[GUIDE] How to encrypt your new installation when dual booting

Write tutorials here
There are more tutorials here http://community.linuxmint.com/tutorial/welcome
Forum rules
Please don't add support questions to tutorials,start your own thread in the appropriate sub-forum instead. Before you post please read this
Post Reply
gm10
Level 18
Level 18
Posts: 8738
Joined: Thu Jun 21, 2018 5:11 pm

[GUIDE] How to encrypt your new installation when dual booting

Post by gm10 » Thu Aug 01, 2019 3:36 am

In a dual boot scenario the installer will grey out the checkbox to encrypt your installation, so it has to be set up manually. Below you find the general overview on how to do that in easy to follow pictures.
  1. Prepare your drives. You will need enough unallocated space on the drive to install Linux Mint. If there currently is none, either delete partitions you do not need anymore or resize one or more existing partitions to make them smaller. This is best done before starting the installation with the GParted or Disks tools. I'll refer you to other guides on how to do that should you require those.
  2. Start the installer and move through the options until you get to the screen where you get to select the installation type, choose Something else:
    Image
  3. Select the unallocated space and click the + button to create an ext4 /boot partition to hold your kernels (we need a separate partition because encrypting /boot as well makes things exponentially more complicated so we're not doing that here). Don't make it too small if you plan on installing many kernels at the same time and/or not removing old ones:
    Image
  4. If you are not installing in UEFI mode (why?) but your boot drive's partition table is GPT then you will need an additional 1 MB small partition on that drive where you select in the Use as: dropdown Reserved BIOS boot area. I'm not including a screenshot so as not to confuse anyone for this is a non-standard configuration. Modern systems should use UEFI/GPT.
  5. Finally create another partition that will be encrypted and eventually hold the rest of your Linux Mint operating system, so this should be sufficiently sized, typically all of the remaining free space. Select physical volume for encryption in the Use as: dropdown:
    Image
  6. Set it up with your desired passphrase (best take a longer one than in my screenshot) and select to overwrite empty space (if you don't care about anybody accessing what was previously on that drive you can leave that box unchecked, it will considerably speed the process up):
    Image
  7. When it's done scroll to the top, you'll find your new encrypted volume there, select it and click on the Change... button to mount it as / root like this:
    Image
  8. Finally you click on Install Now, confirm the changes, and once you reboot and select your newly installed Linux Mint from the boot menu, you'll see something like this:
    Image
    Enter your passphrase and your encrypted Linux Mint partition will be unlocked and the Linux Mint system will continue to boot and operate normally.
And that's all. For most users it will be as simple as described above, but if your particular setup is more complicated and/or you require additional assistance, please create a thread in the support part of the forums (Installation & Boot) instead of asking here.
Last edited by gm10 on Thu Aug 01, 2019 4:41 am, edited 2 times in total.
Tune up your LM 19.x: ppa:gm10/linuxmint-tools

gostal
Level 2
Level 2
Posts: 59
Joined: Fri Sep 07, 2018 9:56 am

Re: [GUIDE] How to encrypt your new installation when dual booting

Post by gostal » Thu Aug 01, 2019 3:47 am

Thank you for this nice guide. I did wonder about this.

Cheers,
gostal
Lap: Latitude E6520, i3-2330M @ 2.20GHz, 4GB, Intel HD Graphics 3000, OS Mint 19.1 version Mate, Windows 7 Enterprise
Desk: Dell Precision T5810, Xeon E5-1650 v4 @ 3.60GHz,72 GB, Radeon Pro WX 7100, OS OpenSuse Leap 42.3
Stockholm, Sweden

Post Reply

Return to “Tutorials”