'\" t .\" Title: nvme-rpmb-program-key .\" Author: [FIXME: author] [see http://www.docbook.org/tdg5/en/html/author] .\" Generator: DocBook XSL Stylesheets vsnapshot .\" Date: 09/07/2026 .\" Manual: NVMe Manual .\" Source: NVMe .\" Language: English .\" .TH "NVME\-RPMB\-PROGRAM\" "1" "09/07/2026" "NVMe" "NVMe Manual" .\" ----------------------------------------------------------------- .\" * Define some portability stuff .\" ----------------------------------------------------------------- .\" ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ .\" http://bugs.debian.org/507673 .\" http://lists.gnu.org/archive/html/groff/2009-02/msg00013.html .\" ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ .ie \n(.g .ds Aq \(aq .el .ds Aq ' .\" ----------------------------------------------------------------- .\" * set default formatting .\" ----------------------------------------------------------------- .\" disable hyphenation .nh .\" disable justification (adjust text to left margin only) .ad l .\" ----------------------------------------------------------------- .\" * MAIN CONTENT STARTS HERE * .\" ----------------------------------------------------------------- .SH "NAME" nvme-rpmb-program-key \- Program the RPMB authentication key .SH "SYNOPSIS" .sp .nf \fInvme\fR [] \fIrpmb program\-key\fR [\-\-key= | \-k ] [\-\-keyfile= | \-g ] [\-\-target= | \-t ] .fi .SH "DESCRIPTION" .sp Programs the given authentication key to the specified RPMB target\&. As per the RPMB specification, this is a one time action per target which cannot be undone\&. .sp The parameter is mandatory and an NVMe character device (ex: /dev/nvme0) must be specified\&. .SH "OPTIONS" .PP \-t , \-\-target= .RS 4 RPMB target id\&. This should be one of the supported RPMB targets as reported by \fInvme rpmb info\fR\&. If nothing is given, the default of 0 is used as the RPMB target\&. .RE .PP \-k , \-\-key=, \-g , \-\-keyfile= .RS 4 Authentication key to program\&. The key can be specified on the command line using \-\-key or \-k, or read from a file using \-\-keyfile or \-g\&. The key size must be between 1 and 223 bytes\&. .RE .SH "GLOBAL OPTIONS" .sp The following options are defined at the top\-level nvme command and are available to this subcommand: .PP \-\-dry\-run .RS 4 Print the command that would be executed, but do not actually execute it\&. .RE .PP \-\-no\-ioctl\-probing .RS 4 Disable probing for 64\-bit IOCTL support\&. .RE .PP \-\-no\-retries .RS 4 Disable retry logic on transient errors\&. .RE .PP \-o , \-\-output\-format= .RS 4 Set the reporting format to \fInormal\fR, \fItabular, \*(Aqjson\fR, or \fIbinary\fR\&. Only one output format may be used at a time\&. .RE .PP \-\-output\-format\-version= .RS 4 Select the output format version\&. Version \fI1\fR uses the original field naming, while version \fI2\fR (default) provides more consistent and script\-friendly field names\&. .RE .PP \-\-timeout= .RS 4 Set the timeout for the command in milliseconds\&. .RE .PP \-v, \-\-verbose .RS 4 Increase the level of detail in the output\&. May be specified multiple times to further increase verbosity\&. .RE .sp These options can also be set as machine\-wide defaults in nvme\-cli\&.conf(5)\&. A command\-line flag always overrides the file\&. .SH "EXAMPLES" .sp .RS 4 .ie n \{\ \h'-04'\(bu\h'+03'\c .\} .el \{\ .sp -1 .IP \(bu 2.3 .\} Program \fISecretKey\fR as authentication key for target 1 .sp .if n \{\ .RS 4 .\} .nf # nvme rpmb program\-key /dev/nvme0 \-\-key=\*(AqSecretKey\*(Aq \-\-target=1 .fi .if n \{\ .RE .\} .RE .SH "NVME" .sp Part of the nvme\-user suite