minus-squarebzLem0n@lemmy.catoSelfhosted@lemmy.world•Encrypting without full disk encryption questionlinkfedilinkEnglisharrow-up4·17 days agoIf you have TPM2 support on the motherboard it can be used to unlock LUKS encryption but has the following known vulnerability. https://oddlama.org/blog/bypassing-disk-encryption-with-tpm2-unlock/ linkfedilink
minus-squarebzLem0n@lemmy.catoSelfhosted@lemmy.world•Which OS do you use for your homeserver?linkfedilinkEnglisharrow-up1·1 year agoSame here. I came for the integrated ZFS support and stayed for the declarative config. linkfedilink
If you have TPM2 support on the motherboard it can be used to unlock LUKS encryption but has the following known vulnerability.
https://oddlama.org/blog/bypassing-disk-encryption-with-tpm2-unlock/