-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Tue, 09 Aug 2022 01:40:50 +0200 Source: cryptsetup Architecture: source Version: 2:2.5.0-2 Distribution: unstable Urgency: low Maintainer: Debian Cryptsetup Team <pkg-cryptsetup-devel@alioth-lists.debian.net> Changed-By: Guilhem Moulin <guilhem@debian.org> Closes: 928943 983318 1010708 1016455 Changes: cryptsetup (2:2.5.0-2) unstable; urgency=low . [ Matthias Klose ] * Add support for 'noudeb' build profile. (Closes: #983318) . [ Christoph Anton Mitterer ] * initramfs hook: align busybox check on klibc-utils's hook. . [ Benjamin Drung ] * initramfs hook: Fix broken compatibility with OpenSSL3 when cryptsetup needs legacy hashes (currently ripemd160 and whirlpool). (LP: #1979159) . [ Guilhem Moulin ] * New DEP-8 test for crude checks of the initramfs hook. * Minor changes to the legacy.so inclusion logic. * DEP-8: Add checks for OpenSSL's legacy.so inclusion. * d/rules: Inspect DEB_BUILD_* with $(filter ,) not $(findstring ,). * initramfs boot script: Remove custom LVM handling. Since 2.03.15-1 lvm2 doesn't ship an initramfs boot script anymore and relies solely on udev rules instead. We therefore don't have to manually activate LVs/VGs anymore, but cryptsetup-initramfs now conflicts with earlier lvm2 versions. (Closes: #928943) * Override lintian tag 'conflicts-with-version' given the above. * initramfs hook: Don't overwrite crypttab(5) source to /dev/mapper/$NAME for mapped devices. (Closes: #1016455) * initramfs hook: Preserve crypttab source specifications and devices starting with /dev/disk/by- or /dev/mapper/. * d/README.initramfs: Improve section about cryptopts= kernel parameter. * d/Debian.README: Mention that systemd masks /etc/init.d/cryptdisks. * Rename systemd_cryptsetup-suspend.conf to systemd/cryptsetup-suspend.conf. * cryptsetup-suspend-wrapper: Fix grep calls in some corner cases such as template cgroups. * cryptsetup-suspend-wrapper: Avoid double slash in cgroup paths. * cryptsetup-suspend-wrapper: Consolidate style. (Closes: #1010708) * d/t/cryptroot-*: Relax the kernel.deb regex to account for release candidates. * d/t/cryptroot-*: Add more partition type GUIDs. * d/t/cryptroot-*: Improve sources.list(5) generation. * d/t/cryptroot-*: Make APT repository Origin and URI configurable. * d/t/cryptroot-*: Start udevd before setting up the guest. * d/t/cryptroot-*: Use a separate /run partition when bootstrapping. * Run `chmod +x d/t/cryptdisks d/t/utils/init` for consistency. * d/t/cryptroot-*.d/config: Remove 'cryptsetup' from PKGS_EXTRA as it's only needed for cryptroot-sysvinit. * d/t/cryptroot-sysvinit: Rename 'rootfs.key' keyfile to 'homefs.key' which better describes the purpose of the keyfile. * d/t/cryptroot-*: Replace /target with '$ROOT'. * d/t/cryptroot-*: Rename 'testvg' Volume Group to 'cryptvg'. * d/t/cryptroot-*: Add note about testing cryptsetup-suspend. * d/t: Add convenience wrapper script for local cryptroot-* test runs. * New DEP-8 test for LVM-on-MD-on-LUKS2 layout backed by 4 independently encrypted partitions (all unlocked at initramfs stage). * New DEP-8 test for a complex nested block device stack. * Salsa CI: Disable autopkgtest job for now. Checksums-Sha1: 5e056e82f642be9f2db40a66cfe12429310a1fe3 3596 cryptsetup_2.5.0-2.dsc 5d155ed1901d12e62e912ad442c60fa0c885afc4 149912 cryptsetup_2.5.0-2.debian.tar.xz bf8de4cb5c1a25fe4e5c517cc1648220da4ca931 11519 cryptsetup_2.5.0-2_amd64.buildinfo Checksums-Sha256: 1390dda45690044ea58fb55c024e883613b18e555060b58a2902ad47fdeee64d 3596 cryptsetup_2.5.0-2.dsc af7a7d14527f400253e820de6fd58187d698382cd20e958fb384d8886f160c9d 149912 cryptsetup_2.5.0-2.debian.tar.xz 10e0539386acc21e4dd0c7eca4f0b3f1baba8466ee71b070daac5b999ab8bc77 11519 cryptsetup_2.5.0-2_amd64.buildinfo Files: 1ebe8440ad664d370313494db2fb7a31 3596 admin optional cryptsetup_2.5.0-2.dsc 010bf5f299f384455548c5e5a8cc0023 149912 admin optional cryptsetup_2.5.0-2.debian.tar.xz 351c9ece81dbf9e8ffba3a46d40c9fd9 11519 admin optional cryptsetup_2.5.0-2_amd64.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEERpy6p3b9sfzUdbME05pJnDwhpVIFAmLxoEgACgkQ05pJnDwh pVImiBAAtSV2vwCEEhTqA+6CB85ZJymg/yWnMRDsBMqP2b2uCuq42fuCvfeJifND AlJX1cEoJSDkSihkq8f/BE+6OkP8mpzsuTI5lNiT/Z+69yW2rQJIMFRJTuGEW91i RP93PGhGWupyu/1kmkpo01X4HmqDVyxIu34uLHq8lwkdRtf99wgbb7dXdvqVMzmg EhIiz05HRlJRiK8MPRZraGFSJWUfWzWH+fTH6mWjUFpmgBFgONcyB0S+/xGugp7H Vv4fVI1ddOLJainiJq5ui1B//X8Rzl1JFgUPublyXTzhP4I9UemBCoLp1bITUtne lypRYSEHA0Td7nVICoapl5En7FwEIEM8XoXvvsn7ROcXeOKoSbnY820raMzDTh3c dseT7RUEopQDCzfi+Vl9hkYB6IBYPNZF8QB4raimwUVP/3fUNKgAc3XSIxM+/Al2 1X3cvahbwny5DbDAnRC2qSRtcne0+HqA1khjwZx05+zcGIZZqc0BkmyE4pSQVScX 10fmTGRWAanvcr35DGAj7mg4RfSLalCbPnFNG7+0u/Nd5MuYKQW4WqHhP2SUkI/r kwJNtK+2KtMauwxWeBX8I+xvPvEJ4kEbxiRLIGHN9mCSxKajeQY65BXCkU0bdJLi m7oqEsomgr6W0FGb4Imquk3B0CrjZHmj38MMgfv7c9evWokiCpg= =9gmG -----END PGP SIGNATURE-----