get: > FDE in my understanding this is a scheme partition look like > > sda 8:0 0 99999,9G 0 disk > └─sda1 8:1 0 99999,9G 0 LUKS > └──luks-<UUID> crypt > ├─qubes_dom0-boot lvm /boot (encrypted) > ├─qubes_dom0-swap lvm [SWAP] (encrypted) > └─qubes_dom0-root lvm / (encrypted) > > FDE = cryptsetup whole disk (including /boot). Not only root partition. > Anaconda can't do it by default. Installation success only with grub missing. > OS research HEADS can't kexec into FDE disk. > > Is it only possible to boot from grub2 coreboot ? > > cryptomount -a > set root='hd0,msdos1' > linux=... vmlinuz=... > > I have been trying to do the coreboot firmware for a month already > to get a load of Qubes with full disk encryption (including /boot). Is it > possible? Can anyone help me ?:)
I've seen others on this list report it as successful, but haven't done it myself. I think they had to use the Seabios payload for the initial install, then switch to coreboot's grub2. Afraid that's about all I know... -- You received this message because you are subscribed to the Google Groups "qubes-users" group. To unsubscribe from this group and stop receiving emails from it, send an email to qubes-users+unsubscr...@googlegroups.com. To post to this group, send email to qubes-users@googlegroups.com. To view this discussion on the web visit https://groups.google.com/d/msgid/qubes-users/f298d99d-626d-dfb9-ecad-778320160c5b%40danwin1210.me. For more options, visit https://groups.google.com/d/optout.