Download PDF
Encrypting a partition not used in the boot process
Encrypting the swap partition
Early user space and encrypting the root partition
Logical Volume Management (LVM)
Getting UEFI Secure Boot working with LVM
Trusted Platform Module (TPM)
Software RAID
ZFS
BTRFS
BcacheFS
Encrpytion and hardware authentication with Pluggable Authentication Modules (PAM)
encrypting swap: if don’t need suspend to disk, can use a random password each time. otherwise can’t do that.