Am 21.07.2013 10:47, schrieb Milan Broz: > I think using some initramfs is the only solution now for mapping > encrypted root fs (for now). I would remove "for now" from your statement. Unlocking the volume from kernel code itself requires that the kernel learns how to ask for passphrases and/or find key files, do LUKS header processing and accept device-mapper parameters in some way. This is very complicated to do in kernel code and adds tons of kernel code for tasks that do not belong into the kernel. Such patches will never be accepted upstream, since there is a more flexible and less error-prone mechanism to solve the problem (it's called "initramfs", if you didn't guess it already).
Attachment:
signature.asc
Description: OpenPGP digital signature
_______________________________________________ dm-crypt mailing list dm-crypt@xxxxxxxx http://www.saout.de/mailman/listinfo/dm-crypt