Remote Exploit Forums

Go Back   Remote Exploit Forums > BackTrack 4 (pre) Final > BackTrack 4 Howto


BackTrack 4 Howto Tutorials and Howtos about BackTrack 4 (NOT for requesting tutorials or how to do anything)

Reply
 
LinkBack Thread Tools Display Modes
  #11 (permalink)  
Old 08-22-2009, 06:38 AM
Senior Member
 
Join Date: Jul 2007
Posts: 104
Default

Try this one.

On the keymap subject, I don't know what else to tell you except to check if you have a bios setting that turns on number lock at boot.
Reply With Quote
  #12 (permalink)  
Old 08-23-2009, 01:13 AM
Member
 
Join Date: Nov 2006
Posts: 61
Default

Well, I used your initrd and I get the same issue. (The keyboard issue as usual, I'll just use a different password to accomodate). On the computer where the keyboard did work fine, the first password worked perfectly, but then once again, the second password prompt waited no more than 8 seconds before continuing to boot. It just bypassed it. (in fact, typing my password just showed up on the screen, so it's not even expecting one.

Not sure what log I should check (can't find casper.log...if it's even relevent), to see what the error is, because unlike at the last password, backtrack can continue booting without accessing the changes partition, so maybe it's an unrecognized UUID or something.

I'll update back when I have a different password..one that'll work on my laptop, because who knows, it could be a individual computer issue again (all three of the computers i've tested on have given different results haha).
Reply With Quote
  #13 (permalink)  
Old 08-23-2009, 04:53 AM
Senior Member
 
Join Date: Jul 2007
Posts: 104
Default

If I understand you correctly, your system is decrypting the filesystem.squashfs file and is able to boot; just not with changes? If so, that's half the battle.

The contents of casper.log should help us figure out what it's doing. If your system is booted I believe casper.log is located at /var/log/casper.log. If not, try "locate casper.log" to try to find it.

Also, just to make sure, can you post the initrd you are using? It can't hurt for me to take a look.
Reply With Quote
  #14 (permalink)  
Old 08-23-2009, 12:13 PM
Member
 
Join Date: Nov 2006
Posts: 61
Default

Yep! that's right.

Casper.log does indeed point out the problem.

Right after where it says "Enter passphrase" and "command successful" (The first password)...it then asks again for a passphrase (the changes). And that's followed by a "Command Failed: Cannot access this device"

Here is my initrd.gz file. It could be that I'm not entering the UUID properly, but I believe I did it correctly. And that is the correct UUID, I'm sure. Because I'm not sure what else would prevent access to the changes partition.

I'm going to run the procedure through clean from start to finish with a password that'll work on both computers.
Reply With Quote
  #15 (permalink)  
Old 08-23-2009, 04:28 PM
Senior Member
 
Join Date: Jul 2007
Posts: 104
Default

I think we have it licked now, in your initrd, on the cryptsetup command (line 387 in the casper file) you have...
Code:
cryptsetup luksOpen /dev/disk/a9f300c7-7156-44a3-be48-560fb189c296 casper-rw >&6
It needs to be...
Code:
cryptsetup luksOpen /dev/disk/by-uuid/a9f300c7-7156-44a3-be48-560fb189c296 casper-rw >&6
That would be why your logs are telling you the device does not exist.

If you are starting over again, make sure you update the UUID in there.
Reply With Quote
  #16 (permalink)  
Old 08-25-2009, 12:32 AM
Member
 
Join Date: Nov 2006
Posts: 61
Default

Gah...silly mistake!

Thanks for everything, works beautifully.

Startup is a little slower, but everything runs at a very manageable rate.
Reply With Quote
  #17 (permalink)  
Old 08-25-2009, 03:03 AM
Senior Member
 
Join Date: Jul 2007
Posts: 104
Default

It happens.

I'm glad to hear you got it working and it runs at a usable speed.
The extra start up time is part of the price you have to pay to have your data encrypted; it's worth it though.
Reply With Quote
  #18 (permalink)  
Old 08-25-2009, 05:44 AM
Member
 
Join Date: Nov 2006
Posts: 61
Default

Too bad the encryption worked on my buddy's computer only...

I tried changing the passphrases to keys with no special attributes to them, still no luck. casper.log says that it's still the wrong password.

The keyboard works fine in the initramfs (I tried just typing in my password and all the characters showed up fine).

Really not sure what to do with this one. I know the 1520 Vostro is used to having keyboard issues with backtrack (at one point when using the encrypted liveUSB it wouldn't recognize any keystrokes at all). So I edited the boot parameters and it worked again, but still no luck when typing in passwords.
Reply With Quote
  #19 (permalink)  
Old 08-25-2009, 10:39 PM
Senior Member
 
Join Date: Jul 2007
Posts: 104
Default

So the encryption is working, just not on your laptop? I don't know what to tell you about that one. As I've said before, I know little to nothing about keymaps. Sorry.
Reply With Quote
  #20 (permalink)  
Old 08-26-2009, 01:02 AM
Member
 
Join Date: Nov 2006
Posts: 61
Default

is there anything I can add to the initrd.gz that would for test purposes print out what I typed in?
Reply With Quote
Reply

Bookmarks

Tags
encryption, esc201, initrd, luks, usb

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT. The time now is 01:32 PM.


Powered by vBulletin® Version 3.8.4
Copyright ©2000 - 2009, Jelsoft Enterprises Ltd.
Search Engine Optimization by vBSEO 3.3.2