +#: lib/setup.c:1843 msgid "Volume key is too small for encryption with integrity extensions." msgstr "" -#: lib/setup.c:1935 +#: lib/setup.c:1847 +msgid "Integrity key size is too small." +msgstr "" + +#: lib/setup.c:1856 #, c-format msgid "Cipher %s-%s (key size %zd bits) is not available." msgstr "" -#: lib/setup.c:1974 +#: lib/setup.c:1897 msgid "" "WARNING: The device activation will fail, dm-crypt is missing support for " "requested encryption sector size.\n" msgstr "" -#: lib/setup.c:2148 lib/setup.c:2485 lib/setup.c:2545 lib/utils_device.c:917 -#: lib/luks1/keyencryption.c:255 lib/luks2/luks2_reencrypt.c:3095 -#: lib/luks2/luks2_reencrypt.c:4380 +#: lib/setup.c:2091 lib/setup.c:2458 lib/setup.c:2520 lib/utils_device.c:896 +#: lib/luks1/keyencryption.c:244 lib/luks2/luks2_reencrypt.c:3065 +#: lib/luks2/luks2_reencrypt.c:4485 #, c-format msgid "Device %s is too small." msgstr "" -#: lib/setup.c:2159 lib/setup.c:2185 lib/setup.c:2581 lib/setup.c:2627 +#: lib/setup.c:2102 lib/setup.c:2141 lib/setup.c:2557 lib/setup.c:2615 #, c-format msgid "Cannot format device %s in use." msgstr "" -#: lib/setup.c:2162 lib/setup.c:2188 lib/setup.c:2584 lib/setup.c:2630 +#: lib/setup.c:2105 lib/setup.c:2144 lib/setup.c:2560 lib/setup.c:2618 #, c-format msgid "Cannot format device %s, permission denied." msgstr "" -#: lib/setup.c:2174 lib/setup.c:2601 lib/setup.c:2961 +#: lib/setup.c:2129 lib/setup.c:2587 lib/setup.c:2969 #, c-format msgid "Cannot format integrity for device %s." msgstr "" -#: lib/setup.c:2192 lib/setup.c:2638 +#: lib/setup.c:2148 lib/setup.c:2626 #, c-format msgid "Cannot format device %s." msgstr "" -#: lib/setup.c:2235 +#: lib/setup.c:2191 msgid "Cannot get OPAL alignment parameters." msgstr "" -#: lib/setup.c:2244 +#: lib/setup.c:2203 msgid "Bogus OPAL logical block size." msgstr "" -#: lib/setup.c:2250 +#: lib/setup.c:2208 lib/luks2/hw_opal/hw_opal.c:303 +msgid "Bogus OPAL logical block size differs from device block size." +msgstr "" + +#: lib/setup.c:2214 msgid "Requested data offset is not compatible with OPAL block size." msgstr "" -#: lib/setup.c:2257 +#: lib/setup.c:2221 msgid "Requested data alignment is not compatible with OPAL alignment." msgstr "" -#: lib/setup.c:2277 +#: lib/setup.c:2241 msgid "Data offset does not satisfy OPAL alignment requirements." msgstr "" -#: lib/setup.c:2290 +#: lib/setup.c:2254 msgid "" "Requested data alignment does not satisfy locking range alignment " "requirements." msgstr "" -#: lib/setup.c:2495 +#: lib/setup.c:2468 #, c-format msgid "" "Compensating device size by % sectors to align it with OPAL " "alignment granularity." msgstr "" -#: lib/setup.c:2553 lib/setup.c:4070 lib/setup.c:4253 lib/utils_wipe.c:368 -#: lib/luks2/luks2_json_metadata.c:2703 lib/luks2/luks2_json_metadata.c:2955 +#: lib/setup.c:2528 lib/setup.c:4222 lib/setup.c:4411 lib/utils_wipe.c:356 +#: lib/luks2/luks2_json_metadata.c:2720 lib/luks2/luks2_json_metadata.c:2988 #, c-format msgid "Failed to acquire OPAL lock on device %s." msgstr "" -#: lib/setup.c:2562 +#: lib/setup.c:2538 msgid "Incorrect OPAL Admin key." msgstr "" -#: lib/setup.c:2564 +#: lib/setup.c:2540 msgid "Cannot setup OPAL segment." msgstr "" -#: lib/setup.c:2634 +#: lib/setup.c:2622 #, c-format msgid "" "Cannot format device %s, OPAL device seems to be fully write-protected now." msgstr "" -#: lib/setup.c:2636 +#: lib/setup.c:2624 msgid "" "This is perhaps a bug in firmware. Run OPAL PSID reset and reconnect for " "recovery." msgstr "" -#: lib/setup.c:2656 +#: lib/setup.c:2644 #, c-format msgid "Locking range %d reset on device %s failed." msgstr "" -#: lib/setup.c:2676 +#: lib/setup.c:2664 msgid "Can't format LOOPAES without device." msgstr "" -#: lib/setup.c:2721 +#: lib/setup.c:2709 msgid "Can't format VERITY without device." msgstr "" -#: lib/setup.c:2732 lib/verity/verity.c:101 +#: lib/setup.c:2720 lib/verity/verity.c:88 #, c-format msgid "Unsupported VERITY hash type %d." msgstr "" -#: lib/setup.c:2738 lib/verity/verity.c:109 +#: lib/setup.c:2726 lib/verity/verity.c:96 msgid "Unsupported VERITY block size." msgstr "" -#: lib/setup.c:2743 lib/verity/verity.c:74 +#: lib/setup.c:2731 lib/verity/verity.c:61 msgid "Unsupported VERITY hash offset." msgstr "" -#: lib/setup.c:2748 +#: lib/setup.c:2736 msgid "Unsupported VERITY FEC offset." msgstr "" -#: lib/setup.c:2772 +#: lib/setup.c:2760 msgid "Data area overlaps with hash area." msgstr "" -#: lib/setup.c:2797 +#: lib/setup.c:2785 msgid "Hash area overlaps with FEC area." msgstr "" -#: lib/setup.c:2804 +#: lib/setup.c:2792 msgid "Data area overlaps with FEC area." msgstr "" -#: lib/setup.c:2940 +#: lib/setup.c:2884 +msgid "Integrity key size mismatch." +msgstr "" + +#: lib/setup.c:2935 #, c-format msgid "" "WARNING: Requested tag size %d bytes differs from %s size output (%d " "bytes).\n" msgstr "" -#: lib/setup.c:3019 +#: lib/setup.c:3031 lib/setup.c:3129 #, c-format -msgid "Unknown crypt device type %s requested." +msgid "Unknown or unsupported device type %s requested." msgstr "" -#: lib/setup.c:3326 lib/setup.c:3405 lib/setup.c:3418 +#: lib/setup.c:3043 +#, c-format +msgid "Device %s does not provide inline integrity data fields." +msgstr "" + +#: lib/setup.c:3049 +#, c-format +msgid "" +"Inline tag size % [bytes] is larger than % provided by " +"device %s." +msgstr "" + +#: lib/setup.c:3064 +#, c-format +msgid "Sector must be the same as device hardware sector (%zu bytes)." +msgstr "" + +#: lib/setup.c:3494 lib/setup.c:3583 lib/setup.c:3596 #, c-format msgid "Unsupported parameters on device %s." msgstr "" -#: lib/setup.c:3332 lib/setup.c:3425 lib/luks2/luks2_reencrypt.c:2923 -#: lib/luks2/luks2_reencrypt.c:3160 lib/luks2/luks2_reencrypt.c:3555 +#: lib/setup.c:3500 lib/setup.c:3603 lib/luks2/luks2_reencrypt.c:2920 +#: lib/luks2/luks2_reencrypt.c:3189 lib/luks2/luks2_reencrypt.c:3583 #, c-format msgid "Mismatching parameters on device %s." msgstr "" -#: lib/setup.c:3449 +#: lib/setup.c:3626 msgid "Crypt devices mismatch." msgstr "" -#: lib/setup.c:3486 lib/setup.c:3491 lib/luks2/luks2_reencrypt.c:2405 -#: lib/luks2/luks2_reencrypt.c:2939 lib/luks2/luks2_reencrypt.c:4124 +#: lib/setup.c:3658 lib/setup.c:3663 lib/luks2/luks2_reencrypt.c:2404 +#: lib/luks2/luks2_reencrypt.c:2936 lib/luks2/luks2_reencrypt.c:4224 #, c-format msgid "Failed to reload device %s." msgstr "" -#: lib/setup.c:3497 lib/setup.c:3503 lib/luks2/luks2_reencrypt.c:2376 -#: lib/luks2/luks2_reencrypt.c:2383 lib/luks2/luks2_reencrypt.c:2953 +#: lib/setup.c:3669 lib/setup.c:3675 lib/luks2/luks2_reencrypt.c:2375 +#: lib/luks2/luks2_reencrypt.c:2382 lib/luks2/luks2_reencrypt.c:2950 #, c-format msgid "Failed to suspend device %s." msgstr "" -#: lib/setup.c:3509 lib/luks2/luks2_reencrypt.c:2390 -#: lib/luks2/luks2_reencrypt.c:2974 lib/luks2/luks2_reencrypt.c:4037 -#: lib/luks2/luks2_reencrypt.c:4128 +#: lib/setup.c:3681 lib/luks2/luks2_reencrypt.c:2389 +#: lib/luks2/luks2_reencrypt.c:2971 lib/luks2/luks2_reencrypt.c:4137 +#: lib/luks2/luks2_reencrypt.c:4228 #, c-format msgid "Failed to resume device %s." msgstr "" -#: lib/setup.c:3524 +#: lib/setup.c:3696 #, c-format msgid "Fatal error while reloading device %s (on top of device %s)." msgstr "" -#: lib/setup.c:3527 lib/setup.c:3529 +#: lib/setup.c:3699 lib/setup.c:3701 #, c-format msgid "Failed to switch device %s to dm-error." msgstr "" -#: lib/setup.c:3569 +#: lib/setup.c:3744 msgid "Can not resize LUKS2 device with static size." msgstr "" -#: lib/setup.c:3614 +#: lib/setup.c:3749 +msgid "Resize of LUKS2 device with integrity protection is not supported." +msgstr "" + +#: lib/setup.c:3795 msgid "Cannot resize loop device." msgstr "" -#: lib/setup.c:3658 +#: lib/setup.c:3839 msgid "WARNING: Maximum size already set or kernel doesn't support resize.\n" msgstr "" -#: lib/setup.c:3724 +#: lib/setup.c:3905 msgid "Resize failed, the kernel doesn't support it." msgstr "" -#: lib/setup.c:3756 +#: lib/setup.c:3937 msgid "Do you really want to change UUID of device?" msgstr "" -#: lib/setup.c:3848 +#: lib/setup.c:4029 msgid "Header backup file does not contain compatible LUKS header." msgstr "" -#: lib/setup.c:3958 +#: lib/setup.c:4122 #, c-format msgid "Volume %s is not active." msgstr "" -#: lib/setup.c:4024 +#: lib/setup.c:4177 #, c-format msgid "Volume %s is already suspended." msgstr "" -#: lib/setup.c:4052 +#: lib/setup.c:4203 #, c-format msgid "Suspend is not supported for device %s." msgstr "" -#: lib/setup.c:4054 lib/setup.c:4062 +#: lib/setup.c:4205 lib/setup.c:4213 #, c-format msgid "Error during suspending device %s." msgstr "" -#: lib/setup.c:4076 +#: lib/setup.c:4228 #, c-format msgid "Device %s was suspended but hardware OPAL device cannot be locked." msgstr "" -#: lib/setup.c:4108 lib/setup.c:4280 +#: lib/setup.c:4259 lib/setup.c:4436 #, c-format msgid "Resume is not supported for device %s." msgstr "" -#: lib/setup.c:4110 lib/setup.c:4271 lib/setup.c:4282 +#: lib/setup.c:4261 lib/setup.c:4426 lib/setup.c:4438 #, c-format msgid "Error during resuming device %s." msgstr "" -#: lib/setup.c:4129 +#: lib/setup.c:4280 msgid "Failed to unlink volume key from user specified keyring." msgstr "" -#: lib/setup.c:4244 lib/setup.c:4966 lib/setup.c:5787 +#: lib/setup.c:4402 lib/setup.c:5568 msgid "Failed to link volume key in user defined keyring." msgstr "" -#: lib/setup.c:4345 src/cryptsetup.c:2852 +#: lib/setup.c:4500 src/cryptsetup.c:2714 #, c-format msgid "Volume %s is not suspended." msgstr "" -#: lib/setup.c:4446 lib/setup.c:5106 lib/setup.c:5523 lib/setup.c:5542 -#: lib/setup.c:7416 lib/setup.c:7438 lib/setup.c:7487 src/cryptsetup.c:2362 +#: lib/setup.c:4601 lib/setup.c:7233 lib/setup.c:7255 lib/setup.c:7309 +#: src/cryptsetup.c:1849 src/cryptsetup.c:2253 src/cryptsetup.c:2271 +#: src/utils_reencrypt.c:305 src/utils_reencrypt.c:1965 msgid "Volume key does not match the volume." msgstr "" -#: lib/setup.c:4600 +#: lib/setup.c:4755 msgid "Failed to swap new key slot." msgstr "" -#: lib/setup.c:4698 +#: lib/setup.c:4853 #, c-format msgid "Key slot %d is invalid." msgstr "" -#: lib/setup.c:4704 src/cryptsetup.c:2072 src/cryptsetup.c:2564 -#: src/cryptsetup.c:3246 src/cryptsetup.c:3306 +#: lib/setup.c:4859 src/cryptsetup.c:1970 src/cryptsetup.c:2430 +#: src/cryptsetup.c:3114 src/cryptsetup.c:3174 #, c-format msgid "Keyslot %d is not active." msgstr "" -#: lib/setup.c:4723 +#: lib/setup.c:4878 msgid "Device header overlaps with data area." msgstr "" -#: lib/setup.c:5076 lib/setup.c:5176 +#: lib/setup.c:5099 msgid "Reencryption in-progress. Cannot activate device." msgstr "" -#: lib/setup.c:5078 lib/setup.c:5178 lib/luks2/luks2_json_metadata.c:2861 -#: lib/luks2/luks2_reencrypt.c:3661 +#: lib/setup.c:5101 lib/luks2/luks2_json_metadata.c:2884 +#: lib/luks2/luks2_reencrypt.c:3714 msgid "Failed to get reencryption lock." msgstr "" -#: lib/setup.c:5090 +#: lib/setup.c:5123 msgid "LUKS2 reencryption recovery using volume key(s) failed." msgstr "" -#: lib/setup.c:5142 lib/setup.c:5232 -msgid "Failed to link volume keys in user defined keyring." -msgstr "" - -#: lib/setup.c:5191 lib/luks2/luks2_reencrypt.c:3680 -msgid "LUKS2 reencryption recovery failed." -msgstr "" - -#: lib/setup.c:5439 lib/setup.c:5553 lib/setup.c:5610 -msgid "Device type is not properly initialized." -msgstr "" - -#: lib/setup.c:5494 +#: lib/setup.c:5259 #, c-format msgid "Device %s already exists." msgstr "" -#: lib/setup.c:5501 +#: lib/setup.c:5266 #, c-format msgid "Cannot use device %s, name is invalid or still in use." msgstr "" -#: lib/setup.c:5519 -msgid "Incorrect volume key specified for plain device." -msgstr "" - -#: lib/setup.c:5533 +#: lib/setup.c:5278 msgid "Reencryption volume keys do not match the volume." msgstr "" -#: lib/setup.c:5646 +#: lib/setup.c:5295 +msgid "Incorrect volume key specified for plain device." +msgstr "" + +#: lib/setup.c:5321 lib/setup.c:5382 +msgid "Device type is not properly initialized." +msgstr "" + +#: lib/setup.c:5420 msgid "Kernel keyring is not supported by the kernel." msgstr "" -#: lib/setup.c:5650 +#: lib/setup.c:5424 msgid "Kernel keyring missing: required for passing signature to kernel." msgstr "" -#: lib/setup.c:5908 +#: lib/setup.c:5476 +#, c-format +msgid "Cannot use keyring key %s." +msgstr "" + +#: lib/setup.c:5689 msgid "Incorrect root hash specified for verity device." msgstr "" -#: lib/setup.c:5951 +#: lib/setup.c:5730 lib/setup.c:5755 msgid "OPAL does not support deferred deactivation." msgstr "" -#: lib/setup.c:5967 -#, c-format -msgid "Could not cancel deferred remove from device %s." -msgstr "" - -#: lib/setup.c:5974 lib/setup.c:5990 lib/luks2/luks2_json_metadata.c:2915 -#: src/utils_reencrypt.c:116 +#: lib/setup.c:5745 lib/setup.c:5776 lib/luks2/luks2_json_metadata.c:2949 +#: src/utils_reencrypt.c:89 #, c-format msgid "Device %s is still in use." msgstr "" -#: lib/setup.c:5999 +#: lib/setup.c:5763 +#, c-format +msgid "Could not cancel deferred remove from device %s." +msgstr "" + +#: lib/setup.c:5785 #, c-format msgid "Invalid device %s." msgstr "" -#: lib/setup.c:6139 +#: lib/setup.c:5926 msgid "Volume key buffer too small." msgstr "" -#: lib/setup.c:6156 +#: lib/setup.c:5937 msgid "Cannot retrieve volume key for LUKS2 device." msgstr "" -#: lib/setup.c:6165 +#: lib/setup.c:5946 msgid "Cannot retrieve volume key for LUKS1 device." msgstr "" -#: lib/setup.c:6175 +#: lib/setup.c:5960 msgid "Cannot retrieve volume key for plain device." msgstr "" -#: lib/setup.c:6183 +#: lib/setup.c:5968 msgid "Cannot retrieve root hash for verity device." msgstr "" -#: lib/setup.c:6190 +#: lib/setup.c:5975 msgid "Cannot retrieve volume key for BITLK device." msgstr "" -#: lib/setup.c:6195 +#: lib/setup.c:5980 msgid "Cannot retrieve volume key for FVAULT2 device." msgstr "" -#: lib/setup.c:6197 +#: lib/setup.c:5982 #, c-format msgid "This operation is not supported for %s crypt device." msgstr "" -#: lib/setup.c:6381 lib/setup.c:6392 +#: lib/setup.c:6167 lib/setup.c:6178 msgid "Dump operation is not supported for this device type." msgstr "" -#: lib/setup.c:6751 +#: lib/setup.c:6558 #, c-format msgid "Data offset is not multiple of %u bytes." msgstr "" -#: lib/setup.c:7059 +#: lib/setup.c:6866 #, c-format msgid "Cannot convert device %s which is still in use." msgstr "" -#: lib/setup.c:7357 lib/setup.c:7496 +#: lib/setup.c:7174 lib/setup.c:7318 #, c-format msgid "Failed to assign keyslot %u as the new volume key." msgstr "" -#: lib/setup.c:7381 +#: lib/setup.c:7198 msgid "Failed to initialize default LUKS2 keyslot parameters." msgstr "" -#: lib/setup.c:7387 +#: lib/setup.c:7204 #, c-format msgid "Failed to assign keyslot %d to digest." msgstr "" -#: lib/setup.c:7612 +#: lib/setup.c:7435 msgid "Cannot add key slot, all slots disabled and no volume key provided." msgstr "" -#: lib/setup.c:7681 lib/verity/verity.c:343 +#: lib/setup.c:7508 lib/verity/verity.c:333 msgid "Failed to load key in kernel keyring." msgstr "" -#: lib/setup.c:7799 -msgid "Failed to unlink volume key from thread keyring." -msgstr "" - -#: lib/setup.c:7843 +#: lib/setup.c:7699 #, c-format msgid "Could not find keyring described by \"%s\"." msgstr "" -#: lib/setup.c:7908 +#: lib/setup.c:7764 msgid "Failed to acquire global memory-hard access serialization lock." msgstr "" -#: lib/utils.c:215 lib/tcrypt/tcrypt.c:503 +#: lib/utils.c:204 lib/tcrypt/tcrypt.c:490 msgid "Failed to open key file." msgstr "" -#: lib/utils.c:220 +#: lib/utils.c:212 msgid "Cannot read keyfile from a terminal." msgstr "" -#: lib/utils.c:236 +#: lib/utils.c:228 msgid "Failed to stat key file." msgstr "" -#: lib/utils.c:244 lib/utils.c:265 +#: lib/utils.c:236 lib/utils.c:257 msgid "Cannot seek to requested keyfile offset." msgstr "" -#: lib/utils.c:259 lib/utils.c:274 src/utils_password.c:226 -#: src/utils_password.c:238 +#: lib/utils.c:251 lib/utils.c:266 src/utils_password.c:219 +#: src/utils_password.c:231 msgid "Out of memory while reading passphrase." msgstr "" -#: lib/utils.c:294 +#: lib/utils.c:286 msgid "Error reading passphrase." msgstr "" -#: lib/utils.c:311 +#: lib/utils.c:303 msgid "Nothing to read on input." msgstr "" -#: lib/utils.c:318 +#: lib/utils.c:310 msgid "Maximum keyfile size exceeded." msgstr "" -#: lib/utils.c:323 +#: lib/utils.c:315 msgid "Cannot read requested amount of data." msgstr "" -#: lib/utils_device.c:213 lib/utils_storage_wrappers.c:110 -#: lib/luks1/keyencryption.c:91 src/utils_reencrypt.c:1461 +#: lib/utils_device.c:207 lib/utils_storage_wrappers.c:99 +#: lib/luks1/keyencryption.c:78 src/utils_reencrypt.c:2253 #, c-format msgid "Device %s does not exist or access denied." msgstr "" -#: lib/utils_device.c:223 +#: lib/utils_device.c:217 #, c-format msgid "Device %s is not compatible." msgstr "" -#: lib/utils_device.c:567 +#: lib/utils_device.c:546 #, c-format msgid "Ignoring bogus optimal-io size for data device (%u bytes)." msgstr "" -#: lib/utils_device.c:728 +#: lib/utils_device.c:707 #, c-format msgid "Device %s is too small. Need at least % bytes." msgstr "" -#: lib/utils_device.c:809 +#: lib/utils_device.c:788 #, c-format msgid "Cannot use device %s which is in use (already mapped or mounted)." msgstr "" -#: lib/utils_device.c:813 +#: lib/utils_device.c:792 #, c-format msgid "Cannot use device %s, permission denied." msgstr "" -#: lib/utils_device.c:816 +#: lib/utils_device.c:795 #, c-format msgid "Cannot get info about device %s." msgstr "" -#: lib/utils_device.c:839 +#: lib/utils_device.c:818 msgid "Cannot use a loopback device, running as non-root user." msgstr "" -#: lib/utils_device.c:850 +#: lib/utils_device.c:829 msgid "" "Attaching loopback device failed (loop device with autoclear flag is " "required)." msgstr "" -#: lib/utils_device.c:898 +#: lib/utils_device.c:877 #, c-format msgid "Requested offset is beyond real size of device %s." msgstr "" -#: lib/utils_device.c:906 +#: lib/utils_device.c:885 #, c-format msgid "Device %s has zero size." msgstr "" -#: lib/utils_pbkdf.c:116 +#: lib/utils_pbkdf.c:105 msgid "Requested PBKDF target time cannot be zero." msgstr "" -#: lib/utils_pbkdf.c:122 +#: lib/utils_pbkdf.c:111 #, c-format msgid "Unknown PBKDF type %s." msgstr "" -#: lib/utils_pbkdf.c:127 +#: lib/utils_pbkdf.c:116 #, c-format msgid "Requested hash %s is not supported." msgstr "" -#: lib/utils_pbkdf.c:138 +#: lib/utils_pbkdf.c:127 msgid "Requested PBKDF type is not supported for LUKS1." msgstr "" -#: lib/utils_pbkdf.c:144 +#: lib/utils_pbkdf.c:133 msgid "PBKDF max memory or parallel threads must not be set with pbkdf2." msgstr "" -#: lib/utils_pbkdf.c:149 lib/utils_pbkdf.c:159 +#: lib/utils_pbkdf.c:138 lib/utils_pbkdf.c:148 #, c-format msgid "Forced iteration count is too low for %s (minimum is %u)." msgstr "" -#: lib/utils_pbkdf.c:164 +#: lib/utils_pbkdf.c:153 #, c-format msgid "Forced memory cost is too low for %s (minimum is %u kilobytes)." msgstr "" -#: lib/utils_pbkdf.c:171 +#: lib/utils_pbkdf.c:160 #, c-format msgid "" "Requested maximum PBKDF memory cost is too high (maximum is %d kilobytes)." msgstr "" -#: lib/utils_pbkdf.c:176 +#: lib/utils_pbkdf.c:165 +msgid "" +"Requested maximum PBKDF memory cost is too high (limited by the integer " +"maximal size)." +msgstr "" + +#: lib/utils_pbkdf.c:169 msgid "Requested maximum PBKDF memory cannot be zero." msgstr "" -#: lib/utils_pbkdf.c:180 +#: lib/utils_pbkdf.c:173 msgid "Requested PBKDF parallel threads cannot be zero." msgstr "" -#: lib/utils_pbkdf.c:200 +#: lib/utils_pbkdf.c:193 msgid "Only PBKDF2 is supported in FIPS mode." msgstr "" -#: lib/utils_benchmark.c:184 +#: lib/utils_benchmark.c:171 msgid "PBKDF benchmark disabled but iterations not set." msgstr "" -#: lib/utils_benchmark.c:203 +#: lib/utils_benchmark.c:190 #, c-format msgid "Not compatible PBKDF2 options (using hash algorithm %s)." msgstr "" -#: lib/utils_benchmark.c:223 +#: lib/utils_benchmark.c:210 msgid "Not compatible PBKDF options." msgstr "" -#: lib/utils_device_locking.c:101 +#: lib/utils_device_locking.c:88 #, c-format msgid "" "Locking aborted. The locking path %s/%s is unusable (not a directory or " "missing)." msgstr "" -#: lib/utils_device_locking.c:118 +#: lib/utils_device_locking.c:105 #, c-format msgid "" "Locking aborted. The locking path %s/%s is unusable (%s is not a directory)." msgstr "" -#: lib/utils_wipe.c:156 lib/utils_wipe.c:227 src/utils_reencrypt_luks1.c:734 -#: src/utils_reencrypt_luks1.c:832 +#: lib/utils_wipe.c:143 lib/utils_wipe.c:218 src/utils_reencrypt_luks1.c:700 +#: src/utils_reencrypt_luks1.c:793 msgid "Cannot seek to device offset." msgstr "" -#: lib/utils_wipe.c:249 +#: lib/utils_wipe.c:240 #, c-format msgid "Device wipe error, offset %." msgstr "" -#: lib/utils_wipe.c:344 +#: lib/utils_wipe.c:332 msgid "Incorrect OPAL PSID." msgstr "" -#: lib/utils_wipe.c:346 +#: lib/utils_wipe.c:334 msgid "Cannot erase OPAL device." msgstr "" -#: lib/luks1/keyencryption.c:39 +#: lib/luks1/keyencryption.c:26 #, c-format msgid "" "Failed to setup dm-crypt key mapping for device %s.\n" "Check that kernel supports %s cipher (check syslog for more info)." msgstr "" -#: lib/luks1/keyencryption.c:44 +#: lib/luks1/keyencryption.c:31 msgid "Key size in XTS mode must be 256 or 512 bits." msgstr "" -#: lib/luks1/keyencryption.c:46 +#: lib/luks1/keyencryption.c:33 msgid "Cipher specification should be in [cipher]-[mode]-[iv] format." msgstr "" -#: lib/luks1/keyencryption.c:97 lib/luks1/keymanage.c:366 -#: lib/luks1/keymanage.c:677 lib/luks1/keymanage.c:1132 -#: lib/luks2/luks2_json_metadata.c:1528 lib/luks2/luks2_keyslot.c:712 +#: lib/luks1/keyencryption.c:84 lib/luks1/keymanage.c:353 +#: lib/luks1/keymanage.c:664 lib/luks1/keymanage.c:1150 +#: lib/luks2/luks2_json_metadata.c:1514 lib/luks2/luks2_keyslot.c:711 #, c-format msgid "Cannot write to device %s, permission denied." msgstr "" -#: lib/luks1/keyencryption.c:120 +#: lib/luks1/keyencryption.c:107 msgid "Failed to open temporary keystore device." msgstr "" -#: lib/luks1/keyencryption.c:127 +#: lib/luks1/keyencryption.c:114 msgid "Failed to access temporary keystore device." msgstr "" -#: lib/luks1/keyencryption.c:200 lib/luks2/luks2_keyslot_luks2.c:62 -#: lib/luks2/luks2_keyslot_luks2.c:80 lib/luks2/luks2_keyslot_reenc.c:197 +#: lib/luks1/keyencryption.c:188 lib/luks2/luks2_keyslot_luks2.c:49 +#: lib/luks2/luks2_keyslot_luks2.c:67 lib/luks2/luks2_keyslot_reenc.c:184 msgid "IO error while encrypting keyslot." msgstr "" -#: lib/luks1/keyencryption.c:246 lib/luks1/keymanage.c:369 -#: lib/luks1/keymanage.c:630 lib/luks1/keymanage.c:680 lib/tcrypt/tcrypt.c:681 -#: lib/fvault2/fvault2.c:877 lib/verity/verity.c:80 lib/verity/verity.c:196 -#: lib/verity/verity_hash.c:320 lib/verity/verity_hash.c:329 -#: lib/verity/verity_hash.c:349 lib/verity/verity_fec.c:260 -#: lib/verity/verity_fec.c:272 lib/verity/verity_fec.c:277 -#: lib/luks2/luks2_json_metadata.c:1531 src/utils_reencrypt_luks1.c:121 -#: src/utils_reencrypt_luks1.c:133 +#: lib/luks1/keyencryption.c:235 lib/luks1/keymanage.c:356 +#: lib/luks1/keymanage.c:617 lib/luks1/keymanage.c:667 lib/tcrypt/tcrypt.c:668 +#: lib/fvault2/fvault2.c:870 lib/verity/verity.c:67 lib/verity/verity.c:183 +#: lib/verity/verity_hash.c:312 lib/verity/verity_hash.c:321 +#: lib/verity/verity_hash.c:341 lib/verity/verity_fec.c:247 +#: lib/verity/verity_fec.c:259 lib/verity/verity_fec.c:264 +#: lib/luks2/luks2_json_metadata.c:1517 src/utils_reencrypt_luks1.c:108 +#: src/utils_reencrypt_luks1.c:120 #, c-format msgid "Cannot open device %s." msgstr "" -#: lib/luks1/keyencryption.c:257 lib/luks2/luks2_keyslot_luks2.c:139 +#: lib/luks1/keyencryption.c:246 lib/luks2/luks2_keyslot_luks2.c:128 msgid "IO error while decrypting keyslot." msgstr "" -#: lib/luks1/keymanage.c:130 +#: lib/luks1/keymanage.c:117 #, c-format msgid "Device %s is too small. (LUKS1 requires at least % bytes.)" msgstr "" -#: lib/luks1/keymanage.c:151 lib/luks1/keymanage.c:159 -#: lib/luks1/keymanage.c:171 lib/luks1/keymanage.c:182 -#: lib/luks1/keymanage.c:194 +#: lib/luks1/keymanage.c:138 lib/luks1/keymanage.c:146 +#: lib/luks1/keymanage.c:158 lib/luks1/keymanage.c:169 +#: lib/luks1/keymanage.c:181 #, c-format msgid "LUKS keyslot %u is invalid." msgstr "" -#: lib/luks1/keymanage.c:267 lib/luks2/luks2_json_metadata.c:1391 +#: lib/luks1/keymanage.c:254 lib/luks2/luks2_json_metadata.c:1378 #, c-format msgid "Requested header backup file %s already exists." msgstr "" -#: lib/luks1/keymanage.c:269 lib/luks2/luks2_json_metadata.c:1393 +#: lib/luks1/keymanage.c:256 lib/luks2/luks2_json_metadata.c:1380 #, c-format msgid "Cannot create header backup file %s." msgstr "" -#: lib/luks1/keymanage.c:276 lib/luks2/luks2_json_metadata.c:1400 +#: lib/luks1/keymanage.c:263 lib/luks2/luks2_json_metadata.c:1387 #, c-format msgid "Cannot write header backup file %s." msgstr "" -#: lib/luks1/keymanage.c:308 lib/luks2/luks2_json_metadata.c:1437 +#: lib/luks1/keymanage.c:295 lib/luks2/luks2_json_metadata.c:1424 msgid "Backup file does not contain valid LUKS header." msgstr "" -#: lib/luks1/keymanage.c:321 lib/luks1/keymanage.c:593 -#: lib/luks2/luks2_json_metadata.c:1458 +#: lib/luks1/keymanage.c:308 lib/luks1/keymanage.c:580 +#: lib/luks2/luks2_json_metadata.c:1446 #, c-format msgid "Cannot open header backup file %s." msgstr "" -#: lib/luks1/keymanage.c:329 lib/luks2/luks2_json_metadata.c:1466 +#: lib/luks1/keymanage.c:316 lib/luks2/luks2_json_metadata.c:1454 #, c-format msgid "Cannot read header backup file %s." msgstr "" -#: lib/luks1/keymanage.c:339 +#: lib/luks1/keymanage.c:326 msgid "Data offset or key size differs on device and backup, restore failed." msgstr "" -#: lib/luks1/keymanage.c:347 +#: lib/luks1/keymanage.c:334 #, c-format msgid "Device %s %s%s" msgstr "" -#: lib/luks1/keymanage.c:348 +#: lib/luks1/keymanage.c:335 msgid "" "does not contain LUKS header. Replacing header can destroy data on that " "device." msgstr "" -#: lib/luks1/keymanage.c:349 +#: lib/luks1/keymanage.c:336 msgid "" "already contains LUKS header. Replacing header will destroy existing " "keyslots." msgstr "" -#: lib/luks1/keymanage.c:350 lib/luks2/luks2_json_metadata.c:1500 +#: lib/luks1/keymanage.c:337 lib/luks2/luks2_json_metadata.c:1486 msgid "" "\n" "WARNING: real device header has different UUID than backup!" msgstr "" -#: lib/luks1/keymanage.c:398 +#: lib/luks1/keymanage.c:385 msgid "Non standard key size, manual repair required." msgstr "" -#: lib/luks1/keymanage.c:408 +#: lib/luks1/keymanage.c:395 msgid "Non standard keyslots alignment, manual repair required." msgstr "" -#: lib/luks1/keymanage.c:417 +#: lib/luks1/keymanage.c:404 #, c-format msgid "Cipher mode repaired (%s -> %s)." msgstr "" -#: lib/luks1/keymanage.c:428 +#: lib/luks1/keymanage.c:415 #, c-format msgid "Cipher hash repaired to lowercase (%s)." msgstr "" -#: lib/luks1/keymanage.c:430 lib/luks1/keymanage.c:536 -#: lib/luks1/keymanage.c:792 +#: lib/luks1/keymanage.c:417 lib/luks1/keymanage.c:523 +#: lib/luks1/keymanage.c:777 #, c-format msgid "Requested LUKS hash %s is not supported." msgstr "" -#: lib/luks1/keymanage.c:444 +#: lib/luks1/keymanage.c:431 msgid "Repairing keyslots." msgstr "" -#: lib/luks1/keymanage.c:463 +#: lib/luks1/keymanage.c:450 #, c-format msgid "Keyslot %i: offset repaired (%u -> %u)." msgstr "" -#: lib/luks1/keymanage.c:471 +#: lib/luks1/keymanage.c:458 #, c-format msgid "Keyslot %i: stripes repaired (%u -> %u)." msgstr "" -#: lib/luks1/keymanage.c:480 +#: lib/luks1/keymanage.c:467 #, c-format msgid "Keyslot %i: bogus partition signature." msgstr "" -#: lib/luks1/keymanage.c:485 +#: lib/luks1/keymanage.c:472 #, c-format msgid "Keyslot %i: salt wiped." msgstr "" -#: lib/luks1/keymanage.c:502 +#: lib/luks1/keymanage.c:489 msgid "Writing LUKS header to disk." msgstr "" -#: lib/luks1/keymanage.c:507 +#: lib/luks1/keymanage.c:494 msgid "Repair failed." msgstr "" -#: lib/luks1/keymanage.c:562 +#: lib/luks1/keymanage.c:549 #, c-format msgid "LUKS cipher mode %s is invalid." msgstr "" -#: lib/luks1/keymanage.c:567 +#: lib/luks1/keymanage.c:554 #, c-format msgid "LUKS hash %s is invalid." msgstr "" -#: lib/luks1/keymanage.c:574 src/cryptsetup.c:1360 +#: lib/luks1/keymanage.c:561 src/cryptsetup.c:1360 msgid "No known problems detected for LUKS header." msgstr "" -#: lib/luks1/keymanage.c:702 +#: lib/luks1/keymanage.c:689 #, c-format msgid "Error during update of LUKS header on device %s." msgstr "" -#: lib/luks1/keymanage.c:710 +#: lib/luks1/keymanage.c:697 #, c-format msgid "Error re-reading LUKS header after update on device %s." msgstr "" -#: lib/luks1/keymanage.c:786 +#: lib/luks1/keymanage.c:771 msgid "" "Data offset for LUKS header must be either 0 or higher than header size." msgstr "" -#: lib/luks1/keymanage.c:797 lib/luks1/keymanage.c:866 -#: lib/luks2/luks2_json_format.c:243 lib/luks2/luks2_json_metadata.c:1274 -#: src/utils_reencrypt.c:554 +#: lib/luks1/keymanage.c:782 lib/luks1/keymanage.c:853 +#: lib/luks2/luks2_json_format.c:231 lib/luks2/luks2_json_metadata.c:1261 +#: src/utils_reencrypt.c:701 msgid "Wrong LUKS UUID format provided." msgstr "" -#: lib/luks1/keymanage.c:819 +#: lib/luks1/keymanage.c:804 msgid "Cannot create LUKS header: reading random salt failed." msgstr "" -#: lib/luks1/keymanage.c:845 +#: lib/luks1/keymanage.c:832 #, c-format msgid "Cannot create LUKS header: header digest failed (using hash %s)." msgstr "" -#: lib/luks1/keymanage.c:889 +#: lib/luks1/keymanage.c:877 #, c-format msgid "Key slot %d active, purge first." msgstr "" -#: lib/luks1/keymanage.c:895 +#: lib/luks1/keymanage.c:883 #, c-format msgid "Key slot %d material includes too few stripes. Header manipulation?" msgstr "" -#: lib/luks1/keymanage.c:931 lib/luks2/luks2_keyslot_luks2.c:270 +#: lib/luks1/keymanage.c:921 lib/luks2/luks2_keyslot_luks2.c:260 msgid "PBKDF2 iteration value overflow." msgstr "" @@ -1148,1158 +1194,1179 @@ msgstr "" msgid "Cannot open keyslot (using hash %s)." msgstr "" -#: lib/luks1/keymanage.c:1118 +#: lib/luks1/keymanage.c:1136 #, c-format msgid "Key slot %d is invalid, please select keyslot between 0 and %d." msgstr "" -#: lib/luks1/keymanage.c:1136 lib/luks2/luks2_keyslot.c:716 +#: lib/luks1/keymanage.c:1154 lib/luks2/luks2_keyslot.c:715 #, c-format msgid "Cannot wipe device %s." msgstr "" -#: lib/loopaes/loopaes.c:146 +#: lib/loopaes/loopaes.c:140 msgid "Detected not yet supported GPG encrypted keyfile." msgstr "" -#: lib/loopaes/loopaes.c:147 +#: lib/loopaes/loopaes.c:141 msgid "Please use gpg --decrypt | cryptsetup --keyfile=- ...\n" msgstr "" -#: lib/loopaes/loopaes.c:168 lib/loopaes/loopaes.c:188 +#: lib/loopaes/loopaes.c:162 lib/loopaes/loopaes.c:182 msgid "Incompatible loop-AES keyfile detected." msgstr "" -#: lib/loopaes/loopaes.c:245 +#: lib/loopaes/loopaes.c:238 msgid "Kernel does not support loop-AES compatible mapping." msgstr "" -#: lib/tcrypt/tcrypt.c:510 +#: lib/tcrypt/tcrypt.c:497 #, c-format msgid "Error reading keyfile %s." msgstr "" -#: lib/tcrypt/tcrypt.c:560 +#: lib/tcrypt/tcrypt.c:547 #, c-format msgid "Maximum TCRYPT passphrase length (%zu) exceeded." msgstr "" -#: lib/tcrypt/tcrypt.c:602 +#: lib/tcrypt/tcrypt.c:589 #, c-format msgid "PBKDF2 hash algorithm %s not available, skipping." msgstr "" -#: lib/tcrypt/tcrypt.c:621 src/cryptsetup.c:1235 +#: lib/tcrypt/tcrypt.c:608 src/cryptsetup.c:1233 msgid "Required kernel crypto interface not available." msgstr "" -#: lib/tcrypt/tcrypt.c:623 src/cryptsetup.c:1237 +#: lib/tcrypt/tcrypt.c:610 src/cryptsetup.c:1235 msgid "Ensure you have algif_skcipher kernel module loaded." msgstr "" -#: lib/tcrypt/tcrypt.c:764 +#: lib/tcrypt/tcrypt.c:752 #, c-format msgid "Activation is not supported for %d sector size." msgstr "" -#: lib/tcrypt/tcrypt.c:770 +#: lib/tcrypt/tcrypt.c:758 msgid "Kernel does not support activation for this TCRYPT legacy mode." msgstr "" -#: lib/tcrypt/tcrypt.c:801 +#: lib/tcrypt/tcrypt.c:813 #, c-format msgid "Activating TCRYPT system encryption for partition %s." msgstr "" -#: lib/tcrypt/tcrypt.c:884 +#: lib/tcrypt/tcrypt.c:828 +msgid "" +"Cannot determine TCRYPT system partition offset, activating whole encrypted " +"area." +msgstr "" + +#: lib/tcrypt/tcrypt.c:837 +msgid "" +"Cannot determine TCRYPT system partition offset, activating device as a " +"system partition." +msgstr "" + +#: lib/tcrypt/tcrypt.c:917 msgid "Kernel does not support TCRYPT compatible mapping." msgstr "" -#: lib/tcrypt/tcrypt.c:1097 +#: lib/tcrypt/tcrypt.c:1126 msgid "This function is not supported without TCRYPT header load." msgstr "" -#: lib/bitlk/bitlk.c:278 +#: lib/bitlk/bitlk.c:265 #, c-format msgid "" "Unexpected metadata entry type '%u' found when parsing supported Volume " "Master Key." msgstr "" -#: lib/bitlk/bitlk.c:337 +#: lib/bitlk/bitlk.c:327 msgid "Invalid string found when parsing Volume Master Key." msgstr "" -#: lib/bitlk/bitlk.c:341 +#: lib/bitlk/bitlk.c:331 #, c-format msgid "" "Unexpected string ('%s') found when parsing supported Volume Master Key." msgstr "" -#: lib/bitlk/bitlk.c:358 +#: lib/bitlk/bitlk.c:351 #, c-format msgid "" "Unexpected metadata entry value '%u' found when parsing supported Volume " "Master Key." msgstr "" -#: lib/bitlk/bitlk.c:460 +#: lib/bitlk/bitlk.c:450 msgid "BITLK version 1 is currently not supported." msgstr "" -#: lib/bitlk/bitlk.c:466 +#: lib/bitlk/bitlk.c:456 msgid "Invalid or unknown boot signature for BITLK device." msgstr "" -#: lib/bitlk/bitlk.c:478 +#: lib/bitlk/bitlk.c:468 #, c-format msgid "Unsupported sector size %." msgstr "" -#: lib/bitlk/bitlk.c:486 +#: lib/bitlk/bitlk.c:476 #, c-format msgid "Failed to read BITLK header from %s." msgstr "" -#: lib/bitlk/bitlk.c:511 +#: lib/bitlk/bitlk.c:501 #, c-format msgid "Failed to read BITLK FVE metadata from %s." msgstr "" -#: lib/bitlk/bitlk.c:562 +#: lib/bitlk/bitlk.c:552 msgid "Unknown or unsupported encryption type." msgstr "" -#: lib/bitlk/bitlk.c:602 +#: lib/bitlk/bitlk.c:592 #, c-format msgid "Failed to read BITLK metadata entries from %s." msgstr "" -#: lib/bitlk/bitlk.c:719 +#: lib/bitlk/bitlk.c:709 msgid "Failed to convert BITLK volume description" msgstr "" -#: lib/bitlk/bitlk.c:884 +#: lib/bitlk/bitlk.c:872 #, c-format msgid "Unexpected metadata entry type '%u' found when parsing external key." msgstr "" -#: lib/bitlk/bitlk.c:907 +#: lib/bitlk/bitlk.c:895 #, c-format msgid "BEK file GUID '%s' does not match GUID of the volume." msgstr "" -#: lib/bitlk/bitlk.c:911 +#: lib/bitlk/bitlk.c:899 #, c-format msgid "Unexpected metadata entry value '%u' found when parsing external key." msgstr "" -#: lib/bitlk/bitlk.c:950 +#: lib/bitlk/bitlk.c:938 #, c-format msgid "Unsupported BEK metadata version %" msgstr "" -#: lib/bitlk/bitlk.c:955 +#: lib/bitlk/bitlk.c:943 #, c-format msgid "Unexpected BEK metadata size % does not match BEK file length" msgstr "" -#: lib/bitlk/bitlk.c:981 +#: lib/bitlk/bitlk.c:969 msgid "Unexpected metadata entry found when parsing startup key." msgstr "" -#: lib/bitlk/bitlk.c:1076 +#: lib/bitlk/bitlk.c:1067 msgid "This operation is not supported." msgstr "" -#: lib/bitlk/bitlk.c:1084 +#: lib/bitlk/bitlk.c:1075 msgid "Unexpected key data size." msgstr "" -#: lib/bitlk/bitlk.c:1210 +#: lib/bitlk/bitlk.c:1203 msgid "This BITLK device is in an unsupported state and cannot be activated." msgstr "" -#: lib/bitlk/bitlk.c:1215 +#: lib/bitlk/bitlk.c:1208 #, c-format msgid "BITLK devices with type '%s' cannot be activated." msgstr "" -#: lib/bitlk/bitlk.c:1222 -msgid "Activation of partially decrypted BITLK device is not supported." +#: lib/bitlk/bitlk.c:1215 +msgid "Activation of BITLK device with clear key protection is not supported." msgstr "" -#: lib/bitlk/bitlk.c:1263 +#: lib/bitlk/bitlk.c:1256 #, c-format msgid "" "WARNING: BitLocker volume size % does not match the underlying " "device size %" msgstr "" -#: lib/bitlk/bitlk.c:1390 +#: lib/bitlk/bitlk.c:1383 msgid "" "Cannot activate device, kernel dm-crypt is missing support for BITLK IV." msgstr "" -#: lib/bitlk/bitlk.c:1394 +#: lib/bitlk/bitlk.c:1387 msgid "" "Cannot activate device, kernel dm-crypt is missing support for BITLK " "Elephant diffuser." msgstr "" -#: lib/bitlk/bitlk.c:1398 +#: lib/bitlk/bitlk.c:1391 msgid "" "Cannot activate device, kernel dm-crypt is missing support for large sector " "size." msgstr "" -#: lib/bitlk/bitlk.c:1402 +#: lib/bitlk/bitlk.c:1395 msgid "Cannot activate device, kernel dm-zero module is missing." msgstr "" -#: lib/fvault2/fvault2.c:542 +#: lib/fvault2/fvault2.c:530 #, c-format msgid "Could not read %u bytes of volume header." msgstr "" -#: lib/fvault2/fvault2.c:554 +#: lib/fvault2/fvault2.c:542 #, c-format msgid "Unsupported FVAULT2 version %." msgstr "" -#: lib/verity/verity.c:68 lib/verity/verity.c:182 +#: lib/verity/verity.c:55 lib/verity/verity.c:169 #, c-format msgid "Verity device %s does not use on-disk header." msgstr "" -#: lib/verity/verity.c:96 +#: lib/verity/verity.c:83 #, c-format msgid "Unsupported VERITY version %d." msgstr "" -#: lib/verity/verity.c:131 +#: lib/verity/verity.c:118 msgid "VERITY header corrupted." msgstr "" -#: lib/verity/verity.c:176 +#: lib/verity/verity.c:163 #, c-format msgid "Wrong VERITY UUID format provided on device %s." msgstr "" -#: lib/verity/verity.c:220 +#: lib/verity/verity.c:207 #, c-format msgid "Error during update of verity header on device %s." msgstr "" -#: lib/verity/verity.c:274 +#: lib/verity/verity.c:261 msgid "Root hash signature verification is not supported." msgstr "" -#: lib/verity/verity.c:279 +#: lib/verity/verity.c:266 msgid "Root hash signature required." msgstr "" -#: lib/verity/verity.c:294 +#: lib/verity/verity.c:282 msgid "Errors cannot be repaired with FEC device." msgstr "" -#: lib/verity/verity.c:296 +#: lib/verity/verity.c:284 #, c-format msgid "Found %u repairable errors with FEC device." msgstr "" -#: lib/verity/verity.c:377 +#: lib/verity/verity.c:368 msgid "Kernel does not support dm-verity mapping." msgstr "" -#: lib/verity/verity.c:381 +#: lib/verity/verity.c:372 msgid "Kernel does not support dm-verity signature option." msgstr "" -#: lib/verity/verity.c:392 +#: lib/verity/verity.c:383 msgid "Verity device detected corruption after activation." msgstr "" -#: lib/verity/verity_hash.c:66 +#: lib/verity/verity_hash.c:53 #, c-format msgid "Spare area is not zeroed at position %." msgstr "" -#: lib/verity/verity_hash.c:167 lib/verity/verity_hash.c:300 -#: lib/verity/verity_hash.c:311 +#: lib/verity/verity_hash.c:154 lib/verity/verity_hash.c:287 +#: lib/verity/verity_hash.c:298 msgid "Device offset overflow." msgstr "" -#: lib/verity/verity_hash.c:218 +#: lib/verity/verity_hash.c:205 #, c-format msgid "Verification failed at position %." msgstr "" -#: lib/verity/verity_hash.c:307 +#: lib/verity/verity_hash.c:294 msgid "Hash area overflow." msgstr "" -#: lib/verity/verity_hash.c:380 +#: lib/verity/verity_hash.c:372 msgid "Verification of data area failed." msgstr "" -#: lib/verity/verity_hash.c:385 +#: lib/verity/verity_hash.c:377 msgid "Verification of root hash failed." msgstr "" -#: lib/verity/verity_hash.c:391 +#: lib/verity/verity_hash.c:383 msgid "Input/output error while creating hash area." msgstr "" -#: lib/verity/verity_hash.c:393 +#: lib/verity/verity_hash.c:385 msgid "Creation of hash area failed." msgstr "" -#: lib/verity/verity_hash.c:428 +#: lib/verity/verity_hash.c:420 #, c-format msgid "" "WARNING: Kernel cannot activate device if data block size exceeds page size " "(%u)." msgstr "" -#: lib/verity/verity_fec.c:131 +#: lib/verity/verity_fec.c:118 msgid "Failed to allocate RS context." msgstr "" -#: lib/verity/verity_fec.c:149 +#: lib/verity/verity_fec.c:136 msgid "Failed to allocate buffer." msgstr "" -#: lib/verity/verity_fec.c:159 +#: lib/verity/verity_fec.c:146 #, c-format msgid "Failed to read RS block % byte %d." msgstr "" -#: lib/verity/verity_fec.c:172 +#: lib/verity/verity_fec.c:159 #, c-format msgid "Failed to read parity for RS block %." msgstr "" -#: lib/verity/verity_fec.c:180 +#: lib/verity/verity_fec.c:167 #, c-format msgid "Failed to repair parity for block %." msgstr "" -#: lib/verity/verity_fec.c:192 +#: lib/verity/verity_fec.c:179 #, c-format msgid "Failed to write parity for RS block %." msgstr "" -#: lib/verity/verity_fec.c:208 +#: lib/verity/verity_fec.c:195 msgid "Block sizes must match for FEC." msgstr "" -#: lib/verity/verity_fec.c:214 +#: lib/verity/verity_fec.c:201 msgid "Invalid number of parity bytes." msgstr "" -#: lib/verity/verity_fec.c:248 +#: lib/verity/verity_fec.c:235 msgid "Invalid FEC segment length." msgstr "" -#: lib/verity/verity_fec.c:316 +#: lib/verity/verity_fec.c:303 #, c-format msgid "Failed to determine size for device %s." msgstr "" -#: lib/integrity/integrity.c:57 +#: lib/integrity/integrity.c:50 #, c-format msgid "Incompatible kernel dm-integrity metadata (version %u) detected on %s." msgstr "" -#: lib/integrity/integrity.c:277 lib/integrity/integrity.c:454 +#: lib/integrity/integrity.c:290 lib/integrity/integrity.c:474 msgid "Kernel does not support dm-integrity mapping." msgstr "" -#: lib/integrity/integrity.c:283 +#: lib/integrity/integrity.c:296 msgid "Kernel does not support dm-integrity fixed metadata alignment." msgstr "" -#: lib/integrity/integrity.c:292 +#: lib/integrity/integrity.c:305 msgid "" "Kernel refuses to activate insecure recalculate option (see legacy " "activation options to override)." msgstr "" -#: lib/luks2/luks2_disk_metadata.c:392 lib/luks2/luks2_json_metadata.c:1197 -#: lib/luks2/luks2_json_metadata.c:1520 +#: lib/integrity/integrity.c:311 +msgid "Kernel does not support dm-integrity inline mode." +msgstr "" + +#: lib/luks2/luks2_disk_metadata.c:382 lib/luks2/luks2_json_metadata.c:1184 +#: lib/luks2/luks2_json_metadata.c:1506 #, c-format msgid "Failed to acquire write lock on device %s." msgstr "" -#: lib/luks2/luks2_disk_metadata.c:401 +#: lib/luks2/luks2_disk_metadata.c:391 msgid "" "Detected attempt for concurrent LUKS2 metadata update. Aborting operation." msgstr "" -#: lib/luks2/luks2_disk_metadata.c:710 lib/luks2/luks2_disk_metadata.c:731 +#: lib/luks2/luks2_disk_metadata.c:726 lib/luks2/luks2_disk_metadata.c:747 msgid "" "Device contains ambiguous signatures, cannot auto-recover LUKS2.\n" "Please run \"cryptsetup repair\" for recovery." msgstr "" -#: lib/luks2/luks2_json_format.c:231 +#: lib/luks2/luks2_json_format.c:219 #, c-format msgid "" "WARNING: keyslots area (% bytes) is very small, available LUKS2 " "keyslot count is very limited.\n" msgstr "" -#: lib/luks2/luks2_json_format.c:427 +#: lib/luks2/luks2_json_format.c:418 msgid "Requested data offset is too small." msgstr "" -#: lib/luks2/luks2_json_format.c:468 +#: lib/luks2/luks2_json_format.c:459 #, c-format msgid "WARNING: LUKS2 metadata size changed to % bytes.\n" msgstr "" -#: lib/luks2/luks2_json_format.c:472 +#: lib/luks2/luks2_json_format.c:463 #, c-format msgid "WARNING: LUKS2 keyslots area size changed to % bytes.\n" msgstr "" -#: lib/luks2/luks2_json_metadata.c:1184 lib/luks2/luks2_json_metadata.c:1366 -#: lib/luks2/luks2_json_metadata.c:1426 lib/luks2/luks2_keyslot_luks2.c:94 -#: lib/luks2/luks2_keyslot_luks2.c:116 +#: lib/luks2/luks2_json_metadata.c:1171 lib/luks2/luks2_json_metadata.c:1353 +#: lib/luks2/luks2_json_metadata.c:1413 lib/luks2/luks2_keyslot_luks2.c:81 +#: lib/luks2/luks2_keyslot_luks2.c:105 #, c-format msgid "Failed to acquire read lock on device %s." msgstr "" -#: lib/luks2/luks2_json_metadata.c:1443 +#: lib/luks2/luks2_json_metadata.c:1431 #, c-format msgid "Forbidden LUKS2 requirements detected in backup %s." msgstr "" -#: lib/luks2/luks2_json_metadata.c:1484 +#: lib/luks2/luks2_json_metadata.c:1470 msgid "Data offset differ on device and backup, restore failed." msgstr "" -#: lib/luks2/luks2_json_metadata.c:1490 +#: lib/luks2/luks2_json_metadata.c:1476 msgid "" "Binary header with keyslot areas size differ on device and backup, restore " "failed." msgstr "" -#: lib/luks2/luks2_json_metadata.c:1497 +#: lib/luks2/luks2_json_metadata.c:1483 #, c-format msgid "Device %s %s%s%s%s" msgstr "" -#: lib/luks2/luks2_json_metadata.c:1498 +#: lib/luks2/luks2_json_metadata.c:1484 msgid "" "does not contain LUKS2 header. Replacing header can destroy data on that " "device." msgstr "" -#: lib/luks2/luks2_json_metadata.c:1499 +#: lib/luks2/luks2_json_metadata.c:1485 msgid "" "already contains LUKS2 header. Replacing header will destroy existing " "keyslots." msgstr "" -#: lib/luks2/luks2_json_metadata.c:1501 +#: lib/luks2/luks2_json_metadata.c:1487 msgid "" "\n" "WARNING: unknown LUKS2 requirements detected in real device header!\n" "Replacing header with backup may corrupt the data on that device!" msgstr "" -#: lib/luks2/luks2_json_metadata.c:1503 +#: lib/luks2/luks2_json_metadata.c:1489 msgid "" "\n" "WARNING: Unfinished offline reencryption detected on the device!\n" "Replacing header with backup may corrupt data." msgstr "" -#: lib/luks2/luks2_json_metadata.c:1600 +#: lib/luks2/luks2_json_metadata.c:1587 #, c-format msgid "Ignored unknown flag %s." msgstr "" -#: lib/luks2/luks2_json_metadata.c:2525 lib/luks2/luks2_reencrypt.c:2105 +#: lib/luks2/luks2_json_metadata.c:2541 lib/luks2/luks2_reencrypt.c:2105 #, c-format msgid "Missing key for dm-crypt segment %u" msgstr "" -#: lib/luks2/luks2_json_metadata.c:2537 lib/luks2/luks2_reencrypt.c:2119 +#: lib/luks2/luks2_json_metadata.c:2553 lib/luks2/luks2_reencrypt.c:2118 msgid "Failed to set dm-crypt segment." msgstr "" -#: lib/luks2/luks2_json_metadata.c:2543 lib/luks2/luks2_reencrypt.c:2125 +#: lib/luks2/luks2_json_metadata.c:2559 lib/luks2/luks2_reencrypt.c:2124 msgid "Failed to set dm-linear segment." msgstr "" -#: lib/luks2/luks2_json_metadata.c:2662 src/utils_reencrypt.c:433 +#: lib/luks2/luks2_json_metadata.c:2679 src/utils_reencrypt.c:578 msgid "No known cipher specification pattern detected in LUKS2 header." msgstr "" -#: lib/luks2/luks2_json_metadata.c:2670 +#: lib/luks2/luks2_json_metadata.c:2687 msgid "OPAL device must have static device size." msgstr "" -#: lib/luks2/luks2_json_metadata.c:2690 +#: lib/luks2/luks2_json_metadata.c:2707 msgid "" "Encrypted OPAL device with integrity must be smaller than locking range." msgstr "" -#: lib/luks2/luks2_json_metadata.c:2695 +#: lib/luks2/luks2_json_metadata.c:2712 msgid "OPAL device must have same size as locking range." msgstr "" -#: lib/luks2/luks2_json_metadata.c:2715 +#: lib/luks2/luks2_json_metadata.c:2732 #, c-format msgid "OPAL device is %s already unlocked.\n" msgstr "" -#: lib/luks2/luks2_json_metadata.c:2748 +#: lib/luks2/luks2_json_metadata.c:2771 msgid "Unsupported device integrity configuration." msgstr "" -#: lib/luks2/luks2_json_metadata.c:2764 +#: lib/luks2/luks2_json_metadata.c:2787 msgid "Underlying dm-integrity device with unexpected provided data sectors." msgstr "" -#: lib/luks2/luks2_json_metadata.c:2859 +#: lib/luks2/luks2_json_metadata.c:2882 msgid "Reencryption in-progress. Cannot deactivate device." msgstr "" -#: lib/luks2/luks2_json_metadata.c:2870 lib/luks2/luks2_reencrypt.c:4174 +#: lib/luks2/luks2_json_metadata.c:2893 lib/luks2/luks2_reencrypt.c:4274 #, c-format msgid "Failed to replace suspended device %s with dm-error target." msgstr "" -#: lib/luks2/luks2_json_metadata.c:2939 lib/luks2/luks2_json_metadata.c:2961 +#: lib/luks2/luks2_json_metadata.c:2972 lib/luks2/luks2_json_metadata.c:2994 #, c-format msgid "Device %s was deactivated but hardware OPAL device cannot be locked." msgstr "" -#: lib/luks2/luks2_json_metadata.c:2980 -msgid "Failed to read LUKS2 requirements." -msgstr "" - -#: lib/luks2/luks2_json_metadata.c:2987 +#: lib/luks2/luks2_json_metadata.c:3016 msgid "Unmet LUKS2 requirements detected." msgstr "" -#: lib/luks2/luks2_json_metadata.c:2995 +#: lib/luks2/luks2_json_metadata.c:3024 msgid "" "Operation incompatible with device marked for legacy reencryption. Aborting." msgstr "" -#: lib/luks2/luks2_json_metadata.c:2997 +#: lib/luks2/luks2_json_metadata.c:3026 msgid "" "Operation incompatible with device marked for LUKS2 reencryption. Aborting." msgstr "" -#: lib/luks2/luks2_json_metadata.c:2999 +#: lib/luks2/luks2_json_metadata.c:3028 msgid "Operation incompatible with device using OPAL. Aborting." msgstr "" -#: lib/luks2/luks2_keyslot.c:563 lib/luks2/luks2_keyslot.c:602 +#: lib/luks2/luks2_json_metadata.c:3030 +msgid "Operation incompatible with device using inline HW tags. Aborting." +msgstr "" + +#: lib/luks2/luks2_keyslot.c:543 lib/luks2/luks2_keyslot.c:601 msgid "Not enough available memory to open a keyslot." msgstr "" -#: lib/luks2/luks2_keyslot.c:565 lib/luks2/luks2_keyslot.c:604 +#: lib/luks2/luks2_keyslot.c:545 lib/luks2/luks2_keyslot.c:603 msgid "Keyslot open failed." msgstr "" -#: lib/luks2/luks2_keyslot_luks2.c:55 lib/luks2/luks2_keyslot_luks2.c:110 +#: lib/luks2/luks2_keyslot_luks2.c:42 lib/luks2/luks2_keyslot_luks2.c:99 #, c-format msgid "Cannot use %s-%s cipher for keyslot encryption." msgstr "" -#: lib/luks2/luks2_keyslot_luks2.c:285 lib/luks2/luks2_keyslot_luks2.c:404 -#: lib/luks2/luks2_keyslot_reenc.c:447 lib/luks2/luks2_reencrypt.c:2729 +#: lib/luks2/luks2_keyslot_luks2.c:262 +msgid "Not enough memory for keyslot key derivation." +msgstr "" + +#: lib/luks2/luks2_keyslot_luks2.c:276 lib/luks2/luks2_keyslot_luks2.c:401 +#: lib/luks2/luks2_keyslot_reenc.c:434 lib/luks2/luks2_reencrypt.c:2725 #, c-format msgid "Hash algorithm %s is not available." msgstr "" -#: lib/luks2/luks2_keyslot_luks2.c:371 -msgid "" -"Warning: keyslot operation could fail as it requires more than available " -"memory.\n" -msgstr "" - -#: lib/luks2/luks2_keyslot_luks2.c:520 +#: lib/luks2/luks2_keyslot_luks2.c:518 msgid "No space for new keyslot." msgstr "" -#: lib/luks2/luks2_keyslot_reenc.c:596 +#: lib/luks2/luks2_keyslot_reenc.c:583 msgid "Invalid reencryption resilience mode change requested." msgstr "" -#: lib/luks2/luks2_keyslot_reenc.c:717 +#: lib/luks2/luks2_keyslot_reenc.c:704 #, c-format msgid "" "Can not update resilience type. New type only provides % bytes, " "required space is: % bytes." msgstr "" -#: lib/luks2/luks2_keyslot_reenc.c:727 +#: lib/luks2/luks2_keyslot_reenc.c:714 msgid "Failed to refresh reencryption verification digest." msgstr "" -#: lib/luks2/luks2_luks1_convert.c:545 +#: lib/luks2/luks2_luks1_convert.c:532 #, c-format msgid "Cannot check status of device with uuid: %s." msgstr "" -#: lib/luks2/luks2_luks1_convert.c:571 +#: lib/luks2/luks2_luks1_convert.c:558 msgid "Unable to convert header with LUKSMETA additional metadata." msgstr "" -#: lib/luks2/luks2_luks1_convert.c:602 lib/luks2/luks2_reencrypt.c:3810 +#: lib/luks2/luks2_luks1_convert.c:590 lib/luks2/luks2_reencrypt.c:3882 #, c-format msgid "Unable to use cipher specification %s-%s for LUKS2." msgstr "" -#: lib/luks2/luks2_luks1_convert.c:617 +#: lib/luks2/luks2_luks1_convert.c:599 +#, c-format +msgid "Unable to use cipher specification %s-%s for LUKS2 keyslot." +msgstr "" + +#: lib/luks2/luks2_luks1_convert.c:614 msgid "Unable to move keyslot area. Not enough space." msgstr "" -#: lib/luks2/luks2_luks1_convert.c:652 +#: lib/luks2/luks2_luks1_convert.c:653 msgid "Cannot convert to LUKS2 format - invalid metadata." msgstr "" -#: lib/luks2/luks2_luks1_convert.c:669 +#: lib/luks2/luks2_luks1_convert.c:670 msgid "Unable to move keyslot area. LUKS2 keyslots area too small." msgstr "" -#: lib/luks2/luks2_luks1_convert.c:675 lib/luks2/luks2_luks1_convert.c:969 +#: lib/luks2/luks2_luks1_convert.c:676 lib/luks2/luks2_luks1_convert.c:1006 msgid "Unable to move keyslot area." msgstr "" -#: lib/luks2/luks2_luks1_convert.c:765 +#: lib/luks2/luks2_luks1_convert.c:791 msgid "" "Cannot convert to LUKS1 format - default segment encryption sector size is " "not 512 bytes." msgstr "" -#: lib/luks2/luks2_luks1_convert.c:773 +#: lib/luks2/luks2_luks1_convert.c:799 msgid "" "Cannot convert to LUKS1 format - key slot digests are not LUKS1 compatible." msgstr "" -#: lib/luks2/luks2_luks1_convert.c:785 +#: lib/luks2/luks2_luks1_convert.c:813 #, c-format msgid "Cannot convert to LUKS1 format - device uses wrapped key cipher %s." msgstr "" -#: lib/luks2/luks2_luks1_convert.c:790 +#: lib/luks2/luks2_luks1_convert.c:818 msgid "Cannot convert to LUKS1 format - device uses more segments." msgstr "" -#: lib/luks2/luks2_luks1_convert.c:798 +#: lib/luks2/luks2_luks1_convert.c:826 #, c-format msgid "Cannot convert to LUKS1 format - LUKS2 header contains %u token(s)." msgstr "" -#: lib/luks2/luks2_luks1_convert.c:812 +#: lib/luks2/luks2_luks1_convert.c:832 +msgid "Cannot convert to LUKS1 format - there are no active keyslots." +msgstr "" + +#: lib/luks2/luks2_luks1_convert.c:844 #, c-format msgid "Cannot convert to LUKS1 format - keyslot %u is in invalid state." msgstr "" -#: lib/luks2/luks2_luks1_convert.c:817 +#: lib/luks2/luks2_luks1_convert.c:849 +#, c-format +msgid "Cannot convert to LUKS1 format - keyslot %u is unbound." +msgstr "" + +#: lib/luks2/luks2_luks1_convert.c:854 #, c-format msgid "" "Cannot convert to LUKS1 format - slot %u (over maximum slots) is still " "active." msgstr "" -#: lib/luks2/luks2_luks1_convert.c:822 +#: lib/luks2/luks2_luks1_convert.c:859 #, c-format msgid "Cannot convert to LUKS1 format - keyslot %u is not LUKS1 compatible." msgstr "" -#: lib/luks2/luks2_reencrypt.c:1196 +#: lib/luks2/luks2_reencrypt.c:1194 #, c-format msgid "Hotzone size must be multiple of calculated zone alignment (%zu bytes)." msgstr "" -#: lib/luks2/luks2_reencrypt.c:1201 +#: lib/luks2/luks2_reencrypt.c:1199 #, c-format msgid "Device size must be multiple of calculated zone alignment (%zu bytes)." msgstr "" -#: lib/luks2/luks2_reencrypt.c:1408 lib/luks2/luks2_reencrypt.c:1595 -#: lib/luks2/luks2_reencrypt.c:1678 lib/luks2/luks2_reencrypt.c:1720 -#: lib/luks2/luks2_reencrypt.c:3969 +#: lib/luks2/luks2_reencrypt.c:1406 lib/luks2/luks2_reencrypt.c:1592 +#: lib/luks2/luks2_reencrypt.c:1675 lib/luks2/luks2_reencrypt.c:1717 +#: lib/luks2/luks2_reencrypt.c:4069 msgid "Failed to initialize old segment storage wrapper." msgstr "" -#: lib/luks2/luks2_reencrypt.c:1422 lib/luks2/luks2_reencrypt.c:1573 +#: lib/luks2/luks2_reencrypt.c:1420 lib/luks2/luks2_reencrypt.c:1570 msgid "Failed to initialize new segment storage wrapper." msgstr "" -#: lib/luks2/luks2_reencrypt.c:1549 lib/luks2/luks2_reencrypt.c:3981 +#: lib/luks2/luks2_reencrypt.c:1546 lib/luks2/luks2_reencrypt.c:4081 msgid "Failed to initialize hotzone protection." msgstr "" -#: lib/luks2/luks2_reencrypt.c:1622 +#: lib/luks2/luks2_reencrypt.c:1619 msgid "Failed to read checksums for current hotzone." msgstr "" -#: lib/luks2/luks2_reencrypt.c:1629 lib/luks2/luks2_reencrypt.c:3995 +#: lib/luks2/luks2_reencrypt.c:1626 lib/luks2/luks2_reencrypt.c:4095 #, c-format msgid "Failed to read hotzone area starting at %." msgstr "" -#: lib/luks2/luks2_reencrypt.c:1648 +#: lib/luks2/luks2_reencrypt.c:1645 #, c-format msgid "Failed to decrypt sector %zu." msgstr "" -#: lib/luks2/luks2_reencrypt.c:1654 +#: lib/luks2/luks2_reencrypt.c:1651 #, c-format msgid "Failed to recover sector %zu." msgstr "" -#: lib/luks2/luks2_reencrypt.c:2218 +#: lib/luks2/luks2_reencrypt.c:2217 #, c-format msgid "" "Source and target device sizes don't match. Source %, target: " "%." msgstr "" -#: lib/luks2/luks2_reencrypt.c:2316 +#: lib/luks2/luks2_reencrypt.c:2315 #, c-format msgid "Failed to activate hotzone device %s." msgstr "" -#: lib/luks2/luks2_reencrypt.c:2333 +#: lib/luks2/luks2_reencrypt.c:2332 #, c-format msgid "Failed to activate overlay device %s with actual origin table." msgstr "" -#: lib/luks2/luks2_reencrypt.c:2340 +#: lib/luks2/luks2_reencrypt.c:2339 #, c-format msgid "Failed to load new mapping for device %s." msgstr "" -#: lib/luks2/luks2_reencrypt.c:2411 +#: lib/luks2/luks2_reencrypt.c:2410 msgid "Failed to refresh reencryption devices stack." msgstr "" -#: lib/luks2/luks2_reencrypt.c:2611 +#: lib/luks2/luks2_reencrypt.c:2607 msgid "Failed to set new keyslots area size." msgstr "" -#: lib/luks2/luks2_reencrypt.c:2747 +#: lib/luks2/luks2_reencrypt.c:2743 #, c-format msgid "" "Data shift value is not aligned to encryption sector size (% bytes)." msgstr "" -#: lib/luks2/luks2_reencrypt.c:2784 src/utils_reencrypt.c:189 +#: lib/luks2/luks2_reencrypt.c:2780 src/utils_reencrypt.c:162 #, c-format msgid "Unsupported resilience mode %s" msgstr "" -#: lib/luks2/luks2_reencrypt.c:2821 +#: lib/luks2/luks2_reencrypt.c:2816 msgid "Moved segment size can not be greater than data shift value." msgstr "" -#: lib/luks2/luks2_reencrypt.c:2863 +#: lib/luks2/luks2_reencrypt.c:2858 msgid "Invalid reencryption resilience parameters." msgstr "" -#: lib/luks2/luks2_reencrypt.c:2885 +#: lib/luks2/luks2_reencrypt.c:2880 #, c-format msgid "" "Moved segment too large. Requested size %, available space for: " "%." msgstr "" -#: lib/luks2/luks2_reencrypt.c:2972 +#: lib/luks2/luks2_reencrypt.c:2969 msgid "Failed to clear table." msgstr "" -#: lib/luks2/luks2_reencrypt.c:3058 -msgid "Reduced data size is larger than real device size." -msgstr "" - -#: lib/luks2/luks2_reencrypt.c:3065 -#, c-format -msgid "Data device is not aligned to encryption sector size (% bytes)." -msgstr "" - -#: lib/luks2/luks2_reencrypt.c:3099 +#: lib/luks2/luks2_reencrypt.c:3055 #, c-format msgid "" "Data shift (% sectors) is less than future data offset (% " "sectors)." msgstr "" -#: lib/luks2/luks2_reencrypt.c:3106 lib/luks2/luks2_reencrypt.c:3604 -#: lib/luks2/luks2_reencrypt.c:3625 +#: lib/luks2/luks2_reencrypt.c:3070 lib/luks2/luks2_reencrypt.c:3077 +msgid "Reduced data size is larger than real device size." +msgstr "" + +#: lib/luks2/luks2_reencrypt.c:3087 +#, c-format +msgid "Data device is not aligned to encryption sector size (% bytes)." +msgstr "" + +#: lib/luks2/luks2_reencrypt.c:3117 lib/luks2/luks2_reencrypt.c:3632 +#: lib/luks2/luks2_reencrypt.c:3653 #, c-format msgid "Failed to open %s in exclusive mode (already mapped or mounted)." msgstr "" -#: lib/luks2/luks2_reencrypt.c:3295 +#: lib/luks2/luks2_reencrypt.c:3324 msgid "Device not marked for LUKS2 reencryption." msgstr "" -#: lib/luks2/luks2_reencrypt.c:3312 lib/luks2/luks2_reencrypt.c:4286 +#: lib/luks2/luks2_reencrypt.c:3341 lib/luks2/luks2_reencrypt.c:4391 msgid "Failed to load LUKS2 reencryption context." msgstr "" -#: lib/luks2/luks2_reencrypt.c:3402 -msgid "Failed to get reencryption state." -msgstr "" - -#: lib/luks2/luks2_reencrypt.c:3406 lib/luks2/luks2_reencrypt.c:3720 +#: lib/luks2/luks2_reencrypt.c:3433 lib/luks2/luks2_reencrypt.c:3773 msgid "Device is not in reencryption." msgstr "" -#: lib/luks2/luks2_reencrypt.c:3413 lib/luks2/luks2_reencrypt.c:3727 +#: lib/luks2/luks2_reencrypt.c:3440 lib/luks2/luks2_reencrypt.c:3780 msgid "Reencryption process is already running." msgstr "" -#: lib/luks2/luks2_reencrypt.c:3415 lib/luks2/luks2_reencrypt.c:3729 +#: lib/luks2/luks2_reencrypt.c:3442 lib/luks2/luks2_reencrypt.c:3782 msgid "Failed to acquire reencryption lock." msgstr "" -#: lib/luks2/luks2_reencrypt.c:3433 +#: lib/luks2/luks2_reencrypt.c:3460 msgid "Cannot proceed with reencryption. Run reencryption recovery first." msgstr "" -#: lib/luks2/luks2_reencrypt.c:3568 +#: lib/luks2/luks2_reencrypt.c:3596 msgid "Active device size and requested reencryption size don't match." msgstr "" -#: lib/luks2/luks2_reencrypt.c:3582 +#: lib/luks2/luks2_reencrypt.c:3610 msgid "Illegal device size requested in reencryption parameters." msgstr "" -#: lib/luks2/luks2_reencrypt.c:3659 +#: lib/luks2/luks2_reencrypt.c:3712 msgid "Reencryption in-progress. Cannot perform recovery." msgstr "" -#: lib/luks2/luks2_reencrypt.c:3827 +#: lib/luks2/luks2_reencrypt.c:3733 +msgid "LUKS2 reencryption recovery failed." +msgstr "" + +#: lib/luks2/luks2_reencrypt.c:3866 lib/luks2/luks2_reencrypt.c:4344 +msgid "Failed to initialize reencryption device stack." +msgstr "" + +#: lib/luks2/luks2_reencrypt.c:3899 msgid "LUKS2 reencryption already initialized in metadata." msgstr "" -#: lib/luks2/luks2_reencrypt.c:3834 +#: lib/luks2/luks2_reencrypt.c:3907 msgid "Failed to initialize LUKS2 reencryption in metadata." msgstr "" -#: lib/luks2/luks2_reencrypt.c:3887 lib/luks2/luks2_reencrypt.c:3922 +#: lib/luks2/luks2_reencrypt.c:3960 lib/luks2/luks2_reencrypt.c:3992 +#: lib/luks2/luks2_reencrypt.c:4022 msgid "Reencryption is not supported for DAX (persistent memory) devices." msgstr "" -#: lib/luks2/luks2_reencrypt.c:3894 -msgid "Failed to read passphrase from keyring." -msgstr "" - -#: lib/luks2/luks2_reencrypt.c:3951 +#: lib/luks2/luks2_reencrypt.c:4051 msgid "Failed to set device segments for next reencryption hotzone." msgstr "" -#: lib/luks2/luks2_reencrypt.c:4003 +#: lib/luks2/luks2_reencrypt.c:4103 msgid "Failed to write reencryption resilience metadata." msgstr "" -#: lib/luks2/luks2_reencrypt.c:4010 +#: lib/luks2/luks2_reencrypt.c:4110 msgid "Decryption failed." msgstr "" -#: lib/luks2/luks2_reencrypt.c:4015 +#: lib/luks2/luks2_reencrypt.c:4115 #, c-format msgid "Failed to write hotzone area starting at %." msgstr "" -#: lib/luks2/luks2_reencrypt.c:4020 +#: lib/luks2/luks2_reencrypt.c:4120 msgid "Failed to sync data." msgstr "" -#: lib/luks2/luks2_reencrypt.c:4028 +#: lib/luks2/luks2_reencrypt.c:4128 msgid "Failed to update metadata after current reencryption hotzone completed." msgstr "" -#: lib/luks2/luks2_reencrypt.c:4117 +#: lib/luks2/luks2_reencrypt.c:4217 msgid "Failed to write LUKS2 metadata." msgstr "" -#: lib/luks2/luks2_reencrypt.c:4140 +#: lib/luks2/luks2_reencrypt.c:4240 msgid "Failed to wipe unused data device area." msgstr "" -#: lib/luks2/luks2_reencrypt.c:4146 +#: lib/luks2/luks2_reencrypt.c:4246 #, c-format msgid "Failed to remove unused (unbound) keyslot %d." msgstr "" -#: lib/luks2/luks2_reencrypt.c:4156 +#: lib/luks2/luks2_reencrypt.c:4256 msgid "Failed to remove reencryption keyslot." msgstr "" -#: lib/luks2/luks2_reencrypt.c:4166 +#: lib/luks2/luks2_reencrypt.c:4266 #, c-format msgid "" "Fatal error while reencrypting chunk starting at %, % " "sectors long." msgstr "" -#: lib/luks2/luks2_reencrypt.c:4170 +#: lib/luks2/luks2_reencrypt.c:4270 msgid "Online reencryption failed." msgstr "" -#: lib/luks2/luks2_reencrypt.c:4175 +#: lib/luks2/luks2_reencrypt.c:4275 msgid "Do not resume the device unless replaced with error target manually." msgstr "" -#: lib/luks2/luks2_reencrypt.c:4227 +#: lib/luks2/luks2_reencrypt.c:4327 msgid "Cannot proceed with reencryption. Unexpected reencryption status." msgstr "" -#: lib/luks2/luks2_reencrypt.c:4233 +#: lib/luks2/luks2_reencrypt.c:4333 msgid "Missing or invalid reencrypt context." msgstr "" -#: lib/luks2/luks2_reencrypt.c:4240 -msgid "Failed to initialize reencryption device stack." -msgstr "" - -#: lib/luks2/luks2_reencrypt.c:4262 lib/luks2/luks2_reencrypt.c:4299 +#: lib/luks2/luks2_reencrypt.c:4367 lib/luks2/luks2_reencrypt.c:4404 msgid "Failed to update reencryption context." msgstr "" -#: lib/luks2/luks2_reencrypt_digest.c:421 +#: lib/luks2/luks2_reencrypt_digest.c:401 msgid "Reencryption metadata is invalid." msgstr "" -#: lib/luks2/hw_opal/hw_opal.c:335 +#: lib/luks2/hw_opal/hw_opal.c:333 #, c-format msgid "" "OPAL range %d offset % does not match expected values %." msgstr "" -#: lib/luks2/hw_opal/hw_opal.c:344 +#: lib/luks2/hw_opal/hw_opal.c:340 #, c-format msgid "OPAL range %d length % does not match device length %." msgstr "" -#: lib/luks2/hw_opal/hw_opal.c:351 +#: lib/luks2/hw_opal/hw_opal.c:346 #, c-format msgid "OPAL range %d locking is disabled." msgstr "" -#: lib/luks2/hw_opal/hw_opal.c:361 lib/luks2/hw_opal/hw_opal.c:368 +#: lib/luks2/hw_opal/hw_opal.c:356 lib/luks2/hw_opal/hw_opal.c:363 #, c-format msgid "Unexpected OPAL range %d lock state." msgstr "" -#: src/cryptsetup.c:93 +#: src/cryptsetup.c:87 msgid "Keyslot encryption parameters can be set only for LUKS2 device." msgstr "" -#: src/cryptsetup.c:136 src/cryptsetup.c:2242 -#, c-format -msgid "Enter token PIN: " +#: src/cryptsetup.c:93 +msgid "" +"Keyslot encryption parameters are not compatible with LUKS2 keyslot " +"encryption." msgstr "" -#: src/cryptsetup.c:138 src/cryptsetup.c:2244 -#, c-format -msgid "Enter token %d PIN: " -msgstr "" - -#: src/cryptsetup.c:196 src/cryptsetup.c:1182 src/cryptsetup.c:1523 -#: src/utils_reencrypt.c:1137 src/utils_reencrypt_luks1.c:517 -#: src/utils_reencrypt_luks1.c:580 +#: src/cryptsetup.c:150 src/cryptsetup.c:1171 src/cryptsetup.c:1538 +#: src/utils_reencrypt.c:1887 src/utils_reencrypt_luks1.c:502 +#: src/utils_reencrypt_luks1.c:565 msgid "No known cipher specification pattern detected." msgstr "" -#: src/cryptsetup.c:206 +#: src/cryptsetup.c:160 #, c-format msgid "" "WARNING: Using default options for cipher (%s-%s, key size %u bits) that " "could be incompatible with older versions." msgstr "" -#: src/cryptsetup.c:211 +#: src/cryptsetup.c:165 #, c-format msgid "" "WARNING: Using default options for hash (%s) that could be incompatible with " "older versions." msgstr "" -#: src/cryptsetup.c:215 +#: src/cryptsetup.c:169 msgid "" -"For plain mode, always use options --cipher, --key-size and if no keyfile is " -"used, then also --hash." +"For plain mode, always use options --cipher, --key-size and if no keyfile or " +"keyring is used, then also --hash." msgstr "" -#: src/cryptsetup.c:221 +#: src/cryptsetup.c:175 msgid "" "WARNING: The --hash parameter is being ignored in plain mode with keyfile " "specified.\n" msgstr "" -#: src/cryptsetup.c:229 +#: src/cryptsetup.c:189 msgid "" "WARNING: The --keyfile-size option is being ignored, the read size is the " "same as the encryption key size.\n" msgstr "" -#: src/cryptsetup.c:266 src/cryptsetup.c:1368 src/cryptsetup.c:1566 -#: src/integritysetup.c:197 src/utils_reencrypt.c:1346 +#: src/cryptsetup.c:226 src/cryptsetup.c:1368 src/cryptsetup.c:1591 +#: src/integritysetup.c:188 src/utils_reencrypt.c:2137 #, c-format msgid "Blkid scan failed for %s." msgstr "" -#: src/cryptsetup.c:272 +#: src/cryptsetup.c:232 #, c-format msgid "" "Detected device signature(s) on %s. Proceeding further may damage existing " "data." msgstr "" -#: src/cryptsetup.c:278 src/cryptsetup.c:1256 src/cryptsetup.c:1304 -#: src/cryptsetup.c:1375 src/cryptsetup.c:1500 src/cryptsetup.c:1578 -#: src/cryptsetup.c:2622 src/cryptsetup.c:3049 src/integritysetup.c:187 -#: src/utils_reencrypt.c:138 src/utils_reencrypt.c:314 -#: src/utils_reencrypt.c:764 +#: src/cryptsetup.c:238 src/cryptsetup.c:1254 src/cryptsetup.c:1302 +#: src/cryptsetup.c:1375 src/cryptsetup.c:1515 src/cryptsetup.c:1603 +#: src/cryptsetup.c:2488 src/cryptsetup.c:2917 src/integritysetup.c:178 +#: src/utils_reencrypt.c:111 src/utils_reencrypt.c:457 +#: src/utils_reencrypt.c:925 msgid "Operation aborted.\n" msgstr "" -#: src/cryptsetup.c:351 +#: src/cryptsetup.c:323 msgid "Option --key-file is required." msgstr "" -#: src/cryptsetup.c:402 +#: src/cryptsetup.c:377 msgid "Enter VeraCrypt PIM: " msgstr "" -#: src/cryptsetup.c:411 +#: src/cryptsetup.c:386 msgid "Invalid PIM value: parse error." msgstr "" -#: src/cryptsetup.c:414 +#: src/cryptsetup.c:389 msgid "Invalid PIM value: 0." msgstr "" -#: src/cryptsetup.c:417 +#: src/cryptsetup.c:392 msgid "Invalid PIM value: outside of range." msgstr "" -#: src/cryptsetup.c:440 +#: src/cryptsetup.c:415 msgid "No device header detected with this passphrase." msgstr "" -#: src/cryptsetup.c:513 src/cryptsetup.c:689 +#: src/cryptsetup.c:492 src/cryptsetup.c:668 #, c-format msgid "Device %s is not a valid BITLK device." msgstr "" -#: src/cryptsetup.c:521 +#: src/cryptsetup.c:500 msgid "" "Cannot determine volume key size for BITLK, please use --key-size option." msgstr "" -#: src/cryptsetup.c:563 +#: src/cryptsetup.c:542 msgid "" "Header dump with volume key is sensitive information\n" "which allows access to encrypted partition without passphrase.\n" "This dump should be always stored encrypted on safe place." msgstr "" -#: src/cryptsetup.c:630 src/cryptsetup.c:711 src/cryptsetup.c:2647 +#: src/cryptsetup.c:609 src/cryptsetup.c:690 src/cryptsetup.c:2513 msgid "" "The header dump with volume key is sensitive information\n" "that allows access to encrypted partition without a passphrase.\n" "This dump should be stored encrypted in a safe place." msgstr "" -#: src/cryptsetup.c:766 src/cryptsetup.c:796 +#: src/cryptsetup.c:745 src/cryptsetup.c:777 #, c-format msgid "Device %s is not a valid FVAULT2 device." msgstr "" -#: src/cryptsetup.c:804 +#: src/cryptsetup.c:785 msgid "" "Cannot determine volume key size for FVAULT2, please use --key-size option." msgstr "" -#: src/cryptsetup.c:858 src/veritysetup.c:323 src/integritysetup.c:409 +#: src/cryptsetup.c:839 src/veritysetup.c:317 src/integritysetup.c:410 #, c-format msgid "Device %s is still active and scheduled for deferred removal.\n" msgstr "" -#: src/cryptsetup.c:892 src/cryptsetup.c:1903 src/cryptsetup.c:2177 -#: src/cryptsetup.c:2331 src/cryptsetup.c:2778 src/cryptsetup.c:2860 -#: src/cryptsetup.c:3387 +#: src/cryptsetup.c:872 src/cryptsetup.c:1801 src/cryptsetup.c:2075 +#: src/cryptsetup.c:2222 src/cryptsetup.c:2641 src/cryptsetup.c:2722 +#: src/cryptsetup.c:3255 #, c-format msgid "Failed to set external tokens path %s." msgstr "" -#: src/cryptsetup.c:901 +#: src/cryptsetup.c:881 msgid "" "Resize of active device requires volume key in keyring but --disable-keyring " "option is set." msgstr "" -#: src/cryptsetup.c:1061 +#: src/cryptsetup.c:1050 msgid "Benchmark interrupted." msgstr "" -#: src/cryptsetup.c:1082 +#: src/cryptsetup.c:1071 #, c-format msgid "PBKDF2-%-9s N/A\n" msgstr "" -#: src/cryptsetup.c:1084 +#: src/cryptsetup.c:1073 #, c-format msgid "PBKDF2-%-9s %7u iterations per second for %zu-bit key\n" msgstr "" -#: src/cryptsetup.c:1098 +#: src/cryptsetup.c:1087 #, c-format msgid "%-10s N/A\n" msgstr "" -#: src/cryptsetup.c:1100 +#: src/cryptsetup.c:1089 #, c-format msgid "" "%-10s %4u iterations, %5u memory, %1u parallel threads (CPUs) for %zu-bit " "key (requested %u ms time)\n" msgstr "" -#: src/cryptsetup.c:1124 +#: src/cryptsetup.c:1113 msgid "Result of benchmark is not reliable." msgstr "" -#: src/cryptsetup.c:1174 +#: src/cryptsetup.c:1163 msgid "# Tests are approximate using memory only (no storage IO).\n" msgstr "" #. TRANSLATORS: The string is header of a table and must be exactly (right side) aligned. -#: src/cryptsetup.c:1194 +#: src/cryptsetup.c:1188 #, c-format msgid "#%*s Algorithm | Key | Encryption | Decryption\n" msgstr "" -#: src/cryptsetup.c:1198 +#: src/cryptsetup.c:1196 #, c-format msgid "Cipher %s (with %i bits key) is not available." msgstr "" #. TRANSLATORS: The string is header of a table and must be exactly (right side) aligned. -#: src/cryptsetup.c:1217 +#: src/cryptsetup.c:1215 msgid "# Algorithm | Key | Encryption | Decryption\n" msgstr "" -#: src/cryptsetup.c:1228 +#: src/cryptsetup.c:1226 msgid "N/A" msgstr "" -#: src/cryptsetup.c:1253 +#: src/cryptsetup.c:1251 msgid "" "Unprotected LUKS2 reencryption metadata detected. Please verify the " "reencryption operation is desirable (see luksDump output)\n" @@ -2307,19 +2374,19 @@ msgid "" "genuine." msgstr "" -#: src/cryptsetup.c:1259 +#: src/cryptsetup.c:1257 msgid "Enter passphrase to protect and upgrade reencryption metadata: " msgstr "" -#: src/cryptsetup.c:1303 +#: src/cryptsetup.c:1301 msgid "Really proceed with LUKS2 reencryption recovery?" msgstr "" -#: src/cryptsetup.c:1312 +#: src/cryptsetup.c:1310 msgid "Enter passphrase to verify reencryption metadata digest: " msgstr "" -#: src/cryptsetup.c:1314 +#: src/cryptsetup.c:1312 msgid "Enter passphrase for reencryption recovery: " msgstr "" @@ -2327,603 +2394,633 @@ msgstr "" msgid "Really try to repair LUKS device header?" msgstr "" -#: src/cryptsetup.c:1398 src/integritysetup.c:89 src/integritysetup.c:247 +#: src/cryptsetup.c:1402 src/integritysetup.c:76 src/integritysetup.c:244 msgid "" "\n" "Wipe interrupted." msgstr "" -#: src/cryptsetup.c:1403 src/integritysetup.c:94 src/integritysetup.c:284 +#: src/cryptsetup.c:1407 src/integritysetup.c:81 src/integritysetup.c:283 msgid "" "Wiping device to initialize integrity checksum.\n" "You can interrupt this by pressing CTRL+c (rest of not wiped device will " "contain invalid checksum).\n" msgstr "" -#: src/cryptsetup.c:1425 src/integritysetup.c:116 +#: src/cryptsetup.c:1429 src/integritysetup.c:103 #, c-format msgid "Cannot deactivate temporary device %s." msgstr "" -#: src/cryptsetup.c:1480 -msgid "Integrity option can be used only for LUKS2 format." -msgstr "" - -#: src/cryptsetup.c:1485 src/cryptsetup.c:1550 -msgid "Unsupported LUKS2 metadata size options." +#: src/cryptsetup.c:1477 +msgid "" +"OPAL hw-only encryption does not support --cipher and --key-size, options " +"ignored." msgstr "" #: src/cryptsetup.c:1490 +msgid "Integrity option can be used only for LUKS2 format." +msgstr "" + +#: src/cryptsetup.c:1495 src/cryptsetup.c:1575 +msgid "Unsupported LUKS2 metadata size options." +msgstr "" + +#: src/cryptsetup.c:1500 msgid "OPAL is supported only for LUKS2 format." msgstr "" -#: src/cryptsetup.c:1499 +#: src/cryptsetup.c:1505 +msgid "Inline hw tags are supported only for LUKS2 format." +msgstr "" + +#: src/cryptsetup.c:1514 msgid "Header file does not exist, do you want to create it?" msgstr "" -#: src/cryptsetup.c:1507 +#: src/cryptsetup.c:1522 #, c-format msgid "Cannot create header file %s." msgstr "" -#: src/cryptsetup.c:1530 src/integritysetup.c:144 src/integritysetup.c:152 -#: src/integritysetup.c:161 src/integritysetup.c:324 src/integritysetup.c:332 -#: src/integritysetup.c:342 +#: src/cryptsetup.c:1548 src/integritysetup.c:126 src/integritysetup.c:141 +#: src/integritysetup.c:150 src/integritysetup.c:322 src/integritysetup.c:330 +#: src/integritysetup.c:340 msgid "No known integrity specification pattern detected." msgstr "" -#: src/cryptsetup.c:1543 +#: src/cryptsetup.c:1550 +msgid "Cannot use specified integrity key size." +msgstr "" + +#: src/cryptsetup.c:1568 #, c-format msgid "Cannot use %s as on-disk header." msgstr "" -#: src/cryptsetup.c:1572 src/integritysetup.c:181 +#: src/cryptsetup.c:1597 src/integritysetup.c:172 #, c-format msgid "This will overwrite data on %s irrevocably." msgstr "" -#: src/cryptsetup.c:1609 +#: src/cryptsetup.c:1634 msgid "OPAL Admin password cannot be empty." msgstr "" -#: src/cryptsetup.c:1623 src/cryptsetup.c:2194 src/cryptsetup.c:2344 -#: src/cryptsetup.c:2504 src/cryptsetup.c:2570 src/utils_reencrypt_luks1.c:443 +#: src/cryptsetup.c:1648 src/cryptsetup.c:2092 src/cryptsetup.c:2235 +#: src/cryptsetup.c:2370 src/cryptsetup.c:2436 src/utils_reencrypt_luks1.c:428 msgid "Failed to set pbkdf parameters." msgstr "" -#: src/cryptsetup.c:1755 -msgid "" -"Type specification in --link-vk-to-keyring keyring specification is ignored." -msgstr "" - -#: src/cryptsetup.c:1820 -msgid "Key types have to be the same for both volume keys." -msgstr "" - -#: src/cryptsetup.c:1825 -msgid "Both volume keys have to be linked to the same keyring." -msgstr "" - -#: src/cryptsetup.c:1835 -msgid "You need to supply more key names." -msgstr "" - -#: src/cryptsetup.c:1839 -msgid "Invalid --link-vk-to-keyring value." -msgstr "" - -#: src/cryptsetup.c:1884 +#: src/cryptsetup.c:1779 msgid "Reduced data offset is allowed only for detached LUKS header." msgstr "" -#: src/cryptsetup.c:1891 +#: src/cryptsetup.c:1786 #, c-format msgid "" "LUKS file container %s is too small for activation, there is no remaining " "space for data." msgstr "" -#: src/cryptsetup.c:1918 src/cryptsetup.c:2350 +#: src/cryptsetup.c:1828 src/cryptsetup.c:2241 src/utils_reencrypt.c:277 +#: src/utils_reencrypt.c:369 src/utils_reencrypt.c:1907 msgid "" "Cannot determine volume key size for LUKS without keyslots, please use --key-" "size option." msgstr "" -#: src/cryptsetup.c:1985 +#: src/cryptsetup.c:1847 src/utils_reencrypt.c:303 +msgid "Device requires two volume keys." +msgstr "" + +#: src/cryptsetup.c:1882 +msgid "" +"Some specified activation parameters were ignored with OPAL hw-only " +"encryption." +msgstr "" + +#: src/cryptsetup.c:1887 msgid "Device activated but cannot make flags persistent." msgstr "" -#: src/cryptsetup.c:2069 src/cryptsetup.c:2137 +#: src/cryptsetup.c:1967 src/cryptsetup.c:2035 #, c-format msgid "Keyslot %d is selected for deletion." msgstr "" -#: src/cryptsetup.c:2081 src/cryptsetup.c:2141 +#: src/cryptsetup.c:1979 src/cryptsetup.c:2039 msgid "" "This is the last keyslot. Device will become unusable after purging this key." msgstr "" -#: src/cryptsetup.c:2082 +#: src/cryptsetup.c:1980 msgid "Enter any remaining passphrase: " msgstr "" -#: src/cryptsetup.c:2083 src/cryptsetup.c:2143 +#: src/cryptsetup.c:1981 src/cryptsetup.c:2041 msgid "Operation aborted, the keyslot was NOT wiped.\n" msgstr "" -#: src/cryptsetup.c:2119 +#: src/cryptsetup.c:2017 msgid "Enter passphrase to be deleted: " msgstr "" -#: src/cryptsetup.c:2169 src/cryptsetup.c:2553 src/cryptsetup.c:3211 -#: src/cryptsetup.c:3378 +#: src/cryptsetup.c:2067 src/cryptsetup.c:2419 src/cryptsetup.c:3079 +#: src/cryptsetup.c:3246 #, c-format msgid "Device %s is not a valid LUKS2 device." msgstr "" -#: src/cryptsetup.c:2208 src/cryptsetup.c:2427 +#: src/cryptsetup.c:2106 src/cryptsetup.c:2305 msgid "Enter new passphrase for key slot: " msgstr "" -#: src/cryptsetup.c:2310 +#: src/cryptsetup.c:2140 src/utils_luks.c:342 +#, c-format +msgid "Enter token PIN: " +msgstr "" + +#: src/cryptsetup.c:2142 src/utils_luks.c:344 +#, c-format +msgid "Enter token %d PIN: " +msgstr "" + +#: src/cryptsetup.c:2201 msgid "WARNING: The --key-slot parameter is used for new keyslot number.\n" msgstr "" -#: src/cryptsetup.c:2383 src/utils_reencrypt_luks1.c:1149 +#: src/cryptsetup.c:2278 src/utils_reencrypt_luks1.c:1094 #, c-format msgid "Enter any existing passphrase: " msgstr "" -#: src/cryptsetup.c:2508 +#: src/cryptsetup.c:2374 msgid "Enter passphrase to be changed: " msgstr "" -#: src/cryptsetup.c:2524 src/utils_reencrypt_luks1.c:1135 +#: src/cryptsetup.c:2390 src/utils_reencrypt_luks1.c:1080 msgid "Enter new passphrase: " msgstr "" -#: src/cryptsetup.c:2574 +#: src/cryptsetup.c:2440 msgid "Enter passphrase for keyslot to be converted: " msgstr "" -#: src/cryptsetup.c:2598 +#: src/cryptsetup.c:2464 msgid "Only one device argument for isLuks operation is supported." msgstr "" -#: src/cryptsetup.c:2706 +#: src/cryptsetup.c:2569 #, c-format msgid "Keyslot %d does not contain unbound key." msgstr "" -#: src/cryptsetup.c:2711 +#: src/cryptsetup.c:2574 msgid "" "The header dump with unbound key is sensitive information.\n" "This dump should be stored encrypted in a safe place." msgstr "" -#: src/cryptsetup.c:2806 src/cryptsetup.c:2843 +#: src/cryptsetup.c:2669 src/cryptsetup.c:2705 #, c-format msgid "%s is not active %s device name." msgstr "" -#: src/cryptsetup.c:2838 +#: src/cryptsetup.c:2700 #, c-format msgid "%s is not active LUKS device name or header is missing." msgstr "" -#: src/cryptsetup.c:2916 src/cryptsetup.c:2935 +#: src/cryptsetup.c:2777 src/cryptsetup.c:2796 msgid "Option --header-backup-file is required." msgstr "" -#: src/cryptsetup.c:2966 +#: src/cryptsetup.c:2827 #, c-format msgid "%s is not cryptsetup managed device." msgstr "" -#: src/cryptsetup.c:2977 +#: src/cryptsetup.c:2838 #, c-format msgid "Refresh is not supported for device type %s" msgstr "" -#: src/cryptsetup.c:3027 +#: src/cryptsetup.c:2888 #, c-format msgid "Unrecognized metadata device type %s." msgstr "" -#: src/cryptsetup.c:3029 +#: src/cryptsetup.c:2890 msgid "Command requires device and mapped name as arguments." msgstr "" -#: src/cryptsetup.c:3039 +#: src/cryptsetup.c:2908 msgid "Enter OPAL PSID: " msgstr "" -#: src/cryptsetup.c:3039 +#: src/cryptsetup.c:2908 msgid "Enter OPAL Admin password: " msgstr "" -#: src/cryptsetup.c:3048 +#: src/cryptsetup.c:2916 msgid "" "WARNING: WHOLE disk will be factory reset and all data will be lost! " "Continue?" msgstr "" -#: src/cryptsetup.c:3091 +#: src/cryptsetup.c:2959 #, c-format msgid "" "This operation will erase all keyslots on device %s.\n" "Device will become unusable after this operation." msgstr "" -#: src/cryptsetup.c:3098 +#: src/cryptsetup.c:2966 msgid "Operation aborted, keyslots were NOT wiped.\n" msgstr "" -#: src/cryptsetup.c:3137 +#: src/cryptsetup.c:3005 msgid "Invalid LUKS type, only luks1 and luks2 are supported." msgstr "" -#: src/cryptsetup.c:3153 +#: src/cryptsetup.c:3021 #, c-format msgid "Device is already %s type." msgstr "" -#: src/cryptsetup.c:3160 +#: src/cryptsetup.c:3028 #, c-format msgid "This operation will convert %s to %s format.\n" msgstr "" -#: src/cryptsetup.c:3163 +#: src/cryptsetup.c:3031 msgid "Operation aborted, device was NOT converted.\n" msgstr "" -#: src/cryptsetup.c:3203 +#: src/cryptsetup.c:3071 msgid "Option --priority, --label or --subsystem is missing." msgstr "" -#: src/cryptsetup.c:3237 src/cryptsetup.c:3277 src/cryptsetup.c:3297 +#: src/cryptsetup.c:3105 src/cryptsetup.c:3145 src/cryptsetup.c:3165 #, c-format msgid "Token %d is invalid." msgstr "" -#: src/cryptsetup.c:3240 src/cryptsetup.c:3300 +#: src/cryptsetup.c:3108 src/cryptsetup.c:3168 #, c-format msgid "Token %d in use." msgstr "" -#: src/cryptsetup.c:3252 +#: src/cryptsetup.c:3120 #, c-format msgid "Failed to add luks2-keyring token %d." msgstr "" -#: src/cryptsetup.c:3263 src/cryptsetup.c:3326 +#: src/cryptsetup.c:3131 src/cryptsetup.c:3194 #, c-format msgid "Failed to assign token %d to keyslot %d." msgstr "" -#: src/cryptsetup.c:3280 +#: src/cryptsetup.c:3148 #, c-format msgid "Token %d is not in use." msgstr "" -#: src/cryptsetup.c:3317 +#: src/cryptsetup.c:3185 msgid "Failed to import token from file." msgstr "" -#: src/cryptsetup.c:3342 +#: src/cryptsetup.c:3210 #, c-format msgid "Failed to get token %d for export." msgstr "" -#: src/cryptsetup.c:3355 +#: src/cryptsetup.c:3223 #, c-format msgid "Token %d is not assigned to keyslot %d." msgstr "" -#: src/cryptsetup.c:3357 src/cryptsetup.c:3364 +#: src/cryptsetup.c:3225 src/cryptsetup.c:3232 #, c-format msgid "Failed to unassign token %d from keyslot %d." msgstr "" -#: src/cryptsetup.c:3423 +#: src/cryptsetup.c:3291 msgid "" "Option --tcrypt-hidden, --tcrypt-system or --tcrypt-backup is supported only " "for TCRYPT device." msgstr "" -#: src/cryptsetup.c:3426 +#: src/cryptsetup.c:3294 msgid "" "Option --veracrypt or --disable-veracrypt is supported only for TCRYPT " "device type." msgstr "" -#: src/cryptsetup.c:3429 +#: src/cryptsetup.c:3297 msgid "" "Option --veracrypt-pim is supported only for VeraCrypt compatible devices." msgstr "" -#: src/cryptsetup.c:3433 +#: src/cryptsetup.c:3301 msgid "" "Option --veracrypt-query-pim is supported only for VeraCrypt compatible " "devices." msgstr "" -#: src/cryptsetup.c:3435 +#: src/cryptsetup.c:3303 msgid "" "The options --veracrypt-pim and --veracrypt-query-pim are mutually exclusive." msgstr "" -#: src/cryptsetup.c:3444 +#: src/cryptsetup.c:3312 msgid "Option --persistent is not allowed with --test-passphrase." msgstr "" -#: src/cryptsetup.c:3447 +#: src/cryptsetup.c:3315 msgid "Options --refresh and --test-passphrase are mutually exclusive." msgstr "" -#: src/cryptsetup.c:3450 +#: src/cryptsetup.c:3318 msgid "Option --shared is allowed only for open of plain device." msgstr "" -#: src/cryptsetup.c:3453 +#: src/cryptsetup.c:3321 msgid "Option --skip is supported only for open of plain and loopaes devices." msgstr "" -#: src/cryptsetup.c:3456 +#: src/cryptsetup.c:3324 msgid "" "Option --offset with open action is only supported for plain and loopaes " "devices." msgstr "" -#: src/cryptsetup.c:3459 +#: src/cryptsetup.c:3327 msgid "Option --tcrypt-hidden cannot be combined with --allow-discards." msgstr "" -#: src/cryptsetup.c:3463 +#: src/cryptsetup.c:3331 msgid "" "Sector size option with open action is supported only for plain devices." msgstr "" -#: src/cryptsetup.c:3467 +#: src/cryptsetup.c:3335 msgid "" "Large IV sectors option is supported only for opening plain type device with " "sector size larger than 512 bytes." msgstr "" -#: src/cryptsetup.c:3472 +#: src/cryptsetup.c:3340 msgid "" "Option --test-passphrase is allowed only for open of LUKS, TCRYPT, BITLK and " "FVAULT2 devices." msgstr "" -#: src/cryptsetup.c:3475 src/cryptsetup.c:3498 +#: src/cryptsetup.c:3343 src/cryptsetup.c:3373 msgid "Options --device-size and --size cannot be combined." msgstr "" -#: src/cryptsetup.c:3478 +#: src/cryptsetup.c:3346 msgid "Option --unbound is allowed only for open of luks device." msgstr "" -#: src/cryptsetup.c:3481 +#: src/cryptsetup.c:3349 msgid "Option --unbound cannot be used without --test-passphrase." msgstr "" -#: src/cryptsetup.c:3490 src/veritysetup.c:671 src/integritysetup.c:767 +#: src/cryptsetup.c:3353 +msgid "" +"Option --volume-key-keyring cannot be combined with --hash or --volume-key-" +"file." +msgstr "" + +#: src/cryptsetup.c:3356 +msgid "" +"Both --volume-key-file options must be paired with respective --key-size " +"options." +msgstr "" + +#: src/cryptsetup.c:3365 src/veritysetup.c:673 src/integritysetup.c:784 msgid "" "Options --cancel-deferred and --deferred cannot be used at the same time." msgstr "" -#: src/cryptsetup.c:3506 -msgid "Options --reduce-device-size and --device-size cannot be combined." -msgstr "" - -#: src/cryptsetup.c:3509 +#: src/cryptsetup.c:3381 msgid "Option --active-name can be set only for LUKS2 device." msgstr "" -#: src/cryptsetup.c:3512 +#: src/cryptsetup.c:3384 msgid "Options --active-name and --force-offline-reencrypt cannot be combined." msgstr "" -#: src/cryptsetup.c:3520 src/cryptsetup.c:3550 +#: src/cryptsetup.c:3387 +msgid "Options --new-volume-key-file and --keep-key cannot be combined." +msgstr "" + +#: src/cryptsetup.c:3390 +msgid "Options --new-volume-key-keyring and --keep-key cannot be combined." +msgstr "" + +#: src/cryptsetup.c:3398 src/cryptsetup.c:3428 msgid "Keyslot specification is required." msgstr "" -#: src/cryptsetup.c:3528 +#: src/cryptsetup.c:3406 msgid "Options --align-payload and --offset cannot be combined." msgstr "" -#: src/cryptsetup.c:3531 +#: src/cryptsetup.c:3409 msgid "" "Option --integrity-no-wipe can be used only for format action with integrity " "extension." msgstr "" -#: src/cryptsetup.c:3534 +#: src/cryptsetup.c:3412 msgid "Only one of --use-[u]random options is allowed." msgstr "" -#: src/cryptsetup.c:3542 +#: src/cryptsetup.c:3420 msgid "Key size is required with --unbound option." msgstr "" -#: src/cryptsetup.c:3562 +#: src/cryptsetup.c:3440 msgid "Invalid token action." msgstr "" -#: src/cryptsetup.c:3565 +#: src/cryptsetup.c:3443 msgid "--key-description parameter is mandatory for token add action." msgstr "" -#: src/cryptsetup.c:3569 src/cryptsetup.c:3582 +#: src/cryptsetup.c:3447 src/cryptsetup.c:3460 msgid "Action requires specific token. Use --token-id parameter." msgstr "" -#: src/cryptsetup.c:3573 +#: src/cryptsetup.c:3451 msgid "Option --unbound is valid only with token add action." msgstr "" -#: src/cryptsetup.c:3575 +#: src/cryptsetup.c:3453 msgid "Options --key-slot and --unbound cannot be combined." msgstr "" -#: src/cryptsetup.c:3580 +#: src/cryptsetup.c:3458 msgid "Action requires specific keyslot. Use --key-slot parameter." msgstr "" -#: src/cryptsetup.c:3596 +#: src/cryptsetup.c:3474 msgid " [--type ] []" msgstr "" -#: src/cryptsetup.c:3596 src/veritysetup.c:491 src/integritysetup.c:544 +#: src/cryptsetup.c:3474 src/veritysetup.c:487 src/integritysetup.c:551 msgid "open device as " msgstr "" -#: src/cryptsetup.c:3597 src/cryptsetup.c:3598 src/cryptsetup.c:3599 -#: src/veritysetup.c:492 src/veritysetup.c:493 src/integritysetup.c:545 -#: src/integritysetup.c:546 src/integritysetup.c:548 +#: src/cryptsetup.c:3475 src/cryptsetup.c:3476 src/cryptsetup.c:3477 +#: src/veritysetup.c:488 src/veritysetup.c:489 src/integritysetup.c:552 +#: src/integritysetup.c:553 src/integritysetup.c:555 msgid "" msgstr "" -#: src/cryptsetup.c:3597 src/veritysetup.c:492 src/integritysetup.c:545 +#: src/cryptsetup.c:3475 src/veritysetup.c:488 src/integritysetup.c:552 msgid "close device (remove mapping)" msgstr "" -#: src/cryptsetup.c:3598 src/integritysetup.c:548 +#: src/cryptsetup.c:3476 src/integritysetup.c:555 msgid "resize active device" msgstr "" -#: src/cryptsetup.c:3599 +#: src/cryptsetup.c:3477 msgid "show device status" msgstr "" -#: src/cryptsetup.c:3600 +#: src/cryptsetup.c:3478 msgid "[--cipher ]" msgstr "" -#: src/cryptsetup.c:3600 +#: src/cryptsetup.c:3478 msgid "benchmark cipher" msgstr "" -#: src/cryptsetup.c:3601 src/cryptsetup.c:3602 src/cryptsetup.c:3603 -#: src/cryptsetup.c:3604 src/cryptsetup.c:3605 src/cryptsetup.c:3612 -#: src/cryptsetup.c:3613 src/cryptsetup.c:3614 src/cryptsetup.c:3615 -#: src/cryptsetup.c:3616 src/cryptsetup.c:3617 src/cryptsetup.c:3618 -#: src/cryptsetup.c:3619 src/cryptsetup.c:3620 src/cryptsetup.c:3621 +#: src/cryptsetup.c:3479 src/cryptsetup.c:3480 src/cryptsetup.c:3481 +#: src/cryptsetup.c:3482 src/cryptsetup.c:3483 src/cryptsetup.c:3490 +#: src/cryptsetup.c:3491 src/cryptsetup.c:3492 src/cryptsetup.c:3493 +#: src/cryptsetup.c:3494 src/cryptsetup.c:3495 src/cryptsetup.c:3496 +#: src/cryptsetup.c:3497 src/cryptsetup.c:3498 src/cryptsetup.c:3499 msgid "" msgstr "" -#: src/cryptsetup.c:3601 +#: src/cryptsetup.c:3479 msgid "try to repair on-disk metadata" msgstr "" -#: src/cryptsetup.c:3602 +#: src/cryptsetup.c:3480 msgid "reencrypt LUKS2 device" msgstr "" -#: src/cryptsetup.c:3603 +#: src/cryptsetup.c:3481 msgid "erase all keyslots (remove encryption key)" msgstr "" -#: src/cryptsetup.c:3604 +#: src/cryptsetup.c:3482 msgid "convert LUKS from/to LUKS2 format" msgstr "" -#: src/cryptsetup.c:3605 +#: src/cryptsetup.c:3483 msgid "set permanent configuration options for LUKS2" msgstr "" -#: src/cryptsetup.c:3606 src/cryptsetup.c:3607 +#: src/cryptsetup.c:3484 src/cryptsetup.c:3485 msgid " []" msgstr "" -#: src/cryptsetup.c:3606 +#: src/cryptsetup.c:3484 msgid "formats a LUKS device" msgstr "" -#: src/cryptsetup.c:3607 +#: src/cryptsetup.c:3485 msgid "add key to LUKS device" msgstr "" -#: src/cryptsetup.c:3608 src/cryptsetup.c:3609 src/cryptsetup.c:3610 +#: src/cryptsetup.c:3486 src/cryptsetup.c:3487 src/cryptsetup.c:3488 msgid " []" msgstr "" -#: src/cryptsetup.c:3608 +#: src/cryptsetup.c:3486 msgid "removes supplied key or key file from LUKS device" msgstr "" -#: src/cryptsetup.c:3609 +#: src/cryptsetup.c:3487 msgid "changes supplied key or key file of LUKS device" msgstr "" -#: src/cryptsetup.c:3610 +#: src/cryptsetup.c:3488 msgid "converts a key to new pbkdf parameters" msgstr "" -#: src/cryptsetup.c:3611 +#: src/cryptsetup.c:3489 msgid " " msgstr "" -#: src/cryptsetup.c:3611 +#: src/cryptsetup.c:3489 msgid "wipes key with number from LUKS device" msgstr "" -#: src/cryptsetup.c:3612 +#: src/cryptsetup.c:3490 msgid "print UUID of LUKS device" msgstr "" -#: src/cryptsetup.c:3613 +#: src/cryptsetup.c:3491 msgid "tests for LUKS partition header" msgstr "" -#: src/cryptsetup.c:3614 +#: src/cryptsetup.c:3492 msgid "dump LUKS partition information" msgstr "" -#: src/cryptsetup.c:3615 +#: src/cryptsetup.c:3493 msgid "dump TCRYPT device information" msgstr "" -#: src/cryptsetup.c:3616 +#: src/cryptsetup.c:3494 msgid "dump BITLK device information" msgstr "" -#: src/cryptsetup.c:3617 +#: src/cryptsetup.c:3495 msgid "dump FVAULT2 device information" msgstr "" -#: src/cryptsetup.c:3618 +#: src/cryptsetup.c:3496 msgid "Suspend LUKS device and wipe key (all IOs are frozen)" msgstr "" -#: src/cryptsetup.c:3619 +#: src/cryptsetup.c:3497 msgid "Resume suspended LUKS device" msgstr "" -#: src/cryptsetup.c:3620 +#: src/cryptsetup.c:3498 msgid "Backup LUKS device header and keyslots" msgstr "" -#: src/cryptsetup.c:3621 +#: src/cryptsetup.c:3499 msgid "Restore LUKS device header and keyslots" msgstr "" -#: src/cryptsetup.c:3622 +#: src/cryptsetup.c:3500 msgid " " msgstr "" -#: src/cryptsetup.c:3622 +#: src/cryptsetup.c:3500 msgid "Manipulate LUKS2 tokens" msgstr "" -#: src/cryptsetup.c:3641 src/veritysetup.c:509 src/integritysetup.c:563 +#: src/cryptsetup.c:3519 src/veritysetup.c:505 src/integritysetup.c:570 msgid "" "\n" " is one of:\n" msgstr "" -#: src/cryptsetup.c:3647 +#: src/cryptsetup.c:3525 msgid "" "\n" "You can also use old syntax aliases:\n" @@ -2933,7 +3030,7 @@ msgid "" "bitlkClose, fvault2Close\n" msgstr "" -#: src/cryptsetup.c:3651 +#: src/cryptsetup.c:3529 #, c-format msgid "" "\n" @@ -2943,31 +3040,31 @@ msgid "" " optional key file for the new key for luksAddKey action\n" msgstr "" -#: src/cryptsetup.c:3658 +#: src/cryptsetup.c:3536 #, c-format msgid "" "\n" "Default compiled-in metadata format is %s (for luksFormat action).\n" msgstr "" -#: src/cryptsetup.c:3663 +#: src/cryptsetup.c:3541 msgid "" "\n" "LUKS2 external token plugin support is enabled.\n" msgstr "" -#: src/cryptsetup.c:3664 +#: src/cryptsetup.c:3542 #, c-format msgid "LUKS2 external token plugin path: %s.\n" msgstr "" -#: src/cryptsetup.c:3666 +#: src/cryptsetup.c:3544 msgid "" "\n" "LUKS2 external token plugin support is disabled.\n" msgstr "" -#: src/cryptsetup.c:3670 +#: src/cryptsetup.c:3548 #, c-format msgid "" "\n" @@ -2979,7 +3076,7 @@ msgid "" "\tIteration time: %d, Memory required: %dkB, Parallel threads: %d\n" msgstr "" -#: src/cryptsetup.c:3681 +#: src/cryptsetup.c:3559 #, c-format msgid "" "\n" @@ -2989,206 +3086,218 @@ msgid "" "\tLUKS: %s, Key: %d bits, LUKS header hashing: %s, RNG: %s\n" msgstr "" -#: src/cryptsetup.c:3690 +#: src/cryptsetup.c:3568 msgid "" "\tLUKS: Default keysize with XTS mode (two internal keys) will be doubled.\n" msgstr "" -#: src/cryptsetup.c:3708 src/veritysetup.c:651 src/integritysetup.c:723 +#: src/cryptsetup.c:3586 src/veritysetup.c:647 src/integritysetup.c:730 #, c-format msgid "%s: requires %s as arguments" msgstr "" -#: src/cryptsetup.c:3748 src/utils_reencrypt_luks1.c:1198 +#: src/cryptsetup.c:3626 src/utils_reencrypt_luks1.c:1143 msgid "Key slot is invalid." msgstr "" -#: src/cryptsetup.c:3776 +#: src/cryptsetup.c:3654 msgid "Device size must be multiple of 512 bytes sector." msgstr "" -#: src/cryptsetup.c:3781 +#: src/cryptsetup.c:3659 msgid "Invalid max reencryption hotzone size specification." msgstr "" -#: src/cryptsetup.c:3795 src/cryptsetup.c:3807 +#: src/cryptsetup.c:3673 src/cryptsetup.c:3690 src/cryptsetup.c:3702 msgid "Key size must be a multiple of 8 bits" msgstr "" -#: src/cryptsetup.c:3814 +#: src/cryptsetup.c:3680 +msgid "At most 2 key size specifications can be supplied." +msgstr "" + +#: src/cryptsetup.c:3709 src/cryptsetup.c:3720 #, c-format msgid "At most %d volume key specifications can be supplied." msgstr "" -#: src/cryptsetup.c:3826 +#: src/cryptsetup.c:3732 #, c-format msgid "At most %d keyring link specifications can be supplied." msgstr "" -#: src/cryptsetup.c:3835 +#: src/cryptsetup.c:3741 msgid "Maximum device reduce size is 1 GiB." msgstr "" -#: src/cryptsetup.c:3838 +#: src/cryptsetup.c:3744 msgid "Reduce size must be multiple of 512 bytes sector." msgstr "" -#: src/cryptsetup.c:3855 +#: src/cryptsetup.c:3761 msgid "Option --priority can be only ignore/normal/prefer." msgstr "" -#: src/cryptsetup.c:3874 src/veritysetup.c:572 src/integritysetup.c:643 +#: src/cryptsetup.c:3780 src/veritysetup.c:568 src/integritysetup.c:650 msgid "Show this help message" msgstr "" -#: src/cryptsetup.c:3875 src/veritysetup.c:573 src/integritysetup.c:644 +#: src/cryptsetup.c:3781 src/veritysetup.c:569 src/integritysetup.c:651 msgid "Display brief usage" msgstr "" -#: src/cryptsetup.c:3876 src/veritysetup.c:574 src/integritysetup.c:645 +#: src/cryptsetup.c:3782 src/veritysetup.c:570 src/integritysetup.c:652 msgid "Print package version" msgstr "" -#: src/cryptsetup.c:3887 src/veritysetup.c:585 src/integritysetup.c:656 +#: src/cryptsetup.c:3793 src/veritysetup.c:581 src/integritysetup.c:663 msgid "Help options:" msgstr "" -#: src/cryptsetup.c:3910 src/veritysetup.c:606 src/integritysetup.c:676 +#: src/cryptsetup.c:3816 src/veritysetup.c:602 src/integritysetup.c:683 msgid "[OPTION...] " msgstr "" -#: src/cryptsetup.c:3919 src/veritysetup.c:615 src/integritysetup.c:687 +#: src/cryptsetup.c:3825 src/veritysetup.c:611 src/integritysetup.c:694 msgid "Argument missing." msgstr "" -#: src/cryptsetup.c:3998 src/veritysetup.c:646 src/integritysetup.c:718 +#: src/cryptsetup.c:3904 src/veritysetup.c:642 src/integritysetup.c:725 msgid "Unknown action." msgstr "" -#: src/cryptsetup.c:4016 +#: src/cryptsetup.c:3922 msgid "Option --key-file takes precedence over specified key file argument." msgstr "" -#: src/cryptsetup.c:4022 +#: src/cryptsetup.c:3928 msgid "Only one --key-file argument is allowed." msgstr "" -#: src/cryptsetup.c:4027 +#: src/cryptsetup.c:3933 msgid "" "Password-based key derivation function (PBKDF) can be only pbkdf2 or argon2i/" "argon2id." msgstr "" -#: src/cryptsetup.c:4032 +#: src/cryptsetup.c:3938 msgid "PBKDF forced iterations cannot be combined with iteration time option." msgstr "" -#: src/cryptsetup.c:4037 +#: src/cryptsetup.c:3943 msgid "Cannot link volume key to a keyring when keyring is disabled." msgstr "" -#: src/cryptsetup.c:4048 +#: src/cryptsetup.c:3948 +msgid "Cannot use keyring key description when keyring is disabled." +msgstr "" + +#: src/cryptsetup.c:3953 +msgid "Inline integrity must be used together with --integrity option." +msgstr "" + +#: src/cryptsetup.c:3964 msgid "Options --keyslot-cipher and --keyslot-key-size must be used together." msgstr "" -#: src/cryptsetup.c:4056 +#: src/cryptsetup.c:3972 msgid "No action taken. Invoked with --test-args option.\n" msgstr "" -#: src/cryptsetup.c:4069 +#: src/cryptsetup.c:3985 msgid "Cannot disable metadata locking." msgstr "" -#: src/veritysetup.c:54 +#: src/veritysetup.c:41 msgid "Invalid salt string specified." msgstr "" -#: src/veritysetup.c:87 +#: src/veritysetup.c:74 #, c-format msgid "Cannot create hash image %s for writing." msgstr "" -#: src/veritysetup.c:97 +#: src/veritysetup.c:84 #, c-format msgid "Cannot create FEC image %s for writing." msgstr "" -#: src/veritysetup.c:136 +#: src/veritysetup.c:123 #, c-format msgid "Cannot create root hash file %s for writing." msgstr "" -#: src/veritysetup.c:143 +#: src/veritysetup.c:130 #, c-format msgid "Cannot write to root hash file %s." msgstr "" -#: src/veritysetup.c:198 src/veritysetup.c:476 +#: src/veritysetup.c:189 src/veritysetup.c:472 #, c-format msgid "Device %s is not a valid VERITY device." msgstr "" -#: src/veritysetup.c:215 src/veritysetup.c:232 +#: src/veritysetup.c:206 src/veritysetup.c:223 #, c-format msgid "Cannot read root hash file %s." msgstr "" -#: src/veritysetup.c:220 +#: src/veritysetup.c:211 #, c-format msgid "Invalid root hash file %s." msgstr "" -#: src/veritysetup.c:241 +#: src/veritysetup.c:232 msgid "Invalid root hash string specified." msgstr "" -#: src/veritysetup.c:249 +#: src/veritysetup.c:240 #, c-format msgid "Invalid signature file %s." msgstr "" -#: src/veritysetup.c:256 +#: src/veritysetup.c:247 #, c-format msgid "Cannot read signature file %s." msgstr "" -#: src/veritysetup.c:279 src/veritysetup.c:293 +#: src/veritysetup.c:270 src/veritysetup.c:287 msgid "Command requires or --root-hash-file option as argument." msgstr "" -#: src/veritysetup.c:489 +#: src/veritysetup.c:485 msgid " " msgstr "" -#: src/veritysetup.c:489 src/integritysetup.c:543 +#: src/veritysetup.c:485 src/integritysetup.c:550 msgid "format device" msgstr "" -#: src/veritysetup.c:490 +#: src/veritysetup.c:486 msgid " []" msgstr "" -#: src/veritysetup.c:490 +#: src/veritysetup.c:486 msgid "verify device" msgstr "" -#: src/veritysetup.c:491 +#: src/veritysetup.c:487 msgid " []" msgstr "" -#: src/veritysetup.c:493 src/integritysetup.c:546 +#: src/veritysetup.c:489 src/integritysetup.c:553 msgid "show active device status" msgstr "" -#: src/veritysetup.c:494 +#: src/veritysetup.c:490 msgid "" msgstr "" -#: src/veritysetup.c:494 src/integritysetup.c:547 +#: src/veritysetup.c:490 src/integritysetup.c:554 msgid "show on-disk information" msgstr "" -#: src/veritysetup.c:513 +#: src/veritysetup.c:509 #, c-format msgid "" "\n" @@ -3198,7 +3307,7 @@ msgid "" " hash of the root node on \n" msgstr "" -#: src/veritysetup.c:520 +#: src/veritysetup.c:516 #, c-format msgid "" "\n" @@ -3207,19 +3316,25 @@ msgid "" "Hash format: %u\n" msgstr "" -#: src/veritysetup.c:661 +#: src/veritysetup.c:657 msgid "" "Option --ignore-corruption and --restart-on-corruption cannot be used " "together." msgstr "" -#: src/veritysetup.c:666 +#: src/veritysetup.c:662 msgid "" "Option --panic-on-corruption and --restart-on-corruption cannot be used " "together." msgstr "" -#: src/integritysetup.c:177 +#: src/veritysetup.c:668 +msgid "" +"Option --error-as-corruption must be used with --panic-on-corruption or --" +"restart-on-corruption." +msgstr "" + +#: src/integritysetup.c:168 #, c-format msgid "" "This will overwrite data on %s and %s irrevocably.\n" @@ -3227,31 +3342,35 @@ msgid "" "integrity-recalculate)." msgstr "" -#: src/integritysetup.c:217 +#: src/integritysetup.c:213 #, c-format -msgid "Formatted with tag size %u, internal integrity %s.\n" +msgid "Formatted with tag size %u%s, internal integrity %s.\n" msgstr "" -#: src/integritysetup.c:298 +#: src/integritysetup.c:214 +msgid " (inline hw tags)" +msgstr "" + +#: src/integritysetup.c:297 msgid "" "Setting recalculate flag is not supported, you may consider using --wipe " "instead." msgstr "" -#: src/integritysetup.c:373 src/integritysetup.c:530 +#: src/integritysetup.c:374 src/integritysetup.c:537 #, c-format msgid "Device %s is not a valid INTEGRITY device." msgstr "" -#: src/integritysetup.c:543 src/integritysetup.c:547 +#: src/integritysetup.c:550 src/integritysetup.c:554 msgid "" msgstr "" -#: src/integritysetup.c:544 +#: src/integritysetup.c:551 msgid " " msgstr "" -#: src/integritysetup.c:567 +#: src/integritysetup.c:574 #, c-format msgid "" "\n" @@ -3259,7 +3378,7 @@ msgid "" " is the device containing data with integrity tags\n" msgstr "" -#: src/integritysetup.c:572 +#: src/integritysetup.c:579 #, c-format msgid "" "\n" @@ -3268,49 +3387,57 @@ msgid "" "\tMaximum keyfile size: %dkB\n" msgstr "" -#: src/integritysetup.c:629 +#: src/integritysetup.c:636 #, c-format msgid "Invalid --%s size. Maximum is %u bytes." msgstr "" -#: src/integritysetup.c:732 +#: src/integritysetup.c:739 msgid "Both key file and key size options must be specified." msgstr "" -#: src/integritysetup.c:736 +#: src/integritysetup.c:743 msgid "Both journal integrity key file and key size options must be specified." msgstr "" -#: src/integritysetup.c:739 +#: src/integritysetup.c:746 msgid "" "Journal integrity algorithm must be specified if journal integrity key is " "used." msgstr "" -#: src/integritysetup.c:743 +#: src/integritysetup.c:750 msgid "" "Both journal encryption key file and key size options must be specified." msgstr "" -#: src/integritysetup.c:746 +#: src/integritysetup.c:753 msgid "" "Journal encryption algorithm must be specified if journal encryption key is " "used." msgstr "" -#: src/integritysetup.c:750 +#: src/integritysetup.c:757 msgid "Recovery and bitmap mode options are mutually exclusive." msgstr "" -#: src/integritysetup.c:757 +#: src/integritysetup.c:764 msgid "Journal options cannot be used in bitmap mode." msgstr "" -#: src/integritysetup.c:762 +#: src/integritysetup.c:769 msgid "Bitmap options can be used only in bitmap mode." msgstr "" -#: src/utils_tools.c:118 +#: src/integritysetup.c:775 +msgid "Inline mode cannot be combined with journal or bitmap options." +msgstr "" + +#: src/integritysetup.c:779 +msgid "Inline mode cannot be combined with separate data device." +msgstr "" + +#: src/utils_tools.c:105 msgid "" "\n" "WARNING!\n" @@ -3318,7 +3445,7 @@ msgid "" msgstr "" #. TRANSLATORS: User must type "YES" (in capital letters), do not translate this word. -#: src/utils_tools.c:120 +#: src/utils_tools.c:107 #, c-format msgid "" "%s\n" @@ -3326,153 +3453,161 @@ msgid "" "Are you sure? (Type 'yes' in capital letters): " msgstr "" -#: src/utils_tools.c:126 +#: src/utils_tools.c:113 msgid "Error reading response from terminal." msgstr "" -#: src/utils_tools.c:158 +#: src/utils_tools.c:145 msgid "Command successful." msgstr "" -#: src/utils_tools.c:166 +#: src/utils_tools.c:153 msgid "wrong or missing parameters" msgstr "" -#: src/utils_tools.c:168 +#: src/utils_tools.c:155 msgid "no permission or bad passphrase" msgstr "" -#: src/utils_tools.c:170 +#: src/utils_tools.c:157 msgid "out of memory" msgstr "" -#: src/utils_tools.c:172 +#: src/utils_tools.c:159 msgid "wrong device or file specified" msgstr "" -#: src/utils_tools.c:174 +#: src/utils_tools.c:161 msgid "device already exists or device is busy" msgstr "" -#: src/utils_tools.c:176 +#: src/utils_tools.c:163 msgid "unknown error" msgstr "" -#: src/utils_tools.c:178 +#: src/utils_tools.c:165 #, c-format msgid "Command failed with code %i (%s)." msgstr "" -#: src/utils_tools.c:256 +#: src/utils_tools.c:243 #, c-format msgid "Key slot %i created." msgstr "" -#: src/utils_tools.c:258 +#: src/utils_tools.c:245 #, c-format msgid "Key slot %i unlocked." msgstr "" -#: src/utils_tools.c:260 +#: src/utils_tools.c:247 #, c-format msgid "Key slot %i removed." msgstr "" -#: src/utils_tools.c:269 +#: src/utils_tools.c:256 #, c-format msgid "Token %i created." msgstr "" -#: src/utils_tools.c:271 +#: src/utils_tools.c:258 #, c-format msgid "Token %i removed." msgstr "" -#: src/utils_tools.c:281 +#: src/utils_tools.c:268 msgid "No token could be unlocked with this PIN." msgstr "" -#: src/utils_tools.c:283 +#: src/utils_tools.c:270 #, c-format msgid "Token %i requires PIN." msgstr "" -#: src/utils_tools.c:285 +#: src/utils_tools.c:272 #, c-format msgid "Token (type %s) requires PIN." msgstr "" -#: src/utils_tools.c:288 +#: src/utils_tools.c:275 #, c-format msgid "Token %i cannot unlock assigned keyslot(s) (wrong keyslot passphrase)." msgstr "" -#: src/utils_tools.c:290 +#: src/utils_tools.c:277 #, c-format msgid "" "Token (type %s) cannot unlock assigned keyslot(s) (wrong keyslot passphrase)." msgstr "" -#: src/utils_tools.c:293 +#: src/utils_tools.c:280 #, c-format msgid "Token %i requires additional missing resource." msgstr "" -#: src/utils_tools.c:295 +#: src/utils_tools.c:282 #, c-format msgid "Token (type %s) requires additional missing resource." msgstr "" -#: src/utils_tools.c:298 +#: src/utils_tools.c:285 #, c-format msgid "No usable token (type %s) is available." msgstr "" -#: src/utils_tools.c:300 +#: src/utils_tools.c:287 msgid "No usable token is available." msgstr "" -#: src/utils_tools.c:393 +#: src/utils_tools.c:380 #, c-format msgid "Cannot read keyfile %s." msgstr "" -#: src/utils_tools.c:398 +#: src/utils_tools.c:385 #, c-format msgid "Cannot read %d bytes from keyfile %s." msgstr "" -#: src/utils_tools.c:423 +#: src/utils_tools.c:410 #, c-format msgid "Cannot open keyfile %s for write." msgstr "" -#: src/utils_tools.c:430 +#: src/utils_tools.c:417 #, c-format msgid "Cannot write to keyfile %s." msgstr "" -#: src/utils_progress.c:74 +#: src/utils_tools.c:468 +msgid "Name is too long." +msgstr "" + +#: src/utils_tools.c:471 +msgid "Name must not contain '/' character." +msgstr "" + +#: src/utils_progress.c:61 #, c-format msgid "%02m%02s" msgstr "" -#: src/utils_progress.c:76 +#: src/utils_progress.c:63 #, c-format msgid "%02h%02m%02s" msgstr "" -#: src/utils_progress.c:78 +#: src/utils_progress.c:65 #, c-format msgid "%02 days" msgstr "" -#: src/utils_progress.c:105 src/utils_progress.c:138 +#: src/utils_progress.c:92 src/utils_progress.c:125 #, c-format msgid "%4 %s written" msgstr "" -#: src/utils_progress.c:109 src/utils_progress.c:142 +#: src/utils_progress.c:96 src/utils_progress.c:129 #, c-format msgid "speed %5.1f %s/s" msgstr "" @@ -3481,7 +3616,7 @@ msgstr "" #. to get translated as well. 'eol' is always new-line or empty. #. See above. #. -#: src/utils_progress.c:118 +#: src/utils_progress.c:105 #, c-format msgid "Progress: %5.1f%%, ETA %s, %s, %s%s" msgstr "" @@ -3489,116 +3624,121 @@ msgstr "" #. TRANSLATORS: 'time', 'written' and 'speed' string are supposed #. to get translated as well. See above #. -#: src/utils_progress.c:150 +#: src/utils_progress.c:137 #, c-format msgid "Finished, time %s, %s, %s\n" msgstr "" -#: src/utils_password.c:41 src/utils_password.c:72 +#: src/utils_password.c:28 src/utils_password.c:59 #, c-format msgid "Cannot check password quality: %s" msgstr "" -#: src/utils_password.c:49 +#: src/utils_password.c:36 #, c-format msgid "" "Password quality check failed:\n" " %s" msgstr "" -#: src/utils_password.c:79 +#: src/utils_password.c:66 #, c-format msgid "Password quality check failed: Bad passphrase (%s)" msgstr "" -#: src/utils_password.c:231 src/utils_password.c:245 +#: src/utils_password.c:197 +msgid "" +"Read stopped at maximal interactive input length, passphrase can be trimmed." +msgstr "" + +#: src/utils_password.c:224 src/utils_password.c:238 msgid "Error reading passphrase from terminal." msgstr "" -#: src/utils_password.c:243 +#: src/utils_password.c:236 msgid "Verify passphrase: " msgstr "" -#: src/utils_password.c:250 +#: src/utils_password.c:243 msgid "Passphrases do not match." msgstr "" -#: src/utils_password.c:288 +#: src/utils_password.c:281 msgid "Cannot use offset with terminal input." msgstr "" -#: src/utils_password.c:292 +#: src/utils_password.c:285 #, c-format msgid "Enter passphrase: " msgstr "" -#: src/utils_password.c:295 +#: src/utils_password.c:288 #, c-format msgid "Enter passphrase for %s: " msgstr "" -#: src/utils_password.c:329 +#: src/utils_password.c:322 msgid "No key available with this passphrase." msgstr "" -#: src/utils_password.c:331 +#: src/utils_password.c:324 msgid "No usable keyslot is available." msgstr "" -#: src/utils_luks.c:68 +#: src/utils_luks.c:55 msgid "Can't do passphrase verification on non-tty inputs." msgstr "" -#: src/utils_luks.c:183 +#: src/utils_luks.c:179 #, c-format msgid "Failed to open file %s in read-only mode." msgstr "" -#: src/utils_luks.c:196 +#: src/utils_luks.c:193 msgid "Provide valid LUKS2 token JSON:\n" msgstr "" -#: src/utils_luks.c:203 +#: src/utils_luks.c:200 msgid "Failed to read JSON file." msgstr "" -#: src/utils_luks.c:208 +#: src/utils_luks.c:205 msgid "" "\n" "Read interrupted." msgstr "" -#: src/utils_luks.c:249 +#: src/utils_luks.c:246 #, c-format msgid "Failed to open file %s in write mode." msgstr "" -#: src/utils_luks.c:258 +#: src/utils_luks.c:255 msgid "" "\n" "Write interrupted." msgstr "" -#: src/utils_luks.c:262 +#: src/utils_luks.c:259 msgid "Failed to write JSON file." msgstr "" -#: src/utils_reencrypt.c:120 +#: src/utils_reencrypt.c:93 #, c-format msgid "Auto-detected active dm device '%s' for data device %s.\n" msgstr "" -#: src/utils_reencrypt.c:124 +#: src/utils_reencrypt.c:97 #, c-format msgid "Failed to auto-detect device %s holders." msgstr "" -#: src/utils_reencrypt.c:130 +#: src/utils_reencrypt.c:103 #, c-format msgid "Device %s is not a block device.\n" msgstr "" -#: src/utils_reencrypt.c:132 +#: src/utils_reencrypt.c:105 #, c-format msgid "" "Unable to decide if device %s is activated or not.\n" @@ -3607,7 +3747,7 @@ msgid "" "To run reencryption in online mode, use --active-name parameter instead.\n" msgstr "" -#: src/utils_reencrypt.c:141 src/utils_reencrypt.c:274 +#: src/utils_reencrypt.c:114 src/utils_reencrypt.c:247 #, c-format msgid "" "Device %s is not a block device. Can not auto-detect if it is active or " @@ -3616,420 +3756,488 @@ msgid "" "(dangerous!)." msgstr "" -#: src/utils_reencrypt.c:178 src/utils_reencrypt.c:221 -#: src/utils_reencrypt.c:231 +#: src/utils_reencrypt.c:151 src/utils_reencrypt.c:194 +#: src/utils_reencrypt.c:204 msgid "" "Requested --resilience option cannot be applied to current reencryption " "operation." msgstr "" -#: src/utils_reencrypt.c:203 +#: src/utils_reencrypt.c:176 msgid "Device is not in LUKS2 encryption. Conflicting option --encrypt." msgstr "" -#: src/utils_reencrypt.c:208 +#: src/utils_reencrypt.c:181 msgid "Device is not in LUKS2 decryption. Conflicting option --decrypt." msgstr "" -#: src/utils_reencrypt.c:215 +#: src/utils_reencrypt.c:188 msgid "" "Device is in reencryption using datashift resilience. Requested --resilience " "option cannot be applied." msgstr "" -#: src/utils_reencrypt.c:293 +#: src/utils_reencrypt.c:282 src/utils_reencrypt.c:1923 +msgid "" +"Cannot determine volume key size for LUKS without keyslots, please use --new-" +"key-size option." +msgstr "" + +#: src/utils_reencrypt.c:436 msgid "Device requires reencryption recovery. Run repair first." msgstr "" -#: src/utils_reencrypt.c:307 +#: src/utils_reencrypt.c:450 #, c-format msgid "" "Device %s is already in LUKS2 reencryption. Do you wish to resume previously " "initialised operation?" msgstr "" -#: src/utils_reencrypt.c:416 +#: src/utils_reencrypt.c:561 msgid "Legacy LUKS2 reencryption is no longer supported." msgstr "" -#: src/utils_reencrypt.c:421 +#: src/utils_reencrypt.c:566 msgid "Can not reencrypt LUKS2 device configured to use OPAL." msgstr "" -#: src/utils_reencrypt.c:427 +#: src/utils_reencrypt.c:572 msgid "Reencryption of device with integrity profile is not supported." msgstr "" -#: src/utils_reencrypt.c:464 +#: src/utils_reencrypt.c:609 #, c-format msgid "" "Requested --sector-size % is incompatible with %s superblock\n" "(block size: % bytes) detected on device %s." msgstr "" -#: src/utils_reencrypt.c:533 src/utils_reencrypt.c:1412 +#: src/utils_reencrypt.c:678 src/utils_reencrypt.c:2203 msgid "" "Encryption without detached header (--header) is not possible without data " "device size reduction (--reduce-device-size)." msgstr "" -#: src/utils_reencrypt.c:540 +#: src/utils_reencrypt.c:687 msgid "" "Requested data offset must be less than or equal to half of --reduce-device-" "size parameter." msgstr "" -#: src/utils_reencrypt.c:550 +#: src/utils_reencrypt.c:697 #, c-format msgid "" "Adjusting --reduce-device-size value to twice the --offset % " "(sectors).\n" msgstr "" -#: src/utils_reencrypt.c:580 +#: src/utils_reencrypt.c:727 #, c-format msgid "Temporary header file %s already exists. Aborting." msgstr "" -#: src/utils_reencrypt.c:582 src/utils_reencrypt.c:589 +#: src/utils_reencrypt.c:729 src/utils_reencrypt.c:736 #, c-format msgid "Cannot create temporary header file %s." msgstr "" -#: src/utils_reencrypt.c:614 +#: src/utils_reencrypt.c:761 msgid "LUKS2 metadata size is larger than data shift value." msgstr "" -#: src/utils_reencrypt.c:651 +#: src/utils_reencrypt.c:800 #, c-format msgid "Failed to place new header at head of device %s." msgstr "" -#: src/utils_reencrypt.c:661 +#: src/utils_reencrypt.c:813 #, c-format msgid "%s/%s is now active and ready for online encryption.\n" msgstr "" -#: src/utils_reencrypt.c:697 +#: src/utils_reencrypt.c:850 #, c-format msgid "Active device %s is not LUKS2." msgstr "" -#: src/utils_reencrypt.c:725 +#: src/utils_reencrypt.c:878 msgid "Restoring original LUKS2 header." msgstr "" -#: src/utils_reencrypt.c:733 +#: src/utils_reencrypt.c:886 msgid "Original LUKS2 header restore failed." msgstr "" -#: src/utils_reencrypt.c:759 +#: src/utils_reencrypt.c:918 #, c-format msgid "" "Header file %s does not exist. Do you want to initialize LUKS2 decryption of " "device %s and export LUKS2 header to file %s?" msgstr "" -#: src/utils_reencrypt.c:807 +#: src/utils_reencrypt.c:961 msgid "Failed to add read/write permissions to exported header file." msgstr "" -#: src/utils_reencrypt.c:860 +#: src/utils_reencrypt.c:1015 #, c-format msgid "Reencryption initialization failed. Header backup is available in %s." msgstr "" -#: src/utils_reencrypt.c:888 +#: src/utils_reencrypt.c:1043 msgid "" "LUKS2 decryption is supported with detached header device only (with data " "offset set to 0)." msgstr "" -#: src/utils_reencrypt.c:1023 src/utils_reencrypt.c:1032 +#: src/utils_reencrypt.c:1487 +msgid "No token could unlock the device." +msgstr "" + +#: src/utils_reencrypt.c:1519 src/utils_reencrypt.c:1528 msgid "Not enough free keyslots for reencryption." msgstr "" -#: src/utils_reencrypt.c:1053 src/utils_reencrypt_luks1.c:1100 +#: src/utils_reencrypt.c:1559 msgid "" -"Key file can be used only with --key-slot or with exactly one key slot " -"active." +"Key file or keyring key description can be used only with --key-slot or with " +"exactly one key slot active." msgstr "" -#: src/utils_reencrypt.c:1062 src/utils_reencrypt_luks1.c:1147 -#: src/utils_reencrypt_luks1.c:1158 +#: src/utils_reencrypt.c:1566 src/utils_reencrypt.c:1579 +#: src/utils_reencrypt_luks1.c:1092 src/utils_reencrypt_luks1.c:1103 #, c-format msgid "Enter passphrase for key slot %d: " msgstr "" -#: src/utils_reencrypt.c:1074 -#, c-format -msgid "Enter passphrase for key slot %u: " -msgstr "" - -#: src/utils_reencrypt.c:1126 +#: src/utils_reencrypt.c:1876 #, c-format msgid "Switching data encryption cipher to %s.\n" msgstr "" -#: src/utils_reencrypt.c:1180 +#: src/utils_reencrypt.c:1976 src/utils_reencrypt.c:1997 +msgid "" +"Use --force-no-keyslots to reencrypt device with active keyslots by passing " +"volume keys directly." +msgstr "" + +#: src/utils_reencrypt.c:1992 +msgid "Option --new-volume-key-file must be paired with --new-key-size" +msgstr "" + +#: src/utils_reencrypt.c:2034 msgid "No data segment parameters changed. Reencryption aborted." msgstr "" -#: src/utils_reencrypt.c:1282 +#: src/utils_reencrypt.c:2071 msgid "" "Encryption sector size increase on offline device is not supported.\n" "Activate the device first or use --force-offline-reencrypt option " "(dangerous!)." msgstr "" -#: src/utils_reencrypt.c:1322 src/utils_reencrypt_luks1.c:726 -#: src/utils_reencrypt_luks1.c:798 +#: src/utils_reencrypt.c:2113 src/utils_reencrypt_luks1.c:688 +#: src/utils_reencrypt_luks1.c:759 msgid "" "\n" "Reencryption interrupted." msgstr "" -#: src/utils_reencrypt.c:1327 +#: src/utils_reencrypt.c:2118 msgid "Resuming LUKS reencryption in forced offline mode.\n" msgstr "" -#: src/utils_reencrypt.c:1350 +#: src/utils_reencrypt.c:2141 #, c-format msgid "Device %s contains broken LUKS metadata. Aborting operation." msgstr "" -#: src/utils_reencrypt.c:1366 src/utils_reencrypt.c:1388 +#: src/utils_reencrypt.c:2157 src/utils_reencrypt.c:2179 #, c-format msgid "Device %s is already LUKS device. Aborting operation." msgstr "" -#: src/utils_reencrypt.c:1394 +#: src/utils_reencrypt.c:2185 #, c-format msgid "Device %s is already in LUKS reencryption. Aborting operation." msgstr "" -#: src/utils_reencrypt.c:1476 +#: src/utils_reencrypt.c:2268 msgid "LUKS2 decryption requires --header option." msgstr "" -#: src/utils_reencrypt.c:1524 +#: src/utils_reencrypt.c:2316 msgid "Command requires device as argument." msgstr "" -#: src/utils_reencrypt.c:1537 +#: src/utils_reencrypt.c:2329 #, c-format msgid "Conflicting versions. Device %s is LUKS1." msgstr "" -#: src/utils_reencrypt.c:1543 +#: src/utils_reencrypt.c:2335 #, c-format msgid "Conflicting versions. Device %s is in LUKS1 reencryption." msgstr "" -#: src/utils_reencrypt.c:1549 +#: src/utils_reencrypt.c:2341 #, c-format msgid "Conflicting versions. Device %s is LUKS2." msgstr "" -#: src/utils_reencrypt.c:1555 +#: src/utils_reencrypt.c:2347 #, c-format msgid "Conflicting versions. Device %s is in LUKS2 reencryption." msgstr "" -#: src/utils_reencrypt.c:1561 +#: src/utils_reencrypt.c:2353 msgid "LUKS2 reencryption already initialized. Aborting operation." msgstr "" -#: src/utils_reencrypt.c:1568 +#: src/utils_reencrypt.c:2360 msgid "Device reencryption not in progress." msgstr "" -#: src/utils_reencrypt_luks1.c:129 src/utils_blockdev.c:295 +#: src/utils_reencrypt_luks1.c:116 src/utils_blockdev.c:285 #, c-format msgid "Cannot exclusively open %s, device in use." msgstr "" -#: src/utils_reencrypt_luks1.c:143 src/utils_reencrypt_luks1.c:945 +#: src/utils_reencrypt_luks1.c:130 src/utils_reencrypt_luks1.c:883 msgid "Allocation of aligned memory failed." msgstr "" -#: src/utils_reencrypt_luks1.c:150 +#: src/utils_reencrypt_luks1.c:137 #, c-format msgid "Cannot read device %s." msgstr "" -#: src/utils_reencrypt_luks1.c:161 +#: src/utils_reencrypt_luks1.c:148 #, c-format msgid "Marking LUKS1 device %s unusable." msgstr "" -#: src/utils_reencrypt_luks1.c:177 +#: src/utils_reencrypt_luks1.c:164 #, c-format msgid "Cannot write device %s." msgstr "" -#: src/utils_reencrypt_luks1.c:226 +#: src/utils_reencrypt_luks1.c:213 msgid "Cannot write reencryption log file." msgstr "" -#: src/utils_reencrypt_luks1.c:282 +#: src/utils_reencrypt_luks1.c:268 msgid "Cannot read reencryption log file." msgstr "" -#: src/utils_reencrypt_luks1.c:293 +#: src/utils_reencrypt_luks1.c:279 msgid "Wrong log format." msgstr "" -#: src/utils_reencrypt_luks1.c:320 +#: src/utils_reencrypt_luks1.c:307 #, c-format msgid "Log file %s exists, resuming reencryption.\n" msgstr "" -#: src/utils_reencrypt_luks1.c:369 +#: src/utils_reencrypt_luks1.c:354 msgid "Activating temporary device using old LUKS header." msgstr "" -#: src/utils_reencrypt_luks1.c:379 +#: src/utils_reencrypt_luks1.c:364 msgid "Activating temporary device using new LUKS header." msgstr "" -#: src/utils_reencrypt_luks1.c:389 +#: src/utils_reencrypt_luks1.c:374 msgid "Activation of temporary devices failed." msgstr "" -#: src/utils_reencrypt_luks1.c:449 +#: src/utils_reencrypt_luks1.c:434 msgid "Failed to set data offset." msgstr "" -#: src/utils_reencrypt_luks1.c:455 +#: src/utils_reencrypt_luks1.c:440 msgid "Failed to set metadata size." msgstr "" -#: src/utils_reencrypt_luks1.c:463 +#: src/utils_reencrypt_luks1.c:448 #, c-format msgid "New LUKS header for device %s created." msgstr "" -#: src/utils_reencrypt_luks1.c:500 +#: src/utils_reencrypt_luks1.c:485 #, c-format msgid "%s header backup of device %s created." msgstr "" -#: src/utils_reencrypt_luks1.c:556 +#: src/utils_reencrypt_luks1.c:541 msgid "Creation of LUKS backup headers failed." msgstr "" -#: src/utils_reencrypt_luks1.c:685 +#: src/utils_reencrypt_luks1.c:670 #, c-format msgid "Cannot restore %s header on device %s." msgstr "" -#: src/utils_reencrypt_luks1.c:687 +#: src/utils_reencrypt_luks1.c:672 #, c-format msgid "%s header on device %s restored." msgstr "" -#: src/utils_reencrypt_luks1.c:917 src/utils_reencrypt_luks1.c:923 +#: src/utils_reencrypt_luks1.c:855 src/utils_reencrypt_luks1.c:861 msgid "Cannot open temporary LUKS device." msgstr "" -#: src/utils_reencrypt_luks1.c:928 src/utils_reencrypt_luks1.c:933 +#: src/utils_reencrypt_luks1.c:866 src/utils_reencrypt_luks1.c:871 msgid "Cannot get device size." msgstr "" -#: src/utils_reencrypt_luks1.c:968 +#: src/utils_reencrypt_luks1.c:913 msgid "IO error during reencryption." msgstr "" -#: src/utils_reencrypt_luks1.c:998 +#: src/utils_reencrypt_luks1.c:943 msgid "Provided UUID is invalid." msgstr "" -#: src/utils_reencrypt_luks1.c:1224 +#: src/utils_reencrypt_luks1.c:1045 +msgid "" +"Key file can be used only with --key-slot or with exactly one key slot " +"active." +msgstr "" + +#: src/utils_reencrypt_luks1.c:1169 msgid "Cannot open reencryption log file." msgstr "" -#: src/utils_reencrypt_luks1.c:1230 +#: src/utils_reencrypt_luks1.c:1175 msgid "" "No decryption in progress, provided UUID can be used only to resume " "suspended decryption process." msgstr "" -#: src/utils_reencrypt_luks1.c:1286 +#: src/utils_reencrypt_luks1.c:1231 #, c-format msgid "Reencryption will change: %s%s%s%s%s%s." msgstr "" -#: src/utils_reencrypt_luks1.c:1287 +#: src/utils_reencrypt_luks1.c:1232 msgid "volume key" msgstr "" -#: src/utils_reencrypt_luks1.c:1289 +#: src/utils_reencrypt_luks1.c:1234 msgid "set hash to " msgstr "" -#: src/utils_reencrypt_luks1.c:1290 +#: src/utils_reencrypt_luks1.c:1235 msgid ", set cipher to " msgstr "" -#: src/utils_blockdev.c:189 +#: src/utils_blockdev.c:179 #, c-format msgid "WARNING: Device %s already contains a '%s' partition signature.\n" msgstr "" -#: src/utils_blockdev.c:197 +#: src/utils_blockdev.c:187 #, c-format msgid "WARNING: Device %s already contains a '%s' superblock signature.\n" msgstr "" -#: src/utils_blockdev.c:219 src/utils_blockdev.c:302 src/utils_blockdev.c:354 +#: src/utils_blockdev.c:209 src/utils_blockdev.c:292 src/utils_blockdev.c:344 msgid "Failed to initialize device signature probes." msgstr "" -#: src/utils_blockdev.c:282 +#: src/utils_blockdev.c:272 #, c-format msgid "Failed to stat device %s." msgstr "" -#: src/utils_blockdev.c:297 +#: src/utils_blockdev.c:287 #, c-format msgid "Failed to open file %s in read/write mode." msgstr "" -#: src/utils_blockdev.c:317 +#: src/utils_blockdev.c:307 #, c-format msgid "Existing '%s' partition signature on device %s will be wiped." msgstr "" -#: src/utils_blockdev.c:320 +#: src/utils_blockdev.c:310 #, c-format msgid "Existing '%s' superblock signature on device %s will be wiped." msgstr "" -#: src/utils_blockdev.c:323 +#: src/utils_blockdev.c:313 msgid "Failed to wipe device signature." msgstr "" -#: src/utils_blockdev.c:330 +#: src/utils_blockdev.c:320 #, c-format msgid "Failed to probe device %s for a signature." msgstr "" -#: src/utils_args.c:65 +#: src/utils_args.c:52 #, c-format msgid "Invalid size specification in parameter --%s." msgstr "" -#: src/utils_args.c:125 +#: src/utils_args.c:112 #, c-format msgid "Option --%s is not allowed with %s action." msgstr "" -#: tokens/ssh/cryptsetup-ssh.c:123 +#: src/utils_key_description.c:66 +msgid "" +"Type specification in --link-vk-to-keyring keyring specification is ignored." +msgstr "" + +#: src/utils_key_description.c:131 +msgid "Key types have to be the same for both volume keys." +msgstr "" + +#: src/utils_key_description.c:136 +msgid "Both volume keys have to be linked to the same keyring." +msgstr "" + +#: src/utils_key_description.c:146 +msgid "You need to supply more key names." +msgstr "" + +#: src/utils_key_description.c:150 +msgid "Invalid --link-vk-to-keyring value." +msgstr "" + +#: src/utils_keyslot_check.c:114 +#, c-format +msgid "Keyslot %d binary data could be corrupted.\n" +msgstr "" + +#: src/utils_keyslot_check.c:124 +#, c-format +msgid " Suspected offset: 0x%\n" +msgstr "" + +#: src/utils_keyslot_check.c:127 +msgid " Subsequent suspected offsets are suppressed.\n" +msgstr "" + +#: src/utils_keyslot_check.c:178 src/utils_keyslot_check.c:183 +#, c-format +msgid "Keyslot %d cannot be read from the device." +msgstr "" + +#: src/utils_keyslot_check.c:194 +#, c-format +msgid "" +"You can use hexdump -v -C -n 128 -s \"%s\" to inspect the " +"data.\n" +msgstr "" + +#: tokens/ssh/cryptsetup-ssh.c:110 msgid "Failed to write ssh token json." msgstr "" -#: tokens/ssh/cryptsetup-ssh.c:141 +#: tokens/ssh/cryptsetup-ssh.c:128 msgid "" "Experimental cryptsetup plugin for unlocking LUKS2 devices with token " "connected to an SSH server\vThis plugin currently allows only adding a token " @@ -4044,151 +4252,151 @@ msgid "" "user and paths) will be stored in the LUKS2 header in plaintext." msgstr "" -#: tokens/ssh/cryptsetup-ssh.c:151 +#: tokens/ssh/cryptsetup-ssh.c:138 msgid " " msgstr "" -#: tokens/ssh/cryptsetup-ssh.c:154 +#: tokens/ssh/cryptsetup-ssh.c:141 msgid "Options for the 'add' action:" msgstr "" -#: tokens/ssh/cryptsetup-ssh.c:155 +#: tokens/ssh/cryptsetup-ssh.c:142 msgid "IP address/URL of the remote server for this token" msgstr "" -#: tokens/ssh/cryptsetup-ssh.c:156 +#: tokens/ssh/cryptsetup-ssh.c:143 msgid "Username used for the remote server" msgstr "" -#: tokens/ssh/cryptsetup-ssh.c:157 +#: tokens/ssh/cryptsetup-ssh.c:144 msgid "Path to the key file on the remote server" msgstr "" -#: tokens/ssh/cryptsetup-ssh.c:158 +#: tokens/ssh/cryptsetup-ssh.c:145 msgid "Path to the SSH key for connecting to the remote server" msgstr "" -#: tokens/ssh/cryptsetup-ssh.c:160 +#: tokens/ssh/cryptsetup-ssh.c:147 msgid "Path to directory containinig libcryptsetup external tokens" msgstr "" -#: tokens/ssh/cryptsetup-ssh.c:161 +#: tokens/ssh/cryptsetup-ssh.c:148 msgid "" "Keyslot to assign the token to. If not specified, token will be assigned to " "the first keyslot matching provided passphrase." msgstr "" -#: tokens/ssh/cryptsetup-ssh.c:163 +#: tokens/ssh/cryptsetup-ssh.c:150 msgid "Generic options:" msgstr "" -#: tokens/ssh/cryptsetup-ssh.c:164 +#: tokens/ssh/cryptsetup-ssh.c:151 msgid "Shows more detailed error messages" msgstr "" -#: tokens/ssh/cryptsetup-ssh.c:165 +#: tokens/ssh/cryptsetup-ssh.c:152 msgid "Show debug messages" msgstr "" -#: tokens/ssh/cryptsetup-ssh.c:166 +#: tokens/ssh/cryptsetup-ssh.c:153 msgid "Show debug messages including JSON metadata" msgstr "" -#: tokens/ssh/cryptsetup-ssh.c:281 +#: tokens/ssh/cryptsetup-ssh.c:268 msgid "Failed to open and import private key:\n" msgstr "" -#: tokens/ssh/cryptsetup-ssh.c:285 +#: tokens/ssh/cryptsetup-ssh.c:272 msgid "Failed to import private key (password protected?).\n" msgstr "" #. TRANSLATORS: SSH credentials prompt, e.g. "user@server's password: " -#: tokens/ssh/cryptsetup-ssh.c:287 +#: tokens/ssh/cryptsetup-ssh.c:274 #, c-format msgid "%s@%s's password: " msgstr "" -#: tokens/ssh/cryptsetup-ssh.c:376 +#: tokens/ssh/cryptsetup-ssh.c:363 #, c-format msgid "Failed to parse arguments.\n" msgstr "" -#: tokens/ssh/cryptsetup-ssh.c:387 +#: tokens/ssh/cryptsetup-ssh.c:374 #, c-format msgid "An action must be specified\n" msgstr "" -#: tokens/ssh/cryptsetup-ssh.c:393 +#: tokens/ssh/cryptsetup-ssh.c:380 #, c-format msgid "Device must be specified for '%s' action.\n" msgstr "" -#: tokens/ssh/cryptsetup-ssh.c:398 +#: tokens/ssh/cryptsetup-ssh.c:385 #, c-format msgid "SSH server must be specified for '%s' action.\n" msgstr "" -#: tokens/ssh/cryptsetup-ssh.c:403 +#: tokens/ssh/cryptsetup-ssh.c:390 #, c-format msgid "SSH user must be specified for '%s' action.\n" msgstr "" -#: tokens/ssh/cryptsetup-ssh.c:408 +#: tokens/ssh/cryptsetup-ssh.c:395 #, c-format msgid "SSH path must be specified for '%s' action.\n" msgstr "" -#: tokens/ssh/cryptsetup-ssh.c:413 +#: tokens/ssh/cryptsetup-ssh.c:400 #, c-format msgid "SSH key path must be specified for '%s' action.\n" msgstr "" -#: tokens/ssh/cryptsetup-ssh.c:420 +#: tokens/ssh/cryptsetup-ssh.c:407 #, c-format msgid "Failed open %s using provided credentials.\n" msgstr "" -#: tokens/ssh/cryptsetup-ssh.c:437 +#: tokens/ssh/cryptsetup-ssh.c:424 #, c-format msgid "Only 'add' action is currently supported by this plugin.\n" msgstr "" -#: tokens/ssh/ssh-utils.c:46 +#: tokens/ssh/ssh-utils.c:33 msgid "Cannot create sftp session: " msgstr "" -#: tokens/ssh/ssh-utils.c:53 +#: tokens/ssh/ssh-utils.c:40 msgid "Cannot init sftp session: " msgstr "" -#: tokens/ssh/ssh-utils.c:59 +#: tokens/ssh/ssh-utils.c:46 msgid "Cannot open sftp session: " msgstr "" -#: tokens/ssh/ssh-utils.c:66 +#: tokens/ssh/ssh-utils.c:53 msgid "Cannot stat sftp file: " msgstr "" -#: tokens/ssh/ssh-utils.c:74 +#: tokens/ssh/ssh-utils.c:61 msgid "Not enough memory.\n" msgstr "" -#: tokens/ssh/ssh-utils.c:81 +#: tokens/ssh/ssh-utils.c:68 msgid "Cannot read remote key: " msgstr "" -#: tokens/ssh/ssh-utils.c:122 +#: tokens/ssh/ssh-utils.c:109 msgid "Connection failed: " msgstr "" -#: tokens/ssh/ssh-utils.c:132 +#: tokens/ssh/ssh-utils.c:119 msgid "Server not known: " msgstr "" -#: tokens/ssh/ssh-utils.c:160 +#: tokens/ssh/ssh-utils.c:147 msgid "Public key auth method not allowed on host.\n" msgstr "" -#: tokens/ssh/ssh-utils.c:171 +#: tokens/ssh/ssh-utils.c:158 msgid "Public key authentication error: " msgstr ""