On 3/28/23 12:16 PM, Carlos E. R. wrote:
Maybe someone has ideas.
Very recently I did a whole disk encryption for just the second time. Actually, two times isn't enough to be comfortable doing it... not for me anyway. So with that caveat... The reading I did said it was possible to separately encrypt various partition separately, but was also possible to encrypt the entire disk at once... well except for /boot and /boot/efi (I think). The advantage of whole disk encryption (as opposed to each partition separately) it's a small bit simpler, but more importantly (to me, anyway) is that it's faster due to less processing entailed. Have to ask: What's the point of encrypting /boot and /boot/efi? What sensitive information could be found there?