I’m too lazy to look up the details. But you can have a small ssh server running as part of initrd. I think it’s dropbear. I log into that and unlock the root drive from there.
Of course that necessitates an unencrypted /boot/.
Did it on Debian and it was relatively easy to set up.
Dalraz@lemmy.ca 8 months ago
Isn’t that what a TPM could be used for?
umbrella@lemmy.ml 8 months ago
i dunno is it? how to set that up?