ZFS-TPM2-LOAD-KEY(8) System Manager's Manual ZFS-TPM2-LOAD-KEY(8)

zfs-tpm2-load-keyload tzpfms TPM2-encrypted ZFS dataset key

zfs-tpm2-load-key [-n] dataset

After verifying dataset was encrypted with tzpfms backend , unseals the key and loads it into dataset.

See zfs-tpm2-change-key(8) for a detailed description.

Do a no-op/dry run, can be used even if the key is already loaded. Equivalent to zfs load-key's -n option.

The tzpfms suite connects to a local tcsd(8) process (at localhost:30003) by default. Use the environment variable TZPFMS_TPM1X to specify a remote TCS hostname.

The TrouSerS tcsd(8) daemon will try /dev/tpm0, then /udev/tpm0, then /dev/tpm; by occupying one of the earlier ones with, for example, shell redirection, a later one can be selected.

The TrouSerS project page at https://sourceforge.net/projects/trousers.

The TPM 1.2 main specification index at https://trustedcomputinggroup.org/resource/tpm-main-specification.

To all who support further development, in particular:

https://todo.sr.ht/~nabijaczleweli/tzpfms

~nabijaczleweli/tzpfms@lists.sr.ht, archived at https://lists.sr.ht/~nabijaczleweli/tzpfms.

https://git.sr.ht/~nabijaczleweli/tzpfms

October 15, 2021 tzpfms 0.1-5