====== Linux crypto boot ====== * [[https://github.com/latchset/clevis|Clevis]] is a pluggable framework for automated decryption. It can be used to provide automated decryption of data or even automated unlocking of LUKS volumes. * [[https://github.com/latchset/tang|Tang]] is a server for binding data to network presence. * [[https://www.recompile.se/mandos|Mandos]] is a system for allowing servers with encrypted root file systems to reboot unattended and/or remotely. [[https://www.ogselfhosting.com/index.php/2023/12/25/tang-clevis-for-a-luks-encrypted-debian-server/|Debian 12 with Tang and Clevis]], pretty recent and explained.