Menu

FDE not booting

2024-03-02
2024-03-03
  • CEDRIC HUMBERT

    CEDRIC HUMBERT - 2024-03-02

    Hello,

    I'm trying to install PeppermintOS with a full disk encryption.
    I boot on the live USB key and launch Calamares for installing.
    Choose delete disk + encrypt system and fill a passphrase.

    After reboot, GRUB ask for the passphrase and then I see the PeppermintOS splash.
    It finally display BusyBox with this error message:
    ALERT ! /dev/mapper/luks-42773481-87a6-4477-8a5c-d7d7vv4303d4 doen't exist. Dropping to shell

    Do you have any idea of what i'm doing wrong ?

     
  • cavy

    cavy - 2024-03-02

    Hi Cedric,

    Can you supply more details please. Make and model of computer, which iso used, for example Gnome flashback, Mini or Xfce. Debian or Devuan version.

    We did encounter issues with encryption two years ago, we fixed. But this comes with a caveat, as the trim function will not work with encryption, this is problematic if you are using a SSD equipped laptop or PC. We do not recommend to encryption for a SSD. instead use a spinning hard drive.

    During those tests, I found I could achieve a manual encryption install, where as the auto-install function of delete and install returned issues, which were solved by our then KsWoodsMan, eventually.

    I'm currently setting up my Dell 5430 laptop, by swapping out the SSD for a HDD and will attempt a delete and install (auto-install) method. This install will be done using UEFI and Secure Boot. The HDD I used Gparted to delete the disk and created a new partition table with GPT, as not used Legacy mode in donkey's years.

    Also did you include the swap option, see enclosed screenshot.

     
  • cavy

    cavy - 2024-03-02

    Thank you for bringing this to my attention.

    I can confirm there is an issue and recreated your issue using the auto-install, twice. It will create all three necessary partitions being esp, swap and / partitions, as you view from my screenshots. Tried the manual install method twice, it does not activate the encryption functions at all now, though giving a perfectly serviceable non-encrypted install.

    Recovery mode is not playing either. Again dropping into busybox mode.

    It is back to the drawing board, as the password to unlock swap and / partition appears to be misaligned as they are not communicating to each other.

     

    Last edit: cavy 2024-03-02
  • CEDRIC HUMBERT

    CEDRIC HUMBERT - 2024-03-03

    Hi Cavy,
    Thanks for your answer.

    I'm using the 64 bits XFCE build based on Debian, with a brand new Beelink S12 Mini (https://www.amazon.fr/Beelink-Intel-Alder-Lake-N100-Bluetooth5-2/dp/B08DFL2L1F)

    And as you can see, it has a build in M.2 SSD and i can't replace it by a spinning disk.

    My goal was to encrypt the disk and use the TMP2.0 chip for decrypting without user input (as BitLocker on Windows). But i'm fighting with this since one month without any success.

     
  • cavy

    cavy - 2024-03-03

    There used to be a encrypted panel wallet I used years ago, but Debian issued a security advisory against it and not used it since.

    Depending on your security concerns, especially when connecting to the internet, here are few tips about Linux encryption: https://linuxsecurity.com/features/how-to-encrypt-files-on-linux

     
  • CEDRIC HUMBERT

    CEDRIC HUMBERT - 2024-03-03

    I try to use PepMini but unfortunately, installer give me an error: No kernel modules were found

     

Log in to post a comment.