Score:0

Ubuntu Core 20 cannot start after install due to needing a recovery key

gq flag

I'm trying to install UC20 on an Optiplex 7040 Micro. It's set up in UEFI Secure Boot mode, the disk is completely clean, the TPM is clear. I'm able to get as far as applying the image to my disk, booting, and installing — which all ostensibly go fine. It's able to put keys away, encrypt everything, etc etc. However, without fail, after it reboots post install it demands a recovery key for the drive it just installed to. A key I don't have, because the installer never gives it to you. The specific error is that it cannot activate the encrypted device with TPM sealed key due to an invalid key data file. I'm at a loss as to what is happening here as, as mentioned, the system is clean prior to install. Any help and/or advice is appreciated. Cheers!

Edit to add: Disabling TPM Key Storage resolves this issue, in large part because encryption doesn't take place. It's almost as if the keys necessary to do the decryption aren't generated, or the material needed to do so isn't in the initial image.

mangohost

Post an answer

Most people don’t grasp that asking a lot of questions unlocks learning and improves interpersonal bonding. In Alison’s studies, for example, though people could accurately recall how many questions had been asked in their conversations, they didn’t intuit the link between questions and liking. Across four studies, in which participants were engaged in conversations themselves or read transcripts of others’ conversations, people tended not to realize that question asking would influence—or had influenced—the level of amity between the conversationalists.