TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

TPM-backed Full Disk Encryption is coming to Ubuntu

61 pointsby bpolveriniover 1 year ago

7 comments

michaeltover 1 year ago
<i>&gt; the bootloader (shim and GRUB) and kernel assets will be delivered as snap packages (via gadget and kernel snaps), as opposed to being delivered as Debian packages.</i><p>And there it is.<p>I suppose having your kernel command line signed by Canonical and unmodifiable by the system owner without a pain-in-the-ass manual &#x27;machine owner key enrolment&#x27; process is very much on-brand for Snap.
评论 #37422169 未加载
评论 #37422153 未加载
评论 #37422523 未加载
评论 #37422211 未加载
评论 #37422346 未加载
theandrewbaileyover 1 year ago
I&#x27;m in the process of moving away from Ubuntu, but this is a pretty cool feature. I&#x27;ve seen a tutorial here and there about how to manually set up LUKS with a TPM, but those have a downside of the TPM needing to be updated with every new kernel. I guess Ubuntu has found a way to integrate or work around that?
评论 #37421440 未加载
FirmwareBurnerover 1 year ago
That&#x27;s groovy baby, but can anyone give me the technicals on why we can&#x27;t have Hibernate(not sleep) out of the box on Ubuntu like we can on Windows? That was one of the deal-breakers for me making the switch. If I understood it correctly, it&#x27;s because of Z-RAM and if I&#x27;m also correct, full disk encryption is another roadblock in the path of the hibernate feature.
评论 #37421762 未加载
评论 #37422250 未加载
评论 #37422021 未加载
josephcsibleover 1 year ago
This sounds like TPM <i>and</i> passphrase (as opposed to TPM <i>or</i> passphrase) which seems like a recipe for eating your data.
Jigsyover 1 year ago
Although I use Xubuntu on an old laptop, I&#x27;m hoping this is an option rather than a &quot;suck it up!&quot; change.<p>I&#x27;d rather just enter a password...
tbyehlover 1 year ago
Only 11 years behind Windows 8 making BitLocker w&#x2F; Secure Boot easily accessible to the masses. Presumably not supporting TPM 1.2, which is why my oldest hardware runs Linux under Hyper-V instead of bare metal.
fatfingerdover 1 year ago
What&#x27;s the status for ZFS with a TPM and his will this affect it (competitively?)