I have luks set up on my server and it is kind of annoying to type the password at reboots (mostly power outages). Strictly speaking I do not need the luks, but I feel its good to have anyway. I was thinking of getting a yubikey and just leaving it on or at least telling a trusted family member where to get it and to plug it in when turning it on.

Has anyone over come a similar set up or issue?

For some clarity I am not a pro and the homelabing is mostly just a learning experience for me.

  • InternetCitizen2@lemmy.worldOP
    link
    fedilink
    English
    arrow-up
    6
    ·
    9 days ago

    have a setup on my servers where there is full disk encryption and a password stored on a random file in a thumb drive or SD card of each machine.

    The wagie in me likes this. Was it particularly difficult to set?

    • ryokimball@infosec.pub
      link
      fedilink
      English
      arrow-up
      5
      ·
      9 days ago

      Not at all. Pretty sure I got the instructions from Arch wiki, typical passfile setup just a slightly unusual path