Comment on Encrypting without full disk encryption question
just_another_person@lemmy.world 1 week ago
TPM2+Tang+Clevis. You’ll need to get really familiar with the TPM registers to properly set something up that will meet specific criteria, but you can make a pretty safe system with Tang that you can enable/disable remotely.