Skip to content
Yubikey full disk encryption
Shell
Latest commit b2ab151 Jan 17, 2013 @tfheen Merge pull request #3 from zobelhelas/master
Fix Depends:
Failed to load latest commit information.
debian Fix Depends to "yubikey-personalization" Jan 17, 2013
README Write up some docs Mar 13, 2011
helper Add udevadm settle to make bootups with the key plugged in work better May 4, 2011
hook
script Initial implementation Mar 13, 2011

README

ykfde - yubikey-based full disk encryption

Quick start:

install the package
uuidgen > /boot/yubikey-challenge
ykchalresp $(cat /boot/yubikey-challenge)
cryptsetup luksAddKey /dev/sda2 /boot/yubikey-challenge

On bootup, you will be asked to insert a yubikey (2.2 or newer) which
will then provide the response.  If you do not want to use a yubikey,
press enter and then enter a normal passphrase during bootup.

Limitations/bugs:
- uses the default ykchalresp settings, meaning no support for slot 2
- does not update the challenge after each boot.
Something went wrong with that request. Please try again.