[ANNOUNCE] cryptsetup 2.3.2
Milan Broz <[email protected]>
| Newsgroups | gmane.linux.kernel.device-mapper.dm-crypt |
|---|---|
| Message-ID | <[email protected]> |
The cryptsetup 2.3.2 stable release is available at
https://gitlab.com/cryptsetup/cryptsetup
Please note that release packages are located on kernel.org
https://www.kernel.org/pub/linux/utils/cryptsetup/v2.3/
Feedback and bug reports are welcomed.
Cryptsetup 2.3.2 Release Notes
==============================
Stable bug-fix release.
All users of cryptsetup 2.x should upgrade to this version.
Changes since version 2.3.1
~~~~~~~~~~~~~~~~~~~~~~~~~~~
* Support compilation with json-c library version 0.14.
* Update FAQ document for some LUKS2 specific information.
* Add option to dump content of LUKS2 unbound keyslot:
cryptsetup luksDump --unbound -S <slot> <device>
or optionally with --master-key-file option.
The slot number --key-slot (-S) option is mandatory here.
An unbound keyslot store a key is that is not assigned to data
area on disk (LUKS2 allows to store arbitrary keys).
* Rephrase some error messages and remove redundant end-of-lines.
* Add support for discards (TRIM) for standalone dm-integrity devices.
Linux kernel 5.7 adds support for optional discard/TRIM operation
over dm-integrity devices.
It is now supported through --allow-discards integritysetup option.
Note you need to add this flag in all activation calls.
Note that this option cannot be used for LUKS2 authenticated encryption
(that uses dm-integrity for storing additional per-sector metadata).
* Fix cryptsetup-reencrypt to work on devices that do not allow
direct-io device access.
* Fix a crash in the BitLocker-compatible code error path.
* Fix Veracrypt compatible support for longer (>64 bytes) passphrases.
It allows some older images to be correctly opened again.
The issue was introduced in version 2.3.1.
_______________________________________________
dm-crypt mailing list
[email protected]
https://www.saout.de/mailman/listinfo/dm-crypt
signature.asc
(application/pgp-signature, 833 B)
-----BEGIN PGP SIGNATURE----- iQIzBAEBCAAdFiEEKikYJD/eRmSNBob52bBXe9k+mPwFAl6q7NgACgkQ2bBXe9k+ mPxOQw//daAciCJhIWIQ5daV49DNs8y1nBpubM27Pb5TxVf9Dc3WsXQKrXwbVoTu /JilnTe7Sr1XfJ1lv4Pa2igIUm0SS8EBaLPXEmsheCh+RNX0kMWP0vPzAUxcAKZO ZtxsAmVcOxL2s/awNXqh/bGJeg2ZM5ta1ZW/tDTEiHeE1OXhw/pp4JFvS7JTO2u9 6dMZj5pi6CVZONvvS59tn213MDeos8IuWRnNwu4RD0AAixzLayX+iSQsNhFgFQzl hanDC3jI6ZJyCNaN81SLbIaFOn5e/PLB7YnmhL3Y1Zof34l7QKpf1hJYU3losRx8 XNYXgEJnrdPXjDM/2AiazU1YDuwaAI47oJbMhkmP1z1Q6IvJqetwrUvPRv8XFHGV 1tYqNnPPhOPrSSODuBDWD5bFyF1/lyBkLoevR9tWhscTJAFPJAVmMOVn+Rj6CIyi 3vvpA3tPJiGKCP7JQ9cmnOUKsi2cOgz15YgQPk/Ke3ZZuMoLYhKYKCiwpji1fgQj oPxArfaM/vEEojBFmER9KhpseROlTu0Yq2vZifj5AYL0jKvezW74HhSBiuoUU9Hz 7OPOtMMWL9p9zj53/es2uVJ3kkdfRExEoJpUCDo4V3R31ziDAS94bJZkCh3KA+ND FMRJ1lDeN7e1vc0656eRaVPkogJzBiLKhU8IkRN7GN9DddLuvGo= =Q6pL -----END PGP SIGNATURE-----