this post was submitted on 06 Dec 2024
14 points (93.8% liked)

Linux

48665 readers
572 users here now

From Wikipedia, the free encyclopedia

Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).

Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word "Linux" in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.

Rules

Related Communities

Community icon by Alpár-Etele Méder, licensed under CC BY 3.0

founded 5 years ago
MODERATORS
 

Hi,

The SBC Raspberry Pi 4 boot on an sdcard with two partition /boot and /

So I managed to encrypt the partition / with cryptsetup

Here the partition of my sd-card

device FILESYS LABEL UUID
sdb1 vfat BOOT ( 9 characters )
sdb2 crrypto_LUKS ( 36 characters )

I've modified the /boot/cmdline.txt

to ( on one line )

console=serial0,115200
console=tty1
root=UUID=#If I try the UUID of sdb2 it fail and also the UUID when I use `cryptsetup luksOpen /dev/sdb2 b2open`
rootfstype=ext4
fsck.repair=yes
loglevel=5
net.ifnames=0
firmware_class.path=/lib/firmware/updates/brcm
rootwait
cryptdevice=UUID=#I dont know which one:b2open

any ideas ?

Thanks.

top 7 comments
sorted by: hot top controversial new old
[–] DrDystopia@lemy.lol 1 points 2 weeks ago (1 children)

I never could be bothered with manually setting up LUKS, here's an automation script if you don't get it to work:

https://github.com/gitbls/sdm/blob/master/Docs/Disk-Encryption.md

[–] SpongeB0B@programming.dev 1 points 2 weeks ago (1 children)
[–] DrDystopia@lemy.lol 1 points 2 weeks ago

I've used it to encrypt both Pi4's and 5's. I think it's most compatible with Raspberry Pi OS (Bookworm), used it on both Lite and Desktop editions. Remember to use non-AES encryption since only the 5 has hardware enc/decryption. Good luck!

[–] fl42v@lemmy.ml 1 points 2 weeks ago (1 children)

I'm not sure I understood you correctly, is the problem just that you don't know which uuid-s to use where? Cryptdevice corresponds to your sdb2, and root is /dev/mapper/b2open. Otherwise, provide the exact error

[–] SpongeB0B@programming.dev 0 points 2 weeks ago (1 children)

I believe my initramfs do not support luks encryption, but the link of @DrDystopia@lemy.lol might work.... 🤞

[–] fl42v@lemmy.ml 1 points 2 weeks ago (1 children)

Depends on the distro. On arch you need to enable a few hooks, for example

[–] SpongeB0B@programming.dev 1 points 2 weeks ago* (last edited 2 weeks ago)

I'm using Devuan ( systemd free ! ) :)