Hi there, On Mon, 01 Jul 2019 at 04:21:46 +0200, Cyril Brulebois wrote: > Roger Shimizu <r...@debian.org> (2019-06-30): >> Thank for the above doc, which is quite easy understanding and >> straightforward! >> […] >> I confirmed with /boot set up in LUKS1, everything works fine. >> It‘d configure non encrypted /boot when in D-I, then after finishing >> D-I, and reboot to system, manually make LUKS1 for /boot partition. > > Thanks for letting us know you appreciate it.
+1 :-) > Guilhem, any chance I could trick you into adding a pointer from the > installation-guide to your documentation? It would be an extra string > for translators to deal with, but that might be added to unstable and > then backported at a later point to buster once translators have had a > chance to catch up. Sure, I even planned to do that when I heard about your post-mini-DebConf “hiccup” ;-) I remained on the road for another 3 weeks and unfortunately didn't find time since the mini Debconf. Thanks for the poke, I'll try to tend to it this week. >> However, I found adding: GRUB_PRELOAD_MODULES="luks cryptodisk" to >> /etc/default/grub is not necessary. GRUB_ENABLE_CRYPTODISK=y is the >> only setting need to append manually. > > From my limited tests, it seemed that GRUB_ENABLE_CRYPTODISK=y was > indeed sufficient. Thanks Roger for the info, and to Cyril for confirming. Interestingly my 6 years old notes suggest otherwise, but I don't remember the details and it's of course possible that I messed up the tests back then. I'll try to test again with older GRUB to find an inflexion point, and modify the document accordingly. Cheers, -- Guilhem.
signature.asc
Description: PGP signature