NVME-RPMB-WRITE-C(1) NVMe Manual NVME-RPMB-WRITE-C(1)

nvme-rpmb-write-config - Write the RPMB device configuration block

nvme [<global-options>] rpmb write-config <device>
                        [--msgfile=<data-file> | -f <data-file>]
                        [--msg=<data> | -d <data>]
                        [--keyfile=<key-file> | -g <key-file>]
                        [--key=<key> | -k <key>]

Writes 512 bytes of device configuration block data to RPMB target 0 of the NVMe device, authenticated with the key previously programmed with nvme rpmb program-key.

The <device> parameter is mandatory and an NVMe character device (ex: /dev/nvme0) must be specified.

-k <key>, --key=<key>, -g <key-file>, --keyfile=<key-file>

Authentication key previously programmed with nvme rpmb program-key for target 0. The key can be specified on the command line using --key or -k, or read from a file using --keyfile or -g.

-f <data-file>, --msgfile=<data-file>

Name of the file the configuration block data is read from.

-d <data>, --msg=<data>

Provides the configuration block data directly on the command line, instead of reading it from a file.

The following options are defined at the top-level nvme command and are available to this subcommand:

--dry-run

Print the command that would be executed, but do not actually execute it.

--no-ioctl-probing

Disable probing for 64-bit IOCTL support.

--no-retries

Disable retry logic on transient errors.

-o <fmt>, --output-format=<fmt>

Set the reporting format to normal, tabular, 'json, or binary. Only one output format may be used at a time.

--output-format-version=<version>

Select the output format version. Version 1 uses the original field naming, while version 2 (default) provides more consistent and script-friendly field names.

--timeout=<ms>

Set the timeout for the command in milliseconds.

-v, --verbose

Increase the level of detail in the output. May be specified multiple times to further increase verbosity.

These options can also be set as machine-wide defaults in nvme-cli.conf(5). A command-line flag always overrides the file.

•Write configuration data block from config.bin file
# nvme rpmb write-config /dev/nvme0 -f config.bin -k 'SecretKey'

Part of the nvme-user suite

09/07/2026 NVMe