Your logs will show "Operation not permitted" or "Required key not available" even if you are root.
Edit the script (e.g., /usr/local/bin/load_sep5.sh ) to be more robust: Your logs will show "Operation not permitted" or
journalctl -b -u sep5-loader.service
If the service does not capture output to syslog, run the script manually: Your logs will show "Operation not permitted" or
# /etc/systemd/system/sep5-driver-load.service.d/10-depends.conf [Unit] After=dkms.service Requires=dkms.service Your logs will show "Operation not permitted" or
# /etc/systemd/system/sep5-loader.service (example) [Unit] Description=Load sep5 security processor driver After=local-fs.target sysinit.target Before=cryptsetup.target