Secure Boot & TPM-backed Full Disk Encryption on NixOS
·2682 words·13 mins
An explanation of how to enable secure boot on NixOS, using a
community project named ‘Lanzaboote’, and further how to
automatically unlock a LUKS-encrypted disk using a TPM with
systemd-cryptenroll.