Good evening. I'm hoping someone can give me a hand here. What I am trying to do is setup my Qubes install so that "/" is unlocked with a keyfile and not a passphrase. Preferably an encrypted keyfile that can be decrypted using keyscript in /etc/crypttab.
Adding a keyfile using cryptsetup and then adding an entry in /etc/crypttab doesn't seem to work and I do not think forcing dracut to omit "systemd" is a good idea, from my limited know-how. Another solution I found is to copy the keyfile to initramfs but if it isn't encrypted, another bad idea. I have not yet found a way to get keyscript to work in order to encrypt the keyfile copied to initramfs. Any information and help on this matter is greatly appreciated. -- You received this message because you are subscribed to the Google Groups "qubes-users" group. To unsubscribe from this group and stop receiving emails from it, send an email to qubes-users+unsubscr...@googlegroups.com. To post to this group, send email to qubes-users@googlegroups.com. To view this discussion on the web visit https://groups.google.com/d/msgid/qubes-users/035bf29b-299a-4695-ab95-094df899dde9%40googlegroups.com. For more options, visit https://groups.google.com/d/optout.