Search found 53 matches

by linux22
Sat Mar 09, 2024 5:11 am
Forum: Tutorials
Topic: Mint 17.X to 21.X and LMDE 6 Full Disk Encryption (directory /boot included) - Using LUKS2, SecureBoot & TPM 2.0+PIN
Replies: 117
Views: 50620

Re: Mint 17.X to 21.X and LMDE 6 Full Disk Encryption (directory /boot included) - Using LUKS2, SecureBoot & TPM 2.0+PIN

Hello mortenpj, I have read your post. You are right. With the last versions of efibootmgr you can not run it in chroot mode. But you can simply remove chroot and run instead: sudo efibootmgr -c -d /dev/sda -p 1 -D -L "Mint" -l "\EFI\Mint\kernel.efi" You can run efibootmgr from t...
by linux22
Sun Dec 03, 2023 7:10 am
Forum: Tutorials
Topic: Mint 17.X to 21.X and LMDE 6 Full Disk Encryption (directory /boot included) - Using LUKS2, SecureBoot & TPM 2.0+PIN
Replies: 117
Views: 50620

Re: Mint 17.X to 21.X and LMDE 6 Full Disk Encryption (directory /boot included) - Using LUKS2, SecureBoot & TPM 2.0+PIN

Hi folks, release Ver. 1.1 of tutorials for LMDE 6 Full Disk Encryption with LUKS2+SECURE^BOOT+TPM2.0+PIN for EXT4 and BTRFS filesystems are now available for downloading. You can get the tutorials from my Linux Mint Community web page at: https://community.linuxmint.com/tutorial/view/2438 The zip f...
by linux22
Mon Nov 13, 2023 1:59 pm
Forum: Tutorials
Topic: Mint 17.X to 21.X and LMDE 6 Full Disk Encryption (directory /boot included) - Using LUKS2, SecureBoot & TPM 2.0+PIN
Replies: 117
Views: 50620

Re: Mint 17.X to 21.X and LMDE 6 Full Disk Encryption (directory /boot included) - Using LUKS2, SecureBoot & TPM 2.0+PIN

Hello lofi, I have read your post. Again, thank you for your interest in my work. Ukify is a new tool from systemd ver. 253 and above. It is not yet available in LMDE 6 because it ships with systemd ver. 252. It seems an interesting tool but quite complex and still EXPERIMENTAL. As you can see in my...
by linux22
Tue Oct 31, 2023 5:25 am
Forum: Tutorials
Topic: Mint 17.X to 21.X and LMDE 6 Full Disk Encryption (directory /boot included) - Using LUKS2, SecureBoot & TPM 2.0+PIN
Replies: 117
Views: 50620

Re: Mint 17.X to 21.X and LMDE 6 Full Disk Encryption (directory /boot included) - Using LUKS2, SecureBoot & TPM 2.0+PIN

Hi folks, I am finally ready to publish my tutorial for LMDE 6 Full Disk Encryption with LUKS2+SECURE-BOOT+TPM2.0+PIN. This solution is quite weird and I do not like it so much but it is the only one working, at the moment. You know that almost all Debian based distros available today have systemd i...
by linux22
Thu Oct 12, 2023 5:05 pm
Forum: Tutorials
Topic: Mint 17.X to 21.X and LMDE 6 Full Disk Encryption (directory /boot included) - Using LUKS2, SecureBoot & TPM 2.0+PIN
Replies: 117
Views: 50620

Re: Mint 17.X to 20.X (but also Ubuntu) Full Disk Encryption (directory /boot included) - Using LUKS2, SecureBoot & TPM

Last update: 12 October 2023 Hi folks, I am happy to announce my success in unlocking my Linux Mint Debian Edition LMDE 6 'Faye' with systemd v. 252, enrolling the LUKS2 key and a PIN inside the TPM 2.0 using systemd-cryptenroll. I think I will release the tutorial explaining the hardware & sof...
by linux22
Mon Mar 20, 2023 12:24 pm
Forum: Tutorials
Topic: Mint 17.X to 21.X and LMDE 6 Full Disk Encryption (directory /boot included) - Using LUKS2, SecureBoot & TPM 2.0+PIN
Replies: 117
Views: 50620

Re: Mint 17.X to 20.X (but also Ubuntu) Full Disk Encryption (directory /boot included) - Using LUKS2, SecureBoot & TPM

Hello folks and dobp, I am very sorry because I know I am late in answering your latest posts !!! But as I previously said I am still in trouble with my work, my family, my house ecc. :? :( :oops: Anyway if you are interested in unlocking Linux FDE Mint 21.1 (Secure Boot On) with systemd v. 249, usi...
by linux22
Fri Dec 30, 2022 6:57 pm
Forum: Tutorials
Topic: Mint 17.X to 21.X and LMDE 6 Full Disk Encryption (directory /boot included) - Using LUKS2, SecureBoot & TPM 2.0+PIN
Replies: 117
Views: 50620

Re: Mint 17.X to 20.X (but also Ubuntu) Full Disk Encryption (directory /boot included) - Using LUKS, SecureBoot & TPM 2

Hello folks, I am happy to announce my first success in unlocking my Linux FDE Mint 21.1 (Secure Boot On) with systemd v. 249, using systemd-cryptenroll tools.

At the moment it works like 'clevis', without the PIN option introduced in systemd v. 251.

Anyway this is the first time I get it working !
by linux22
Tue Dec 06, 2022 8:06 am
Forum: Tutorials
Topic: Mint 17.X to 21.X and LMDE 6 Full Disk Encryption (directory /boot included) - Using LUKS2, SecureBoot & TPM 2.0+PIN
Replies: 117
Views: 50620

Re: Mint 17.X to 20.X (but also Ubuntu) Full Disk Encryption (directory /boot included) - Using LUKS, SecureBoot & TPM 2

Hello dobp, sorry, I know I am still late but now I can answer the questions from your post of Fri Oct 21, 2022 3:08 pm. Point 1,2 and 3: I am very happy about your explorations of the Linux FDE world and the new tips and tricks you discovered for resolving many issues. Nevertheless I think that a t...
by linux22
Sun Oct 30, 2022 2:29 pm
Forum: Tutorials
Topic: Mint 17.X to 21.X and LMDE 6 Full Disk Encryption (directory /boot included) - Using LUKS2, SecureBoot & TPM 2.0+PIN
Replies: 117
Views: 50620

Re: Mint 17.X to 20.X (but also Ubuntu) Full Disk Encryption (directory /boot included) - Using LUKS, SecureBoot & TPM 2

Hello dobp, sorry, I know I am late but in this period I am busy at work. I think I will be ready to answer your questions at last within the end of november. Anyway I can anticipate a quick response to your questions concerning TPM with clevis or systemd-cryptenroll. YES, I think unlocking the FDE ...
by linux22
Sat Apr 09, 2022 12:07 pm
Forum: Tutorials
Topic: Mint 17.X to 21.X and LMDE 6 Full Disk Encryption (directory /boot included) - Using LUKS2, SecureBoot & TPM 2.0+PIN
Replies: 117
Views: 50620

Re: Mint 17.X to 20.X (but also Ubuntu) Full Disk Encryption (directory /boot included) - Using LUKS, SecureBoot & TPM 2

Hello lofi, sorry, I know I am late but now I am ready to answer your questions and perhaps to make myself more clear about the philosophy of my technical solution concerning Linux Full Disk Encryption (FDE) on PC with UEFI firmware using EFISTUB loader. You know you can not setup an invulnerable PC...
by linux22
Sat Mar 12, 2022 6:56 am
Forum: Tutorials
Topic: Mint 17.X to 21.X and LMDE 6 Full Disk Encryption (directory /boot included) - Using LUKS2, SecureBoot & TPM 2.0+PIN
Replies: 117
Views: 50620

Re: Mint 17.X to 20.X (but also Ubuntu) Full Disk Encryption (directory /boot included) - Using LUKS, SecureBoot & TPM 2

Hello lofi and mike28, I have read your messages. I am sorry but at the moment I am very busy.

I think I will replay to your questions within the end of this month.

Anyway the configuration using EFISTUB does work with UEFI firmware ONLY !

Regards.

linux22
by linux22
Wed Feb 24, 2021 7:09 am
Forum: Tutorials
Topic: Mint 17.X to 21.X and LMDE 6 Full Disk Encryption (directory /boot included) - Using LUKS2, SecureBoot & TPM 2.0+PIN
Replies: 117
Views: 50620

Re: Mint 17.X to 20.X (but also Ubuntu) Full Disk Encryption (directory /boot included) - Using LUKS, SecureBoot & TPM 2

Hello throwaway_5521 , I have read your message. I cannot test the installation of NVIDIA drivers on my systems because I do not have PCs with NVIDIA card installed. Anyway I have done some searchs and I have found some interesting NVIDIA documents concerning installation of NVIDIA Linux drivers and...
by linux22
Thu Feb 04, 2021 7:31 pm
Forum: Tutorials
Topic: Mint 17.X to 21.X and LMDE 6 Full Disk Encryption (directory /boot included) - Using LUKS2, SecureBoot & TPM 2.0+PIN
Replies: 117
Views: 50620

Re: Mint 17.X to 20.X (but also Ubuntu) Full Disk Encryption (directory /boot included) - Using LUKS, SecureBoot & TPM 2

Hi folks, tutorials " Linux Mint with Full Disk Encryption, directory /boot included - PC UEFI & HDD GPT - Booting with EFI STUB loader " have been updated today. This release include " Appendix F (Experimental) - How to enable LUKS AutoUnlock via TPM2.0 ". This configuration...
by linux22
Thu Sep 24, 2020 4:32 am
Forum: Tutorials
Topic: Mint 17.X to 21.X and LMDE 6 Full Disk Encryption (directory /boot included) - Using LUKS2, SecureBoot & TPM 2.0+PIN
Replies: 117
Views: 50620

Re: Mint 17.X, 18.X, 19.X and 20.X (but also Ubuntu) Full Disk Encryption (directory /boot included)

Hello dobp, I have read your last post. At the moment I am working on a new solution for Dual Boot Windows 10 + Linux Mint FDE. As explained in my tutorial at https://community.linuxmint.com/tutorial/view/2191 the new solution will be: Dual boot for Windows 10 + Linux Mint 20.X with EFI STUB loader ...
by linux22
Sat Aug 22, 2020 9:41 am
Forum: Tutorials
Topic: Mint 17.X to 21.X and LMDE 6 Full Disk Encryption (directory /boot included) - Using LUKS2, SecureBoot & TPM 2.0+PIN
Replies: 117
Views: 50620

Re: Mint 17.X, 18.X, 19.X and 20.X (but also Ubuntu) Full Disk Encryption (directory /boot included)

Hello questionbot, if you have installed my FDE tutorial 2438 PC UEFI + HDD GPT + EFI STUB + tutorial 2496 (ex 2360, Secure Boot) you can do these test: 1) Temporary disable Secure Boot and try to boot your system. 2) If your system boot normally with Secure Boot disabled check if you have correctly...
by linux22
Fri Aug 21, 2020 6:59 am
Forum: Tutorials
Topic: Mint 17.X to 21.X and LMDE 6 Full Disk Encryption (directory /boot included) - Using LUKS2, SecureBoot & TPM 2.0+PIN
Replies: 117
Views: 50620

Re: Mint 17.X, 18.X, 19.X and 20.X (but also Ubuntu) Full Disk Encryption (directory /boot included)

Hello questionbot, I have read your message. Can you tell me what type of FDE solutions have you installed ? FDE from my tutorial 2061 PC UEFI + HDD GPT + GRUB ? or FDE from my tutorial 2438 PC UEFI + HDD GPT + EFI STUB ? Please tell me more about your FDE installation and the errors you get. Regard...
by linux22
Fri Aug 21, 2020 5:41 am
Forum: Tutorials
Topic: Mint 17.X to 21.X and LMDE 6 Full Disk Encryption (directory /boot included) - Using LUKS2, SecureBoot & TPM 2.0+PIN
Replies: 117
Views: 50620

Re: Mint 17.X, 18.X, 19.X and 20.X (but also Ubuntu) Full Disk Encryption (directory /boot included)

Hello stussy1. I have read your message and the response from cozyknight, who explain the most important issues of the standard FDE, available from Ubiquity. Also the main problem is: Can we set up a PC with a security level that make our system invulnerable ? The answer is NO ! We can only build a ...
by linux22
Sun Aug 16, 2020 10:39 am
Forum: Tutorials
Topic: Mint 17.X to 21.X and LMDE 6 Full Disk Encryption (directory /boot included) - Using LUKS2, SecureBoot & TPM 2.0+PIN
Replies: 117
Views: 50620

Re: Mint 17.X, 18.X, 19.X and 20.X (but also Ubuntu) Full Disk Encryption (directory /boot included)

Hello dobp. I have read your message and, as you said in your EDIT note, the problems with GRUB is the most important reason because I have switched to EFI STUB. In my past tutorial concerning Linux FDE I was always dealing with GRUB with great difficulties. So when I switched to UEFI I have found a...
by linux22
Tue Aug 11, 2020 11:34 am
Forum: Tutorials
Topic: Mint 17.X to 21.X and LMDE 6 Full Disk Encryption (directory /boot included) - Using LUKS2, SecureBoot & TPM 2.0+PIN
Replies: 117
Views: 50620

Re: Mint 17.X, 18.X, 19.X and 20.X (but also Ubuntu) Full Disk Encryption (directory /boot included)

Hello cozyknight, stussy1 and dobp. I have read your messages. I just replaced my old tutorial "Linux Mint (but also Ubuntu) - How to enable UEFI Secure Boot with your own Custom keys on PC with UEFI & HDD with GPT" previously available at https://community.linuxmint.com/tutorial/view/...
by linux22
Sun Mar 22, 2020 11:52 am
Forum: Tutorials
Topic: Mint 17.X to 21.X and LMDE 6 Full Disk Encryption (directory /boot included) - Using LUKS2, SecureBoot & TPM 2.0+PIN
Replies: 117
Views: 50620

Re: Mint 17.X, 18.X and 19.X (but also Ubuntu) Full Disk Encryption (directory /boot included)

Hello dobp, I have read your message. About your last questions my opinion is: 1) I think I must explain something about LINUX KERNEL, GRUB and other Ubuntu/Mint packages marked as "Signed". These packages have files that are signed by the distro manufacturer company, but ONLY for Windows ...

Go to advanced search