[?25lGNU GRUB version 2.02~beta3 +----------------------------------------------------------------------------+||||||||||||||||||||||||+----------------------------------------------------------------------------+ Use the ^ and v keys to select which entry is highlighted. Press enter to boot the selected OS, `e' to edit the commands before booting or `c' for a command-line.  *Gentoo GNU/Linux  Advanced options for Gentoo GNU/Linux             The highlighted entry will be executed automatically in 5s.  The highlighted entry will be executed automatically in 4s.  The highlighted entry will be executed automatically in 3s.  The highlighted entry will be executed automatically in 2s.  The highlighted entry will be executed automatically in 1s.  The highlighted entry will be executed automatically in 0s. [?25h Booting `Gentoo GNU/Linux' Loading Linux x86_64-4.7.10-hardened ... Loading initial ramdisk ... [ 0.000000] Linux version 4.7.10-hardened (root@nuckie) (gcc version 4.9.3 (Gentoo Hardened 4.9.3 p1.5, pie-0.6.4) ) #1 SMP Mon Dec 5 13:13:33 UTC 2016 [ 0.000000] Command line: BOOT_IMAGE=/kernel-genkernel-x86_64-4.7.10-hardened root=UUID=dca90cb8-53a9-41ce-a223-a91e1d31b6e2 ro console=tty0 console=ttyS0,9600n8 [ 0.000000] x86/fpu: xstate_offset[2]: 576, xstate_sizes[2]: 256 [ 0.000000] x86/fpu: Supporting XSAVE feature 0x001: 'x87 floating point registers' [ 0.000000] x86/fpu: Supporting XSAVE feature 0x002: 'SSE registers' [ 0.000000] x86/fpu: Supporting XSAVE feature 0x004: 'AVX registers' [ 0.000000] x86/fpu: Enabled xstate features 0x7, context size is 832 bytes, using 'standard' format. [ 0.000000] x86/fpu: Using 'eager' FPU context switches. [ 0.000000] e820: BIOS-provided physical RAM map: [ 0.000000] BIOS-e820: [mem 0x0000000000000000-0x000000000009f7ff] usable [ 0.000000] BIOS-e820: [mem 0x000000000009f800-0x000000000009ffff] reserved [ 0.000000] BIOS-e820: [mem 0x00000000000f0000-0x00000000000fffff] reserved [ 0.000000] BIOS-e820: [mem 0x0000000000100000-0x00000000dffadfff] usable [ 0.000000] BIOS-e820: [mem 0x00000000dffae000-0x00000000dfffffff] reserved [ 0.000000] BIOS-e820: [mem 0x00000000f8000000-0x00000000fbffffff] reserved [ 0.000000] BIOS-e820: [mem 0x0000000100000000-0x000000011effffff] usable [ 0.000000] NX (Execute Disable) protection: active [ 0.000000] SMBIOS 2.7 present. [ 0.000000] e820: last_pfn = 0x11f000 max_arch_pfn = 0x400000000 [ 0.000000] x86/PAT: Configuration [0-7]: WB WC UC- UC WB WC UC- WT [ 0.000000] e820: last_pfn = 0xdffae max_arch_pfn = 0x400000000 [ 0.000000] found SMP MP-table at [mem 0x000f2f30-0x000f2f3f] mapped at [ffff8800000f2f30] [ 0.000000] Using GB pages for direct mapping [ 0.000000] RAMDISK: [mem 0x35aff000-0x36d76fff] [ 0.000000] ACPI: Early table checksum verification disabled [ 0.000000] ACPI: RSDP 0x00000000000F30E0 000024 (v02 CORE ) [ 0.000000] ACPI: XSDT 0x00000000DFFB80E0 00005C (v01 CORE COREBOOT 00000000 CORE 00000000) [ 0.000000] ACPI: FACP 0x00000000DFFB96F0 0000F4 (v04 CORE COREBOOT 00000000 CORE 00000000) [ 0.000000] ACPI: DSDT 0x00000000DFFB8250 001496 (v02 AMD COREBOOT 00010001 INTL 20140114) [ 0.000000] ACPI: FACS 0x00000000DFFB8210 000040 [ 0.000000] ACPI: SSDT 0x00000000DFFB97F0 000045 (v02 CORE COREBOOT 0000002A CORE 0000002A) [ 0.000000] ACPI: APIC 0x00000000DFFB9840 00007E (v01 CORE COREBOOT 00000000 CORE 00000000) [ 0.000000] ACPI: HEST 0x00000000DFFB98C0 0001D0 (v01 CORE COREBOOT 00000000 CORE 00000000) [ 0.000000] ACPI: SSDT 0x00000000DFFB9A90 0048A6 (v02 AMD AGESA 00000002 MSFT 04000000) [ 0.000000] ACPI: SSDT 0x00000000DFFBE340 0007C8 (v01 AMD AGESA 00000001 AMD 00000001) [ 0.000000] ACPI: HPET 0x00000000DFFBEB10 000038 (v01 CORE COREBOOT 00000000 CORE 00000000) [ 0.000000] Zone ranges: [ 0.000000] DMA [mem 0x0000000000001000-0x0000000000ffffff] [ 0.000000] DMA32 [mem 0x0000000001000000-0x00000000ffffffff] [ 0.000000] Normal [mem 0x0000000100000000-0x000000011effffff] [ 0.000000] Movable zone start for each node [ 0.000000] Early memory node ranges [ 0.000000] node 0: [mem 0x0000000000001000-0x000000000009efff] [ 0.000000] node 0: [mem 0x0000000000100000-0x00000000dffadfff] [ 0.000000] node 0: [mem 0x0000000100000000-0x000000011effffff] [ 0.000000] Initmem setup node 0 [mem 0x0000000000001000-0x000000011effffff] [ 0.000000] ACPI: PM-Timer IO Port: 0x818 [ 0.000000] ACPI: LAPIC_NMI (acpi_id[0xff] high edge lint[0x1]) [ 0.000000] IOAPIC[0]: apic_id 4, version 33, address 0xfec00000, GSI 0-23 [ 0.000000] IOAPIC[1]: apic_id 5, version 33, address 0xfec20000, GSI 24-55 [ 0.000000] ACPI: INT_SRC_OVR (bus 0 bus_irq 0 global_irq 2 dfl dfl) [ 0.000000] ACPI: INT_SRC_OVR (bus 0 bus_irq 9 global_irq 9 low level) [ 0.000000] Using ACPI (MADT) for SMP configuration information [ 0.000000] ACPI: HPET id: 0x10228201 base: 0xfed00000 [ 0.000000] smpboot: Allowing 4 CPUs, 0 hotplug CPUs [ 0.000000] e820: [mem 0xe0000000-0xf7ffffff] available for PCI devices [ 0.000000] clocksource: refined-jiffies: mask: 0xffffffff max_cycles: 0xffffffff, max_idle_ns: 1910969940391419 ns [ 0.000000] setup_percpu: NR_CPUS:4 nr_cpumask_bits:4 nr_cpu_ids:4 nr_node_ids:1 [ 0.000000] percpu: Embedded 29 pages/cpu @ffff88011ec00000 s79448 r8192 d31144 u524288 [ 0.000000] Built 1 zonelists in Zone order, mobility grouping on. Total pages: 1027960 [ 0.000000] Kernel command line: BOOT_IMAGE=/kernel-genkernel-x86_64-4.7.10-hardened root=UUID=dca90cb8-53a9-41ce-a223-a91e1d31b6e2 ro console=tty0 console=ttyS0,9600n8 [ 0.000000] PID hash table entries: 4096 (order: 3, 32768 bytes) [ 0.000000] Dentry cache hash table entries: 524288 (order: 10, 4194304 bytes) [ 0.000000] Inode-cache hash table entries: 262144 (order: 9, 2097152 bytes) [ 0.000000] Memory: 4001400K/4177200K available (7630K kernel code, 413K rwdata, 3476K rodata, 2724K init, 1248K bss, 175800K reserved, 0K cma-reserved) [ 0.000000] Hierarchical RCU implementation. [ 0.000000] Build-time adjustment of leaf fanout to 64. [ 0.000000] NR_IRQS:4352 nr_irqs:1000 16 [ 0.000000] Console: colour dummy device 80x25 [ 0.000000] console [tty0] enabled [ 0.000000] console [ttyS0] enabled [ 0.000000] clocksource: hpet: mask: 0xffffffff max_cycles: 0xffffffff, max_idle_ns: 133484873504 ns [ 0.000000] tsc: Fast TSC calibration using PIT [ 0.000000] tsc: Detected 998.108 MHz processor [ 0.000077] Calibrating delay loop (skipped), value calculated using timer frequency.. 1996.21 BogoMIPS (lpj=998108) [ 0.126361] pid_max: default: 32768 minimum: 501 [ 0.181757] ACPI: Core revision 20160422 [ 0.256040] ACPI: 4 ACPI AML tables successfully acquired and loaded [ 0.332380] [ 0.350469] Security Framework initialized [ 0.399571] SELinux: Initializing. [ 0.441544] Mount-cache hash table entries: 8192 (order: 4, 65536 bytes) [ 0.521928] Mountpoint-cache hash table entries: 8192 (order: 4, 65536 bytes) [ 0.608641] PAX: slow and weak UDEREF enabled [ 0.660895] CPU: Physical Processor ID: 0 [ 0.708936] CPU: Processor Core ID: 0 [ 0.752826] mce: CPU supports 6 MCE banks [ 0.800929] LVT offset 1 assigned for vector 0xf9 [ 0.857294] Last level iTLB entries: 4KB 512, 2MB 8, 4MB 4 [ 0.922999] Last level dTLB entries: 4KB 512, 2MB 256, 4MB 128, 1GB 0 [ 1.054515] Freeing SMP alternatives memory: 36K (ffffffff820a9000 - ffffffff820b2000) [ 1.149703] smpboot: Max logical packages: 1 [ 1.200916] smpboot: APIC(0) Converting physical 0 to logical package 0 [ 1.280896] ..TIMER: vector=0x30 apic1=0 pin1=2 apic2=0 pin2=0 [ 1.462289] smpboot: CPU0: AMD GX-412TC SOC (family: 0x16, model: 0x30, stepping: 0x1) [ 1.557790] Performance Events: AMD PMU driver. [ 1.612299] ... version: 0 [ 1.660338] ... bit width: 48 [ 1.709445] ... generic registers: 4 [ 1.757480] ... value mask: 0000ffffffffffff [ 1.821115] ... max period: 00007fffffffffff [ 1.884763] ... fixed-purpose events: 0 [ 1.932810] ... event mask: 000000000000000f [ 1.997929] NMI watchdog: enabled on all CPUs, permanently consumes one hw-PMU counter. [ 2.094707] x86: Booting SMP configuration: [ 2.144902] .... node #0, CPUs: #1 [ 2.191111] PAX: slow and weak UDEREF enabled [ 2.308573] #2 [ 2.327859] PAX: slow and weak UDEREF enabled [ 2.445494] #3 [ 2.464693] PAX: slow and weak UDEREF enabled [ 2.581610] x86: Booted up 1 node, 4 CPUs [ 2.629634] smpboot: Total of 4 processors activated (7984.56 BogoMIPS) [ 2.714619] devtmpfs: initialized [ 2.754711] x86/mm: Memory block size: 128MB [ 2.831580] clocksource: jiffies: mask: 0xffffffff max_cycles: 0xffffffff, max_idle_ns: 1911260446275000 ns [ 2.967515] NET: Registered protocol family 16 [ 3.024097] cpuidle: using governor menu [ 3.071357] ACPI: bus type PCI registered [ 3.135414] PCI: Using configuration type 1 for base access [ 3.202180] PCI: Using configuration type 1 for extended access [ 3.292750] HugeTLB registered 1 GB page size, pre-allocated 0 pages [ 3.368863] HugeTLB registered 2 MB page size, pre-allocated 0 pages [ 3.493715] ACPI: Added _OSI(Module Device) [ 3.543797] ACPI: Added _OSI(Processor Device) [ 3.597035] ACPI: Added _OSI(3.0 _SCP Extensions) [ 3.653417] ACPI: Added _OSI(Processor Aggregator Device) [ 3.718946] ACPI: Executed 1 blocks of module-level executable AML code [ 3.825253] ACPI: Interpreter enabled [ 3.869151] ACPI: (supports S0 S5) [ 3.909971] ACPI: Using IOAPIC for interrupt routing [ 3.969523] HEST: Table parsing has been initialized. [ 4.030131] PCI: Using host bridge windows from ACPI; if necessary, use "pci=nocrs" and report a bug [ 4.155326] ACPI: PCI Root Bridge [PCI0] (domain 0000 [bus 00-ff]) [ 4.229383] acpi PNP0A08:00: _OSC: OS supports [ExtendedConfig ASPM ClockPM Segments MSI] [ 4.327932] acpi PNP0A08:00: _OSC: OS now controls [PCIeHotplug PME AER PCIeCapability] [ 4.424316] acpi PNP0A08:00: host bridge window expanded to [io 0x0000-0x0cf7 window]; [io 0x03b0-0x03df window] ignored [ 4.557173] PCI host bridge to bus 0000:00 [ 4.606265] pci_bus 0000:00: root bus resource [io 0x0000-0x0cf7 window] [ 4.687603] pci_bus 0000:00: root bus resource [io 0x0d00-0xffff window] [ 4.768917] pci_bus 0000:00: root bus resource [mem 0x000a0000-0x000bffff] [ 4.851286] pci_bus 0000:00: root bus resource [mem 0x000c0000-0x000dffff] [ 4.933657] pci_bus 0000:00: root bus resource [mem 0xe0000000-0xffffffff] [ 5.016039] pci_bus 0000:00: root bus resource [bus 00-ff] [ 5.085962] pci 0000:00:11.0: set SATA to AHCI mode [ 5.152958] pci 0000:00:02.2: PCI bridge to [bus 01] [ 5.214968] pci 0000:00:02.3: PCI bridge to [bus 02] [ 5.276905] pci 0000:00:02.4: PCI bridge to [bus 03] [ 5.337498] ACPI: PCI Interrupt Link [INTA] (IRQs *3 5 7 10 11 12 15) [ 5.416790] ACPI: PCI Interrupt Link [INTB] (IRQs *3 5 7 10 11 12 15) [ 5.496012] ACPI: PCI Interrupt Link [INTC] (IRQs 3 *5 7 10 11 12 15) [ 5.575306] ACPI: PCI Interrupt Link [INTD] (IRQs 3 5 *7 10 11 12 15) [ 5.654632] ACPI: PCI Interrupt Link [INTE] (IRQs 3 5 7 10 *11 12 15) [ 5.733864] ACPI: PCI Interrupt Link [INTF] (IRQs 3 5 7 *10 11 12 15) [ 5.813157] ACPI: Enabled 4 GPEs in block 00 to 1F [ 5.871587] vgaarb: loaded [ 5.907020] SCSI subsystem initialized [ 5.952234] ACPI: bus type USB registered [ 6.000403] usbcore: registered new interface driver usbfs [ 6.066195] usbcore: registered new interface driver hub [ 6.130002] usbcore: registered new device driver usb [ 6.191021] PCI: Using ACPI for IRQ routing [ 6.242148] NetLabel: Initializing [ 6.282987] NetLabel: domain hash size = 128 [ 6.335188] NetLabel: protocols = UNLABELED CIPSOv4 [ 6.394737] NetLabel: unlabeled traffic allowed by default [ 6.462006] clocksource: Switched to clocksource hpet [ 6.545353] pnp: PnP ACPI init [ 6.582688] system 00:00: [mem 0xfec10002-0xfec11001] has been reserved [ 6.663042] pnp: PnP ACPI: found 3 devices [ 6.729552] clocksource: acpi_pm: mask: 0xffffff max_cycles: 0xffffff, max_idle_ns: 2085701024 ns [ 6.835957] pci 0000:00:02.2: PCI bridge to [bus 01] [ 6.895427] pci 0000:00:02.2: bridge window [io 0x1000-0x1fff] [ 6.968468] pci 0000:00:02.2: bridge window [mem 0xfe600000-0xfe6fffff] [ 7.049827] pci 0000:00:02.3: PCI bridge to [bus 02] [ 7.109371] pci 0000:00:02.3: bridge window [io 0x2000-0x2fff] [ 7.182396] pci 0000:00:02.3: bridge window [mem 0xfe700000-0xfe7fffff] [ 7.263741] pci 0000:00:02.4: PCI bridge to [bus 03] [ 7.323301] pci 0000:00:02.4: bridge window [io 0x3000-0x3fff] [ 7.396297] pci 0000:00:02.4: bridge window [mem 0xfe800000-0xfe8fffff] [ 7.512081] NET: Registered protocol family 2 [ 7.614054] TCP established hash table entries: 32768 (order: 6, 262144 bytes) [ 7.700889] TCP bind hash table entries: 32768 (order: 7, 524288 bytes) [ 7.780600] TCP: Hash tables configured (established 32768 bind 32768) [ 7.858909] UDP hash table entries: 2048 (order: 4, 65536 bytes) [ 7.930928] UDP-Lite hash table entries: 2048 (order: 4, 65536 bytes) [ 8.031060] NET: Registered protocol family 1 [ 8.085247] Trying to unpack rootfs image as initramfs... [ 19.160046] Freeing initrd memory: 18912K (ffff880035aff000 - ffff880036d77000) [ 19.247655] PCI-DMA: Using software bounce buffering for IO (SWIOTLB) [ 19.324803] software IO TLB [mem 0xdbfae000-0xdffae000] (64MB) mapped at [ffff8800dbfae000-ffff8800dffadfff] [ 19.442702] perf: AMD NB counters detected [ 19.491867] perf: AMD L2I counters detected [ 19.542040] LVT offset 0 assigned for vector 0x400 [ 19.599539] perf: AMD IBS detected (0x000000ff) [ 19.660160] futex hash table entries: 1024 (order: 4, 65536 bytes) [ 19.742329] audit: initializing netlink subsys (disabled) [ 19.807212] audit: type=2000 audit(1481016088.576:1): initialized [ 19.881664] Initialise system trusted keyrings [ 19.935429] workingset: timestamp_bits=44 max_order=20 bucket_order=0 [ 20.151496] Key type asymmetric registered [ 20.200642] Asymmetric key parser 'x509' registered [ 20.263342] Block layer SCSI generic (bsg) driver version 0.4 loaded (major 251) [ 20.352080] io scheduler noop registered [ 20.399157] io scheduler deadline registered [ 20.461332] io scheduler cfq registered (default) [ 20.554489] pcieport 0000:00:02.2: Signaling PME through PCIe PME interrupt [ 20.638000] pci 0000:01:00.0: Signaling PME through PCIe PME interrupt [ 20.655400] tsc: Refined TSC clocksource calibration: 998.127 MHz [ 20.655407] clocksource: tsc: mask: 0xffffffffffffffff max_cycles: 0x1cc65b93289, max_idle_ns: 881590487074 ns [ 20.909269] pcieport 0000:00:02.3: Signaling PME through PCIe PME interrupt [ 20.992721] pci 0000:02:00.0: Signaling PME through PCIe PME interrupt [ 21.071137] pcieport 0000:00:02.4: Signaling PME through PCIe PME interrupt [ 21.154602] pci 0000:03:00.0: Signaling PME through PCIe PME interrupt [ 21.233055] ipmi message handler version 39.2 [ 21.285382] IPMI System Interface driver. [ 21.333572] ipmi_si: Unable to find any System Interface(s) [ 21.402771] input: Power Button as /devices/LNXSYSTM:00/LNXSYBUS:00/PNP0C0C:00/input/input0 [ 21.502819] ACPI: Power Button [PWRB] [ 21.546883] input: Power Button as /devices/LNXSYSTM:00/LNXPWRBN:00/input/input1 [ 21.635498] ACPI: Power Button [PWRF] [ 21.679466] clocksource: Switched to clocksource tsc [ 21.739124] Warning: Processor Platform Limit event detected, but not handled. [ 21.825754] Consider compiling CPUfreq support into your kernel. [ 21.899593] GHES: Failed to enable APEI firmware first mode. [ 21.967969] Serial: 8250/16550 driver, 4 ports, IRQ sharing enabled [ 22.064196] 00:02: ttyS0 at I/O 0x3f8 (irq = 4, base_baud = 115200) is a 16550A [ 22.416722] serial8250: ttyS1 at I/O 0x2f8 (irq = 3, base_baud = 115200) is a 16550A [ 22.511219] Linux agpgart interface v0.103 [ 22.577434] brd: module loaded [ 22.622184] loop: module loaded [ 22.660206] ehci_hcd: USB 2.0 'Enhanced' Host Controller (EHCI) Driver [ 22.738470] ehci-pci: EHCI PCI platform driver [ 22.792276] ehci-pci 0000:00:13.0: EHCI Host Controller [ 22.855188] ehci-pci 0000:00:13.0: new USB bus registered, assigned bus number 1 [ 22.943926] ehci-pci 0000:00:13.0: applying AMD SB700/SB800/Hudson-2/3 EHCI dummy qh workaround [ 23.048228] ehci-pci 0000:00:13.0: debug port 2 [ 23.102579] ehci-pci 0000:00:13.0: irq 18, io mem 0xfeb25400 [ 23.176403] ehci-pci 0000:00:13.0: USB 2.0 started, EHCI 1.00 [ 23.245545] usb usb1: New USB device found, idVendor=1d6b, idProduct=0002 [ 23.326937] usb usb1: New USB device strings: Mfr=3, Product=2, SerialNumber=1 [ 23.413468] usb usb1: Product: EHCI Host Controller [ 23.471899] usb usb1: Manufacturer: Linux 4.7.10-hardened ehci_hcd [ 23.545956] usb usb1: SerialNumber: 0000:00:13.0 [ 23.601857] hub 1-0:1.0: USB hub found [ 23.646860] hub 1-0:1.0: 2 ports detected [ 23.695468] ohci_hcd: USB 1.1 'Open' Host Controller (OHCI) Driver [ 23.769536] ohci-pci: OHCI PCI platform driver [ 23.822833] uhci_hcd: USB Universal Host Controller Interface driver [ 23.903631] i8042: PNP: No PS/2 controller found. Probing ports directly. [ 24.024400] usb 1-1: new high-speed USB device number 2 using ehci-pci [ 24.496323] usb 1-1: New USB device found, idVendor=0438, idProduct=7900 [ 24.576745] usb 1-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 24.663474] hub 1-1:1.0: USB hub found [ 24.708779] hub 1-1:1.0: 4 ports detected [ 25.061352] i8042: No controller found [ 25.106614] mousedev: PS/2 mouse device common for all mice [ 25.174051] rtc_cmos 00:01: RTC can wake from S4 [ 25.229878] rtc_cmos 00:01: rtc core: registered rtc_cmos as rtc0 [ 25.302976] rtc_cmos 00:01: alarms up to one day, 0 bytes nvram, hpet irqs [ 25.385490] hidraw: raw HID events driver (C) Jiri Kosina [ 25.450862] usbcore: registered new interface driver usbhid [ 25.517582] usbhid: USB HID core driver [ 25.564041] Initializing XFRM netlink socket [ 25.655438] NET: Registered protocol family 10 [ 25.734541] NET: Registered protocol family 17 [ 25.789011] microcode: CPU0: patch_level=0x07030105 [ 25.847476] microcode: CPU1: patch_level=0x07030105 [ 25.905942] microcode: CPU2: patch_level=0x07030105 [ 25.964469] microcode: CPU3: patch_level=0x07030105 [ 26.023129] microcode: Microcode Update Driver: v2.01 , Peter Oruba [ 26.129091] registered taskstats version 1 [ 26.178236] Loading compiled-in X.509 certificates [ 26.303163] Loaded X.509 cert 'Build time autogenerated kernel key: 1b8cf3258c654329ba93981f0c07cb1561c91bc6' [ 26.545946] Key type encrypted registered [ 26.594064] ima: No TPM chip found, activating TPM-bypass! [ 26.661115] rtc_cmos 00:01: setting system clock to 2016-12-06 09:21:45 UTC (1481016105) [ 26.761970] Freeing unused kernel memory: 2724K (ffffffff81e00000 - ffffffff820a9000) [ 26.855813] Write protecting the kernel read-only data: 12288k >> Activating mdev  >> Loading modules   :: Loading from pata: pata_pdc2027x pata_sil680 pata_cmd64x pata_hpt366 pata_hpt37x pata_hpt3x3 pata_hpt3x2n pata_it821x pata_artop pata_oldpiix pata_serverworks pata_pcmcia pata_it8213 pata_ali pata_amd pata_atiixp pata_pdc202xx_old pata_netcell pata_sis pata_hpt3x2n pata_marvell pata_jmicron pata_via  :: Loading from sata: sata_promise sata_sil sata_sil24 sata_svw sata_via sata_nv sata_sx4 sata_sis sata_uli sata_vsc sata_qstor ahci ata_piix sata_mv sata_inic162x pdc_adma  :: Loading from scsi: sd_mod sg sr_mod aic79xx aic7xxx arcmsr initio sym53c8xx imm mptbase mptscsih mptspi mptfc mptsas 3w-sas 3w-xxxx 3w-9xxx cciss hpsa sx8 aacraid megaraid_mbox megaraid_mm megaraid_sas qla2xxx lpfc scsi_transport_fc aic94xx  :: Loading from usb: usb-storage xhci-hcd xhci-pci sl811-hcd  :: Loading from firewire:  :: Loading from waitscan:  :: Loading from dmraid: dm-mod dm-mirror dm-crypt  :: Loading from mdadm: dm-mod dm-snapshot dm-mirror dm-raid dm-crypt raid0 raid1 raid456 raid5 raid6 raid10 linear  :: Loading from fs: ext2  :: Loading from net: atl1c bnx2 e1000 igb pcnet32 r8169 sky2 tg3 virtio_net vmxnet3  :: Loading from iscsi: scsi_transport_iscsi libiscsi iscsi_tcp  :: Loading from crypto: >> Determining root device ...  >> Detected real_root=/dev/sda3  >> Mounting /dev/sda3 as root...  >> Using mount -t auto -o ro  >> Booting (initramfs)  INIT: version 2.88 booting OpenRC 0.22.4 is starting up Gentoo Linux (x86_64) * /proc is already mounted * Mounting /run ... * /run/openrc: creating directory * /run/lock: creating directory * /run/lock: correcting owner * Caching service dependencies ... File descriptor 3 (pipe:[5324]) leaked on lvm invocation. Parent PID 2195: /bin/sh /run/lvm/lvmetad.socket: connect failed: No such file or directory WARNING: Failed to connect to lvmetad. Falling back to internal scanning. Service `netmount' needs non existent service `net' [ ok ] * Remounting devtmpfs on /dev ... [ ok ] * Mounting /dev/mqueue ... [ ok ] * Mounting /dev/shm ... [ ok ] * Creating list of required static device nodes for the current kernel ... [ ok ] * Autoloaded 0 module(s) * Mounting security filesystem ... [ ok ] * Mounting SELinux filesystem ... [ ok ] * Mounting persistent storage (pstore) filesystem ... [ ok ] * Mounting cgroup filesystem ... [ ok ] * Setting up tmpfiles.d entries for /dev ... [ ok ] * /etc/init.d/udev uses runscript, please convert to openrc-run. * Starting udev ... [ ok ] * Generating a rule to create a /dev/root symlink ... [ ok ] * Populating /dev with existing devices through uevents ... [ ok ] * Waiting for uevents to be processed ... [ ok ] * Setting system clock using the hardware clock [UTC] ... [ ok ] * /run/lvm: creating directory * Starting lvmetad ... [ ok ] * Setting up the Logical Volume Manager ... [ ok ] * Setting up dm-crypt mappings ... [ ok ] * Checking local filesystems  ... /dev/sda3: clean, 56958/969136 files, 717921/3875862 blocks /dev/sda2: clean, 365/32768 files, 43674/131072 blocks [ ok ] * Remounting root filesystem read/write ... [ ok ] * Remounting filesystems ... [ ok ] * Updating /etc/mtab ... * Creating mtab symbolic link [ ok ] * Activating swap devices ... [ ok ] * Mounting local filesystems ... [ ok ] * Mounting misc binary format filesystem ... [ ok ] * Loading custom binary format handlers ... [ ok ] * Configuring kernel parameters ... [ ok ] * Creating user login records ... [ ok ] * Wiping /tmp directory ... [ ok ] * Setting hostname to keykeeper  ... [ ok ] * Setting terminal encoding [UTF-8] ... [ ok ] * Setting keyboard mode [UTF-8] ... [ ok ] * Loading key mappings [us] ... [ ok ] * Bringing up network interface lo ... [ ok ] * Setting up tmpfiles.d entries ... [ ok ] * Initializing random number generINIT: Entering runlevel: 3 * ERROR: netmount needs service(s) net * /run/pcscd: creating directory * /run/pcscd: correcting owner * Starting PC/SC Daemon ... [ ok ] * Starting rngd ... can't open any entropy source Maybe RNG device modules are not loaded * start-stop-daemon: failed to start `/usr/sbin/rngd' * Failed to start rngd [ !! ] * ERROR: rngd failed to start * Starting local ... [ ok ] keykeeper login: root Last login: Tue Dec 6 09:41:10 CET 2016 on ttyS0 keykeeper ~ # date Tue Dec 6 10:22:35 CET 2016 keykeeper ~ # swamid ent # # Test random generator # + service rngd restart * Starting rngd ... [ ok ] + ps auxww + grep '[r]ngd' root 3290 0.0 0.0 9632 148 ? Ss 10:25 0:00 /usr/sbin/rngd --pid-file /var/run/rngd.pid --background --random-step 64 --no-tpm=1 --fill-watermark 2048 --rng-device /dev/ttyUSB0 + dd if=/dev/urandom count=10 bs=1M + ent 10+0 records in 10+0 records out 10485760 bytes (10 MB, 10 MiB) copied, 5.40624 s, 1.9 MB/s Entropy = 7.999983 bits per byte. Optimum compression would reduce the size of this 10485760 byte file by 0 percent. Chi square distribution for 10485760 samples is 251.13, and randomly would exceed this value 55.68 percent of the times. Arithmetic mean value of data bytes is 127.4864 (127.5 = random). Monte Carlo value for Pi is 3.142979104 (error 0.04 percent). Serial correlation coefficient is 0.000132 (totally uncorrelated = 0.0). + set +x keykeeper ~ # swamid new # # Generate certificate and save secret to cards # Generating key ... Generating RSA private key, 4096 bit long modulus ..............................................................................................................................................................................................++ .......................++ e is 65537 (0x10001) Done Generating certificate ... Done Splitting secret into 6 (3) parts ... Done Insert an empty card for secret 1 and hit enter: Successfully wrote secret 1/6 (88 bytes) - please remove card from reader Insert an empty card for secret 2 and hit enter: Successfully wrote secret 2/6 (88 bytes) - please remove card from reader Insert an empty card for secret 3 and hit enter: Successfully wrote secret 3/6 (88 bytes) - please remove card from reader Insert an empty card for secret 4 and hit enter: Successfully wrote secret 4/6 (88 bytes) - please remove card from reader Insert an empty card for secret 5 and hit enter: Successfully wrote secret 5/6 (88 bytes) - please remove card from reader Insert an empty card for secret 6 and hit enter: Successfully wrote secret 6/6 (88 bytes) - please remove card from reader # # Certification information # + ls -l md-signer.crt md-signer.key -rw-r--r-- 1 root root 2069 Dec 6 10:28 md-signer.crt -rw-r--r-- 1 root root 3326 Dec 6 10:28 md-signer.key + openssl x509 -in md-signer.crt -----BEGIN CERTIFICATE----- MIIFyzCCA7OgAwIBAgIJAI9LJsUJXDMVMA0GCSqGSIb3DQEBCwUAMHwxCzAJBgNV BAYTAlNFMRIwEAYDVQQIDAlTdG9ja2hvbG0xEjAQBgNVBAcMCVN0b2NraG9sbTEO MAwGA1UECgwFU1VORVQxDzANBgNVBAsMBlNXQU1JRDEkMCIGA1UEAwwbU1dBTUlE IG1ldGFkYXRhIHNpZ25lciB2Mi4wMB4XDTE2MTIwNjA5MjgyMFoXDTM2MTIwNjA5 MjgyMFowfDELMAkGA1UEBhMCU0UxEjAQBgNVBAgMCVN0b2NraG9sbTESMBAGA1UE BwwJU3RvY2tob2xtMQ4wDAYDVQQKDAVTVU5FVDEPMA0GA1UECwwGU1dBTUlEMSQw IgYDVQQDDBtTV0FNSUQgbWV0YWRhdGEgc2lnbmVyIHYyLjAwggIiMA0GCSqGSIb3 DQEBAQUAA4ICDwAwggIKAoICAQDQVw72PnIo9QIeV439kQnPcxZh/LddKw86eIU+ nMfl4TpjSIyqTu4KJSnXbJyqXg+jQj3RzE9BUblpGrR7okmQwOh2nh+5A6SmyTOR p7VEVT/Zw0GNnQi9gAW7J8Cy+Gnok4LeILI5u43hPylNKAnvs1+bo0ZlbHM6U5jm 6MlO+lrYA9dZzoPQqoCQbr3OweAaq5g8H54HuZacpYa3Q2GnUa4v+xywjntPdSQU RTAbWWyJl3cHctX5+8UnX8nGCaxoBZqNp9PcEopyYJX8O1nrLumBMqu9Uh6GW1nx OHfKDLvUoykG3Dm704ENVs88KaJXB1qQNsjdlm14UI9XCZbHfnFVnQ53ehsGFMha Bf/Abd6v2wnhBLH/RxEUlw347qSeokw+SdDTSdW8jOEBiSqP/8BUzpCcbGlgAsVO NKUS0K7IB2Bb79YYhyMvmJl24BGtkX+VM/mv47dxOtfzNFCMtUcJ2Dluv0xJG8xI ot7umx/kbMBLuq7WdWELZJrgpt2bb9sXtYBpuxtGCW5g7+U7MNN1aKCiCSfq09YH qu2DsU7HHAxEcGFXBiepBliCwZ24WLQh53bA3rihaln7SjdapT9VuSTpCvytb9RX rq39mVuHMXvWYOG20XTV0+8U2vnsjAwsy28xPAcrLWRWoZbRJ+RoGp6L3GACq+t+ HPIukwIDAQABo1AwTjAdBgNVHQ4EFgQUQ2iqKQV/mMZDeJDtLXvy0Bsn/BQwHwYD VR0jBBgwFoAUQ2iqKQV/mMZDeJDtLXvy0Bsn/BQwDAYDVR0TBAUwAwEB/zANBgkq hkiG9w0BAQsFAAOCAgEAHviIAfS8viUN8Qk//U1p6Z1VK5718NeS7uqabug/SwhL Vxtg/0x9FPJYf05HXj4moAf2W1ZLnhr0pnEPGDbdHAgDC672fpaAV7DO95d7xubc rofR7Of2fehYSUZbXBWFiQ+xB5QfRsUFgB/qgHUolgn+4RXniiBYlWe6QJVncHx+ FtxD+vh1l5rLNkJgJLw2Lt3pbemSxUvv0CJtnK4jt2y95GsWGu1uSsVLrs0PR1Lj kuxL6zZH4Pp9yjRDOUhbVYAnQ017mdcjvHYtp7c4GIWgyaBkDoMtU6fAt70QpeGj XhecXk7Llx+oYNdZn14ZdFPRGMyAESLrT4Zf9M7QS3ypnWn/Ux0SwKWbnPUeRVbO VZZ+M0jmdYK6o+UU5xH3peRWSJIjjRaKjbVlW5GgHwGFmQc/LN+va2jjThRsQWWt zEwObijedInQ6wfL/VzFAwlWWoDAzKK9qnK4Rf3ORKkvhKrUa//2OYnZD0kHtHiC OL+iFRLtJ/DQP5iZAF+M1Hta7acLmQ8v7Mn1ZR9lyDWzFx57VOKKtJ6RAmBvxOdP 8cIgBNvLAEdXh2knOLqYU/CeaGkxTD7Y0SEKx6OxEEdafba//MBkVLt4bRoLXts6 6JY25FqFh3eJZjR6h4W1NW8KnBWuy+ITGfXxoJSsX78/pwAY+v32jRxMZGUi1J4= -----END CERTIFICATE----- + openssl x509 -noout -in md-signer.crt -fingerprint -sha256 SHA256 Fingerprint=A6:78:5A:37:C9:C9:0C:25:AD:5F:1F:69:22:EF:76:7B:C9:78:67:67:3A:AF:4F:8B:EA:A1:A7:6D:A3:A8:E5:85 + openssl x509 -noout -in md-signer.crt -issuer -subject issuer= /C=SE/ST=Stockholm/L=Stockholm/O=SUNET/OU=SWAMID/CN=SWAMID metadata signer v2.0 subject= /C=SE/ST=Stockholm/L=Stockholm/O=SUNET/OU=SWAMID/CN=SWAMID metadata signer v2.0 + openssl x509 -noout -in md-signer.crt -text + grep -A2 Valid Validity Not Before: Dec 6 09:28:20 2016 GMT Not After : Dec 6 09:28:20 2036 GMT + grep -- - md-signer.key -----BEGIN RSA PRIVATE KEY----- Proc-Type: 4,ENCRYPTED DEK-Info: AES-256-CBC,5705748FB0C073D6BC0AECE100ECE773 -----END RSA PRIVATE KEY----- + set +x # # Decrypt key for usage and spawn shell # Insert a card hit enter: This is card is part 2 of a 3/6 scheme... Insert another card hit enter: This is card is part 4 of a 3/6 scheme... Insert another card hit enter: This is card is part 5 of a 3/6 scheme... writing RSA key Launching /bin/bash with KEY=md-signer.key and CERT=md-signer.crt ... keykeeper root # swamid verify # # Verify that CERT and KEY matches # + openssl x509 -noout -modulus -in md-signer.crt + openssl sha256 (stdin)= e743f169f92e4538c8a9b1c7e5f33d2a2f461969dc6ab88c2896425762a7def6 + openssl rsa -noout -modulus -in /dev/shm/tmpGYeuQP + openssl sha256 (stdin)= e743f169f92e4538c8a9b1c7e5f33d2a2f461969dc6ab88c2896425762a7def6 + set +x keykeeper root # halt  Broa * Stopping local ... [ ok ] * Stopping rngd ... [ ok ] * Saving random seed ... [ ok ] * Stopping PC/SC Daemon ... [ ok ] * Unmounting loop devices * Unmounting filesystems * Unmounting /boot ... [ ok ] * Deactivating swap devices ... [ ok ] * Shutting down the Logical Volume Manager * Finished shutting down the Logical Volume Manager * Stopping lvmetad ... [ ok ] * /etc/init.d/udev uses runscript, please convert to openrc-run. * Stopping udev ... [ ok ] * Setting hardware clock using the system clock [UTC] ... [ ok ] * Terminating remaining processes ... [ ok ] * Killing remaining processes ... [ ok ] * Saving dependency cache ... [ ok ] [ ok ] * Remounting remaining filesystems read-only ... * Remounting / read only ... [ ok ] [ ok ] [ 845.320595] reboot: Power down ËK/âc¯ëÇ×cÆFFÆFFF,fâÆ?, Peter Oruba [ 26.026186] registered taskstats version 1 [ 26.075251] Loading compiled-in X.509 certificates [ 26.200170] Loaded X.509 cert 'Build time autogenerated kernel key: 1b8cf3258c654329ba93981f0c07cb1561c91bc6' [ 26.442814] Key type encrypted registered [ 26.490861] ima: No TPM chip found, activating TPM-bypass! [ 26.557877] rtc_cmos 00:01: setting system clock to 2016-12-06 09:43:36 UTC (1481017416) [ 26.658717] Freeing unused kernel memory: 2724K (ffffffff81e00000 - ffffffff820a9000) [ 26.752636] Write protecting the kernel read-only data: 12288k >> Activating mdev  >> Loading modules   :: Loading from pata: pata_pdc2027x pata_sil680 pata_cmd64x pata_hpt366 pata_hpt37x pata_hpt3x3 pata_hpt3x2n pata_it821x pata_artop pata_oldpiix pata_serverworks pata_pcmcia pata_it8213 pata_ali pata_amd pata_atiixp pata_pdc202xx_old pata_netcell pata_sis pata_hpt3x2n pata_marvell pata_jmicron pata_via  :: Loading from sata: sata_promise sata_sil sata_sil24 sata_svw sata_via sata_nv sata_sx4 sata_sis sata_uli sata_vsc sata_qstor ahci ata_piix sata_mv sata_inic162x pdc_adma  :: Loading from scsi: sd_mod sg sr_mod aic79xx aic7xxx arcmsr initio sym53c8xx imm mptbase mptscsih mptspi mptfc mptsas 3w-sas 3w-xxxx 3w-9xxx cciss hpsa sx8 aacraid megaraid_mbox megaraid_mm megaraid_sas qla2xxx lpfc scsi_transport_fc aic94xx  :: Loading from usb: usb-storage xhci-hcd xhci-pci sl811-hcd  :: Loading from firewire:  :: Loading from waitscan:  :: Loading from dmraid: dm-mod dm-mirror dm-crypt  :: Loading from mdadm: dm-mod dm-snapshot dm-mirror dm-raid dm-crypt raid0 raid1 raid456 raid5 raid6 raid10 linear  :: Loading from fs: ext2  :: Loading from net: atl1c bnx2 e1000 igb pcnet32 r8169 sky2 tg3 virtio_net vmxnet3  :: Loading from iscsi: scsi_transport_iscsi libiscsi iscsi_tcp  :: Loading from crypto: >> Determining root device ...  >> Detected real_root=/dev/sda3  >> Mounting /dev/sda3 as root...  >> Using mount -t auto -o ro  >> Booting (initramfs)  INIT: version 2.88 booting OpenRC 0.22.4 is starting up Gentoo Linux (x86_64) * /proc is already mounted * Mounting /run ... * /run/openrc: creating directory * /run/lock: creating directory * /run/lock: correcting owner * Caching service dependencies ... File descriptor 3 (pipe:[4393]) leaked on lvm invocation. Parent PID 2194: /bin/sh /run/lvm/lvmetad.socket: connect failed: No such file or directory WARNING: Failed to connect to lvmetad. Falling back to internal scanning. Service `netmount' needs non existent service `net' [ ok ] * Remounting devtmpfs on /dev ... [ ok ] * Mounting /dev/mqueue ... [ ok ] * Mounting /dev/shm ... [ ok ] * Creating list of required static device nodes for the current kernel ... [ ok ] * Autoloaded 0 module(s) * Mounting security filesystem ... [ ok ] * Mounting SELinux filesystem ... [ ok ] * Mounting persistent storage (pstore) filesystem ... [ ok ] * Mounting cgroup filesystem ... [ ok ] * Setting up tmpfiles.d entries for /dev ... [ ok ] * /etc/init.d/udev uses runscript, please convert to openrc-run. * Starting udev ... [ ok ] * Generating a rule to create a /dev/root symlink ... [ ok ] * Populating /dev with existing devices through uevents ... [ ok ] * Waiting for uevents to be processed ... [ ok ] * Setting system clock using the hardware clock [UTC] ... [ ok ] * /run/lvm: creating directory * Starting lvmetad ... [ ok ] * Setting up the Logical Volume Manager ... [ ok ] * Setting up dm-crypt mappings ... [ ok ] * Checking local filesystems  ... /dev/sda3: clean, 56958/969136 files, 717925/3875862 blocks /dev/sda2: clean, 365/32768 files, 43674/131072 blocks [ ok ] * Remounting root filesystem read/write ... [ ok ] * Remounting filesystems ... [ ok ] * Updating /etc/mtab ... * Creating mtab symbolic link [ ok ] * Activating swap devices ... [ ok ] * Mounting local filesystems ... [ ok ] * Mounting misc binary format filesystem ... [ ok ] * Loading custom binary format handlers ... [ ok ] * Configuring kernel parameters ... [ ok ] * Creating user login records ... [ ok ] * Wiping /tmp directory ... [ ok ] * Setting hostname to keykeeper  ... [ ok ] * Setting terminal encoding [UTF-8] ... [ ok ] * Setting keyboard mode [UTF-8] ... [ ok ] * Loading key mappings [us] ... [ ok ] * Bringing up network interface lo ... [ ok ] * Setting up tmpfiles.d entries ... [ ok ] * Initializing random number generINIT: Entering runlevel: 3 * ERROR: netmount needs service(s) net * /run/pcscd: creating directory * /run/pcscd: correcting owner * Starting PC/SC Daemon ... [ ok ] * Starting rngd ... can't open any entropy source Maybe RNG device modules are not loaded * start-stop-daemon: failed to start `/usr/sbin/rngd' * Failed to start rngd [ !! ] * ERROR: rngd failed to start * Starting local ... [ ok ] keykeeper login: root Last login: Tue Dec 6 10:22:30 CET 2016 on ttyS0 keykeeper ~ # swamid backup # # Take backup of md-signer.crt and md-signer.key to /dev/sdb1 # Insert backup USB stick and press return... + echo copy copy + sha256sum md-signer.crt md-signer.key f2625900b0259e0314bd7f4dcb65d03b9ad23c8637609fd98856327df1bc82b2 md-signer.crt 03eaea5dbe2a3622a3e5f286c4004adc2004fe95e371cf11af33284cd59825d6 md-signer.key + mount /dev/sdb1 /mnt + cp md-signer.crt md-signer.key /mnt + umount /mnt + echo verify verify + mount /dev/sdb1 /mnt + sha256sum /mnt/md-signer.crt /mnt/md-signer.key f2625900b0259e0314bd7f4dcb65d03b9ad23c8637609fd98856327df1bc82b2 /mnt/md-signer.crt 03eaea5dbe2a3622a3e5f286c4004adc2004fe95e371cf11af33284cd59825d6 /mnt/md-signer.key + umount /mnt + set +x keykeeper ~ # swamid backup # # Take backup of md-signer.crt and md-signer.key to /dev/sdb1 # Insert backup USB stick and press return... + echo copy copy + sha256sum md-signer.crt md-signer.key f2625900b0259e0314bd7f4dcb65d03b9ad23c8637609fd98856327df1bc82b2 md-signer.crt 03eaea5dbe2a3622a3e5f286c4004adc2004fe95e371cf11af33284cd59825d6 md-signer.key + mount /dev/sdb1 /mnt + cp md-signer.crt md-signer.key /mnt + umount /mnt + echo verify verify + mount /dev/sdb1 /mnt + sha256sum /mnt/md-signer.crt /mnt/md-signer.key f2625900b0259e0314bd7f4dcb65d03b9ad23c8637609fd98856327df1bc82b2 /mnt/md-signer.crt 03eaea5dbe2a3622a3e5f286c4004adc2004fe95e371cf11af33284cd59825d6 /mnt/md-signer.key + umount /mnt + set +x keykeeper ~ # swamid export # # Export md-signer.crt to /dev/sdb1 # Insert backup USB stick and press return... + echo copy copy + sha256sum md-signer.crt f2625900b0259e0314bd7f4dcb65d03b9ad23c8637609fd98856327df1bc82b2 md-signer.crt + mount /dev/sdb1 /mnt + cp md-signer.crt /mnt + umount /mnt + echo verify verify + mount /dev/sdb1 /mnt + sha256sum /mnt/md-signer.crt f2625900b0259e0314bd7f4dcb65d03b9ad23c8637609fd98856327df1bc82b2 /mnt/md-signer.crt + umount /mnt + set +x keykeeper ~ # mount /dev/sdb1 /mnt keykeeper ~ # ls -l /mb nt total 16 -rwxr-xr-x 1 root root 2069 Dec 6 10:47 md-signer.crt keykeeper ~ # cat /mnt/md-signer.crt -----BEGIN CERTIFICATE----- MIIFyzCCA7OgAwIBAgIJAI9LJsUJXDMVMA0GCSqGSIb3DQEBCwUAMHwxCzAJBgNV BAYTAlNFMRIwEAYDVQQIDAlTdG9ja2hvbG0xEjAQBgNVBAcMCVN0b2NraG9sbTEO MAwGA1UECgwFU1VORVQxDzANBgNVBAsMBlNXQU1JRDEkMCIGA1UEAwwbU1dBTUlE IG1ldGFkYXRhIHNpZ25lciB2Mi4wMB4XDTE2MTIwNjA5MjgyMFoXDTM2MTIwNjA5 MjgyMFowfDELMAkGA1UEBhMCU0UxEjAQBgNVBAgMCVN0b2NraG9sbTESMBAGA1UE BwwJU3RvY2tob2xtMQ4wDAYDVQQKDAVTVU5FVDEPMA0GA1UECwwGU1dBTUlEMSQw IgYDVQQDDBtTV0FNSUQgbWV0YWRhdGEgc2lnbmVyIHYyLjAwggIiMA0GCSqGSIb3 DQEBAQUAA4ICDwAwggIKAoICAQDQVw72PnIo9QIeV439kQnPcxZh/LddKw86eIU+ nMfl4TpjSIyqTu4KJSnXbJyqXg+jQj3RzE9BUblpGrR7okmQwOh2nh+5A6SmyTOR p7VEVT/Zw0GNnQi9gAW7J8Cy+Gnok4LeILI5u43hPylNKAnvs1+bo0ZlbHM6U5jm 6MlO+lrYA9dZzoPQqoCQbr3OweAaq5g8H54HuZacpYa3Q2GnUa4v+xywjntPdSQU RTAbWWyJl3cHctX5+8UnX8nGCaxoBZqNp9PcEopyYJX8O1nrLumBMqu9Uh6GW1nx OHfKDLvUoykG3Dm704ENVs88KaJXB1qQNsjdlm14UI9XCZbHfnFVnQ53ehsGFMha Bf/Abd6v2wnhBLH/RxEUlw347qSeokw+SdDTSdW8jOEBiSqP/8BUzpCcbGlgAsVO NKUS0K7IB2Bb79YYhyMvmJl24BGtkX+VM/mv47dxOtfzNFCMtUcJ2Dluv0xJG8xI ot7umx/kbMBLuq7WdWELZJrgpt2bb9sXtYBpuxtGCW5g7+U7MNN1aKCiCSfq09YH qu2DsU7HHAxEcGFXBiepBliCwZ24WLQh53bA3rihaln7SjdapT9VuSTpCvytb9RX rq39mVuHMXvWYOG20XTV0+8U2vnsjAwsy28xPAcrLWRWoZbRJ+RoGp6L3GACq+t+ HPIukwIDAQABo1AwTjAdBgNVHQ4EFgQUQ2iqKQV/mMZDeJDtLXvy0Bsn/BQwHwYD VR0jBBgwFoAUQ2iqKQV/mMZDeJDtLXvy0Bsn/BQwDAYDVR0TBAUwAwEB/zANBgkq hkiG9w0BAQsFAAOCAgEAHviIAfS8viUN8Qk//U1p6Z1VK5718NeS7uqabug/SwhL Vxtg/0x9FPJYf05HXj4moAf2W1ZLnhr0pnEPGDbdHAgDC672fpaAV7DO95d7xubc rofR7Of2fehYSUZbXBWFiQ+xB5QfRsUFgB/qgHUolgn+4RXniiBYlWe6QJVncHx+ FtxD+vh1l5rLNkJgJLw2Lt3pbemSxUvv0CJtnK4jt2y95GsWGu1uSsVLrs0PR1Lj kuxL6zZH4Pp9yjRDOUhbVYAnQ017mdcjvHYtp7c4GIWgyaBkDoMtU6fAt70QpeGj XhecXk7Llx+oYNdZn14ZdFPRGMyAESLrT4Zf9M7QS3ypnWn/Ux0SwKWbnPUeRVbO VZZ+M0jmdYK6o+UU5xH3peRWSJIjjRaKjbVlW5GgHwGFmQc/LN+va2jjThRsQWWt zEwObijedInQ6wfL/VzFAwlWWoDAzKK9qnK4Rf3ORKkvhKrUa//2OYnZD0kHtHiC OL+iFRLtJ/DQP5iZAF+M1Hta7acLmQ8v7Mn1ZR9lyDWzFx57VOKKtJ6RAmBvxOdP 8cIgBNvLAEdXh2knOLqYU/CeaGkxTD7Y0SEKx6OxEEdafba//MBkVLt4bRoLXts6 6JY25FqFh3eJZjR6h4W1NW8KnBWuy+ITGfXxoJSsX78/pwAY+v32jRxMZGUi1J4= -----END CERTIFICATE----- keykeeper ~ # finger       keykeeper ~ # openssl x509 -in /mnt/md-signer.crt -fingerprint -noout -sha256 SHA256 Fingerprint=A6:78:5A:37:C9:C9:0C:25:AD:5F:1F:69:22:EF:76:7B:C9:78:67:67:3A:AF:4F:8B:EA:A1:A7:6D:A3:A8:E5:85 keykeeper ~ # umount /mnt keykeeper ~ # halt  Broa * Stopping local ... [ ok ] * Saving random seed ... [ ok ] * Stopping PC/SC Daemon ... [ ok ] * Unmounting loop devices * Unmounting filesystems * Unmounting /boot ... [ ok ] * Deactivating swap devices ... [ ok ] * Shutting down the Logical Volume Manager * Finished shutting down the Logical Volume Manager * Stopping lvmetad ... [ ok ] * /etc/init.d/udev uses runscript, please convert to openrc-run. * Stopping udev ... [ ok ] * Setting hardware clock using the system clock [UTC] ... [ ok ] * Terminating remaining processes ... [ ok ] * Killing remaining processes ... [ ok ] * Saving dependency cache ... [ ok ] [ ok ] * Remounting remaining filesystems read-only ... * Remounting / read only ... [ ok ] [ ok ] [ 402.412967] reboot: Power down