diff --git a/deploy.sh b/deploy.sh index 54088fd..fe812f3 100644 --- a/deploy.sh +++ b/deploy.sh @@ -928,15 +928,18 @@ postrun_action() { ssh_to_host 'bash -s' << EOF echo "Enrolling boot disk key to TPM..." +BOOT_DISKS_ID=(${BOOT_DISKS_ID[@]}) +DISK_PATH="" j=1 -for i in ${!BOOT_DISKS_ID[@]}; do - if [[ echo "${BOOT_DISKS_ID[${i}]}" | grep -iq "nvme" ]]; then - DISK_PATH="/dev/${BOOT_DISKS_ID[${i}]}p2" + +for i in \${!BOOT_DISKS_ID[@]}; do + if [[ echo "\${BOOT_DISKS_ID[\${i}]}" | grep -iq "nvme" ]]; then + DISK_PATH="/dev/\${BOOT_DISKS_ID[\${i}]}p2" else - DISK_PATH="/dev/${BOOT_DISKS_ID[${i}]}2" + DISK_PATH="/dev/\${BOOT_DISKS_ID[\${i}]}2" fi - echo ${REMOTE_PASS} | sudo -S systemd-cryptenroll --tpm2-device=auto --tpm2-pcrs=0+7 --unlock-key-file=/etc/secrets/disks/boot-${j} ${DISK_PATH} - ((j++)) + echo ${REMOTE_PASS} | sudo -S systemd-cryptenroll --tpm2-device=auto --tpm2-pcrs=0+7 --unlock-key-file=/etc/secrets/disks/boot-\${j} \${DISK_PATH} + j=\$((j + 1)) done echo "Getting PCRS 15 hash..."