From mboxrd@z Thu Jan 1 00:00:00 1970 From: ng0 Subject: Re: Encrypted root partition Date: Fri, 25 Nov 2016 16:06:27 +0000 Message-ID: <8737ifsfwc.fsf@we.make.ritual.n0.is> References: <87vavd3k1t.fsf@gnu.org> <87a8cp4bqk.fsf@gmail.com> <877f7swllv.fsf@gnu.org> Mime-Version: 1.0 Content-Type: text/plain; charset=utf-8 Content-Transfer-Encoding: 8bit Return-path: Received: from eggs.gnu.org ([2001:4830:134:3::10]:38526) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1cAJ1l-0004u7-6k for guix-devel@gnu.org; Fri, 25 Nov 2016 11:07:06 -0500 Received: from Debian-exim by eggs.gnu.org with spam-scanned (Exim 4.71) (envelope-from ) id 1cAJ1i-0005tI-HJ for guix-devel@gnu.org; Fri, 25 Nov 2016 11:07:05 -0500 In-Reply-To: <877f7swllv.fsf@gnu.org> List-Id: "Development of GNU Guix and the GNU System distribution." List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Errors-To: guix-devel-bounces+gcggd-guix-devel=m.gmane.org@gnu.org Sender: "Guix-devel" To: Ludovic =?utf-8?Q?Court=C3=A8s?= Cc: guix-devel@gnu.org Ludovic Courtès writes: > Chris Marusich skribis: > >> Is anyone actively working on documenting the new encrypted root stuff? >> If not, I'm happy to try my hand at it. I'm interested in trying to set >> it up on my laptop, anyway. > > I’ve added documentation in 2b5fea5ba3b07999cf198e1132ffcacbfcb7ed72. > > Please send a patch if you think of improvements that can be made. > > Ludo’. > > I can confirm a first success. I used a test system "bare metal" and guix pull'ed from within it, with the addition of the last line in your updated example (properties mapped-devices) I was able to init an luks test system which only has bios_boot partition outside of the luks partition and swap being a file. It works as a test. Thanks for your work on this!