#!/bin/sh set -e echo "Unlocking via TPM" >&2 export TPM2TOOLS_TCTI="device:/dev/tpm0" /usr/bin/tpm2_unseal -c 0x81000000 -L sha256:0,1,4,5,7 if [ $? -eq 0 ]; then exit fi /lib/cryptsetup/askpass "Unlocking the disk fallback $CRYPTTAB_SOURCE ($CRYPTTAB_NAME)\nEnter passphrase: "