Skip to content

remove unecessary dependency on 'network' module from 'clevis-pin-tpm1' dracut module - #572

Open
itspngu wants to merge 1 commit into
latchset:masterfrom
itspngu:remove-dracut-network-dependency
Open

itspngu wants to merge 1 commit into
latchset:masterfrom
itspngu:remove-dracut-network-dependency

Conversation

@itspngu

@itspngu itspngu commented Aug 10, 2026

Copy link
Copy Markdown

Fixes #571

@oldium

oldium commented Sep 13, 2026 •

Copy link
Copy Markdown
Contributor

The tpm1 pin (tcsd daemon) requires a working localhost connection, i.e. lo network interface setup, which is not always the case. It might be for the systemd path, but not for the non-systemd one. The easiest universal way of telling we need a working networking setup is a network dependency.

I can have a look at this and check on which setups this is needed. This needs to be tested in all supported scenarios.


depends() {
echo clevis network
echo clevis

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

The minimal working configuration taking into account systemd is the following:

Suggested change
echo clevis
local __depends="clevis"
if ! dracut_module_included "systemd"; then
__depends=$(printf '%s network' "${__depends}")
fi
echo "${__depends}"

@sarroutbi

Copy link
Copy Markdown
Collaborator

/packit test

@oldium

oldium commented Sep 21, 2026 •

Copy link
Copy Markdown
Contributor

Please do not merge, this will break TPM1 pin on non-Systemd boot. I am thinking about simply checking if lo is up on non-Systemd boot and set it up - instead of having the full network dependency. Systemd is doing this automatically.

@sarroutbi

Copy link
Copy Markdown
Collaborator

Please do not merge, this will break TPM1 pin on non-Systemd boot. I am thinking about simply checking if lo is up on non-Systemd boot and set it up - instead of having the full network dependency. Systemd is doing this automatically.

Maybe you can convert it to Draft for us to be aware of it not being completed yet

@oldium

oldium commented Sep 21, 2026

Copy link
Copy Markdown
Contributor

Maybe you can convert it to Draft for us to be aware of it not being completed yet

I am not the author of the change; I cannot do anything about it. I spotted the topic and made a review - there is 1 requested change from me to make it non-systemd-only. But a better solution is as I said above.

@sarroutbi

Copy link
Copy Markdown
Collaborator

/packit retest-failed

@oldium

oldium commented Sep 25, 2026

Copy link
Copy Markdown
Contributor

I have time this weekend, so I will prepare a solution completely without the network dependency. Stay tuned.

@oldium

oldium commented Sep 28, 2026

Copy link
Copy Markdown
Contributor

Fix updated in #579 - ensure the /etc/hosts is created when not copied otherwise.

@sarroutbi

Copy link
Copy Markdown
Collaborator

@itspngu : May I ask you to close this PR and centralize the change in #579 ?

@sarroutbi

Copy link
Copy Markdown
Collaborator

/packit retest-failed

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

Dracut module 'clevis-pin-tpm1' has unnecessary dependency on the 'network' module

3 participants