Comment by mateusz834
Comment by mateusz834 9 months ago
Wouldn't this work with some kind of PKDF instead?
Like: Password ---> PKDF ---> PIN
And then Password XOR (Key from TPM) -> LUKS
But i guess this kind of logic is not for a bootscript, but for tools like systemcd-cryptenroll.