Glave za tovarniško ponastavitev 2.0

Razlogi za ponastavitev na tovarniške nastavitve

  • Your Nitrokey is locked (e.g. due to multiple incorrect PIN entries)

  • izgubili ste ključ Nitrokey (v tem primeru boste najprej potrebovali novega).

  • You have installed an operating system yourself (e.g. after changing the hard disk)

  • Operacijski sistem se ne zažene

Opozorilo

Vsi podatki v ključu Nitrokey bodo izgubljeni, če napravo ponastavite. Zato pred ponastavitvijo naredite varnostno kopijo podatkov.

Postopek

  1. Povežite ključ Nitrokey z napravo NitroPad.

  2. Vklopite napravo NitroPad.

  3. Izberite „Možnosti“.

    meni z možnostmi glave
  4. Izberite „OEM-Factory Reset /Re-Ownership“.

    ponastavitev
  5. Ponastavitev potrdite z „Nadaljuj“.

    potrdite .
  6. Celovitost vaše namestitve bo preizkušena, odvisno od vašega razloga za izvedbo ponastavitve, ki lahko ne uspe, pa se vseeno nadaljuje v redu.

    potrditi celovitost
  7. Na naslednja vprašanja je mogoče odgovoriti s privzeto vrednostjo. Če želite samo ponastaviti napravo, pritisnite Enter.

    Would you like to change the current LUKS Disk Recovery Key passphrase?
    (Highly recommended if you didn't install the Operating System yourself, so that past provisioned passphrase would not permit to access content.
    Note that without re-encrypting disk, a backuped header could be restored to access encrypted content with old passphrase) [y/N]: N
    
    Would you like to re-encrypt LUKS encrypted container and generate new Disk Recovery key?
    (Highly recommended if you didn't install the operating system yourself: this would prevent any LUKS backuped header to be restored to access encrypted data) [y/N]: N
    
    The following security components will be provisioned with defaults or chosen PINs/passwords:
    
    TPM Ownership password
    GPG Admin PIN
    GPG User PIN
    
    Would you like to set a single custom password that will be provisioned to previously stated security components? [y/N]: N
    
    Would you like to set distinct PINs/passwords to be provisioned to previously stated security components? [y/N]: N
    
    Would you like to set custom user Information for the GnPG key?[y/N]: N
    
    Would you like to set custom user information for the GnuPG key? [y/N]: N
    
    Checking for USB Security Dongle...
    
    Detecting and setting boot device...
    
    Boot device set to /dev/nvme0n1p2
    
    Resetting TPM...
    
    Resetting GPG Key...
    (this will take around 3 minuts...)
    
    Changing default GPG Admin PIN
    
    Changing default GPG User PIN
    
    Reading current firmware
    (this will take a minute or two)
    
    Adding generated key to current firmware and re-flashing...
    
    Signing boot files and generating checksums
    
  8. Prikazala bo privzete kode PIN GPG in geslo TPM.

    privzete nastavitve
  9. Confirm the subsequent restart.

    ponovni zagon
  10. Po ponovnem zagonu je treba ustvariti skrivnost OTP. Postopek potrdite z Enter.

    otp skrivnosti ustvarjajo potrditev 1
    otp skrivnosti ustvarjajo potrditev 2
  11. Vnesite geslo TPM (privzeto: 12345678)

    vnesi geslo tpm
  12. S telefonom skenirajte QR COde, da vnesete TOTP Seceret (neobvezno), in pritisnite Enter

    koda qr totp
  13. Ko se pojavi poziv, vnesite skrbniški PIN ključa Nitrokey (privzeto: 12345678) in pritisnite Enter.

    admin pin nitrokey vhod
  14. Nato se prikaže meni Start.

    začetni meni
  15. Pritisnite Enter, da zaženete „privzeti zagon“.

Opomba

Če se prikaže sporočilo, da privzete nastavitve še ne obstajajo, izvedite postopek, opisan v poglavju „Odpravljanje težav: Privzet zagonski meni“.