@heyjo
I just installed the latest system updates, rebooted, get some out of memory error, fixed that by disabling the integrated graphics in BIOS (no idea how that’s related, but it worked), then tried this post.
I made the hardlink, didn’t help. I tried the default/grub and mkinitcpio.conf changes, except with my hard drive ID, of course, got errors for “udev.log_priority=3” and “nowatchdog”, removed those, restarted and… well, I didn’t get a second password prompt… but it also didn’t boot anymore.
I also tried reverting to the version from my old post that I linked, since apparently some changed had happened in the meantime, that didn’t change anything. So now I’m again at the state from before, except with the hardlink (which seems to do nothing).
I’ll try some stuff with the first two replies next, but they’re a bit overwhelming. I didn’t really plan to puzzle together a bunch of system components myself, I just want a password prompt and then the system should boot… :(
@Yochanan
The line suggested here is what I had also just tried together with Grub changes. Making only this mkinitcpio.conf change didn’t change anything, but at least it didn’t break the boot.
Next I tried to puzzle together a line myself from the information in the wiki.
- It says that adding “
base” can provide a fallback shell if I also add “SYSTEMD_SULOGIN_FORCE=1” to the kernel parameters, which another page tells me should be at /boot/loader/entries/arch.conf. But I don’t even have /boot/loader. Is that reason for concern? Anyway, I guess I won’t add “base” for now.
- I have intentionally not added “
sd-vconsole” or “keymap”, because when I originally set up this system, the password prompt used the US keyboard layout and to get around that, I basically reverse-translated the intended password into a different one, so pressing the key labels in a way that looks like I’m typing the intended password instead gives the computer that modified password. Confusing to say, but intutive to use, as long as I don’t change it. The second password prompt actually uses the German keyboard layout (like the booted system), so there I need to use the reverse-translated password (and look it up every time).
I’ve now puzzled together these two lines, for systemd and busybox:
HOOKS=(systemd microcode modconf keyboard block sd-encrypt filesystems fsck)
HOOKS=(base udev microcode modconf keyboard block encrypt filesystems fsck)
Both work for booting, but both still require a second password input, even with German keyboard layout for some reason. And yes, I did run sudo mkinitcpio -P after every modification.
Some more command outputs and current Grub command line:
[fabian@nova ~]$ cat /etc/default/grub | grep -v -e ^# -e ^$
GRUB_DEFAULT=saved
GRUB_TIMEOUT=2
GRUB_DISTRIBUTOR="Manjaro"
GRUB_CMDLINE_LINUX_DEFAULT=“rd.luks.name=d74b9c8d-9bb0-4945-80a2-b917d8143295=luks-d74b9c8d-9bb0-4945-80a2-b917d8143295 root=/dev/mapper/luks-d74b9c8d-9bb0-4945-80a2-b917d8143295 nmi_watchdog=0”
GRUB_CMDLINE_LINUX=""
GRUB_PRELOAD_MODULES="part_gpt part_msdos"
GRUB_TIMEOUT_STYLE=menu
GRUB_TERMINAL_INPUT=console
GRUB_GFXMODE=auto
GRUB_GFXPAYLOAD_LINUX=keep
GRUB_DISABLE_RECOVERY=true
GRUB_COLOR_NORMAL="light-gray/black"
GRUB_COLOR_HIGHLIGHT="green/black"
GRUB_THEME="/usr/share/grub/themes/manjaro/theme.txt"
GRUB_SAVEDEFAULT=true
GRUB_DISABLE_OS_PROBER=false
GRUB_ENABLE_CRYPTODISK=y
[fabian@nova ~]$ cat /etc/modprobe.d/firewalld-sysctls.conf
install nf_conntrack /usr/bin/modprobe --ignore-install nf_conntrack $CMDLINE_OPTS && /sbin/sysctl --quiet --pattern 'net[.]netfilter[.]nf_conntrack.*' --system
[fabian@nova ~]$ cat /etc/modprobe.d/mhwd-gpu.conf
##
## Generated by mhwd - Manjaro Hardware Detection
##
blacklist nouveau
blacklist ttm
blacklist drm_kms_helper
blacklist drm
options nvidia "NVreg_DynamicPowerManagement=0x02"
[fabian@nova ~]$ cat /etc/modprobe.d/tuxedo_keyboard.conf
options tuxedo_keyboard color=RED
[fabian@nova ~]$ modprobe -c
blacklist nouveau
blacklist ttm
blacklist drm_kms_helper
blacklist drm
blacklist nouveau
blacklist nova_core
blacklist nova_drm
blacklist dvb_usb_rtl28xxu
blacklist e4000
blacklist rtl2832
blacklist uniwill_laptop
install nf_conntrack /usr/bin/modprobe --ignore-install nf_conntrack $CMDLINE_OPTS && /sbin/sysctl --quiet --pattern 'net[.]netfilter[.]nf_conntrack.*' --system
install mlx4_core /usr/bin/modprobe --ignore-install mlx4_core $CMDLINE_OPTS && (if [ -f /usr/lib/rdma/mlx4-setup.sh -a -f /etc/rdma/mlx4.conf ]; then /usr/lib/rdma/mlx4-setup.sh < /etc/rdma/mlx4.conf; fi; /usr/bin/modprobe mlx4_en; if /usr/bin/modinfo mlx4_ib > /dev/null 2>&1; then /usr/bin/modprobe mlx4_ib; fi)
install libnvdimm /usr/bin/ndctl load-keys ; /sbin/modprobe --ignore-install libnvdimm $CMDLINE_OPTS
install ib_qib modprobe -i ib_qib $CMDLINE_OPTS && /usr/lib/rdma/truescale-serdes.cmds start
options btusb reset=1
options nvidia "NVreg_DynamicPowerManagement=0x00"
options nvidia NVreg_UseKernelSuspendNotifiers=1
options nvidia NVreg_TemporaryFilePath=/var/tmp
options nvidia NVreg_PreserveVideoMemoryAllocations=1
options bonding max_bonds=0
options dummy numdummies=0
options ifb numifbs=0
options tuxedo_keyboard color=RED
options kvm enable_virt_at_load=0
softdep ext4 pre: crc32c
softdep cifs
softdep cifs
softdep cifs
softdep cifs
softdep cifs
softdep cifs
softdep cifs
softdep cifs
softdep cifs
softdep cifs
softdep cifs
softdep ksmbd pre: crc32
softdep ksmbd pre: gcm
softdep ksmbd pre: ccm
softdep ksmbd pre: aead2
softdep ksmbd pre: sha512
softdep ksmbd pre: sha256
softdep ksmbd pre: cmac
softdep ksmbd pre: aes
softdep ksmbd pre: nls
softdep ksmbd pre: md5
softdep ksmbd pre: hmac
softdep ksmbd pre: ecb
softdep btrfs pre: blake2b-256
softdep btrfs pre: sha256
softdep btrfs pre: xxhash64
softdep btrfs pre: crc32c
softdep f2fs pre: crc32
softdep bcachefs pre: xxhash
softdep bcachefs pre: poly1305
softdep bcachefs pre: chacha20
softdep bcachefs pre: sha256
softdep bcachefs pre: crc64
softdep bcachefs pre: crc32c
softdep lrw pre: ecb
softdep xts pre: ecb
softdep libcrc32c pre: crc32c
softdep irq_madera pre: madera
softdep gpio_madera pre: pinctrl-madera
softdep simatic_ipc_leds_gpio_core pre: platform:leds-gpio
softdep simatic_ipc_leds_gpio_apollolake pre: simatic-ipc-leds-gpio-core platform:apollolake-pinctrl
softdep simatic_ipc_leds_gpio_f7188x pre: simatic-ipc-leds-gpio-core gpio_f7188x
softdep simatic_ipc_leds_gpio_elkhartlake pre: simatic-ipc-leds-gpio-core platform:elkhartlake-pinctrl
softdep ipmi_msghandler post: ipmi_devintf
softdep arizona_i2c pre: arizona_ldo1
softdep arizona_spi pre: arizona_ldo1
softdep wm8994 pre: wm8994_regulator
softdep intel_lpss pre: platform:idma64
softdep dax_hmem pre: cxl_acpi
softdep cxl_acpi pre: cxl_port
softdep cxl_mem pre: cxl_port
softdep csiostor pre: cxgb4
softdep spi_pxa2xx_platform pre: dw_dmac
softdep dsa_loop pre: dsa_loop_bdinfo
softdep genet pre: mdio-bcm-unimac
softdep r8169 pre: realtek
softdep ohci_platform pre: ehci_platform
softdep mgb4 pre: platform:xiic-i2c platform:xilinx_spi spi-nor
softdep max31760 pre: regmap_i2c
softdep ufshcd_core pre: governor_simpleondemand
softdep qat_4xxx pre: crypto-intel_qat
softdep qat_420xx pre: crypto-intel_qat
softdep amd_pmf pre: amdtee
softdep intel_atomisp2_led pre: asus_nb_wmi
softdep intel_skl_int3472_tps68470 pre: clk-tps68470 tps68470-regulator
softdep pcengines_apuv2 pre: platform:gpio_amd_fch platform:leds-gpio platform:gpio_keys_polled
softdep simatic_ipc_batt_apollolake pre: simatic-ipc-batt platform:apollolake-pinctrl
softdep simatic_ipc_batt_elkhartlake pre: simatic-ipc-batt platform:elkhartlake-pinctrl
softdep simatic_ipc_batt_f7188x pre: simatic-ipc-batt gpio_f7188x platform:elkhartlake-pinctrl platform:alderlake-pinctrl
softdep sel3350_platform pre: pinctrl_broxton leds-gpio
softdep vfio post: vfio_iommu_type1 vfio_iommu_spapr_tce
softdep snd_sof_intel_hda pre: snd-hda-codec-hdmi
softdep act_mpls post: mpls_gso
softdep xt_LOG pre: nf_log_syslog
softdep xt_NFLOG pre: nfnetlink_log
softdep xt_TRACE pre: nf_log_syslog
softdep mpls_iptunnel post: mpls_gso
I’ve just changed that NVidia option to “0x00”, hoping to fix some unrelated issues.
All those mkinitcpio.conf changes don’t seem right to me, now that I’ve read the wiki some more. It seems like I can only use encryption or not use encryption, I can’t fix issues with it this way. The path to the key file is already in that config file, where it has been forever, but apparently it’s not used anymore for some reason. So maybe it’s just a bug?
And making Grub changes seem weird, too, because the Grub menu is already long gone when this second password prompt appears.
Mod edit: @mentions added and consecutive posts merged.