Bodie: > What is that security reason worth of not using default full disk > encryption?
Have a look at e.g. Evil Maid Attack [1]. One may want to bear a trusted bootloader with themselves and leave raw full-encrypted drive in some 'hostile' environment. [1] https://www.schneier.com/blog/archives/2009/10/evil_maid_attac.html -- Ivan Markin