]> git.ipfire.org Git - thirdparty/systemd.git/commit
cryptenroll: use a different credential for new new PIN
authorLennart Poettering <lennart@poettering.net>
Mon, 19 Feb 2024 16:34:20 +0000 (17:34 +0100)
committerLennart Poettering <lennart@poettering.net>
Tue, 20 Feb 2024 15:50:00 +0000 (16:50 +0100)
commit7252be60833c67077f8a27177ccc62888a91c539
tree678ed61c19f25e5c0fd19f5f0484d43779807f39
parent251c71b62bb2f43dd6815c9a99e2d059a0ce2aef
cryptenroll: use a different credential for new new PIN

The TPM2 enrollment is the only of the three token enrollments where the
user picks a PIN at enrollment time (the others have a PIN set for the
token, not for the enrollment). Let's make sure it uses a different
credential for retrieving this PIN, in order to make sure people can
programmatically change PINs via credentials (in which case they need to
supply both).
src/cryptenroll/cryptenroll-tpm2.c