Greetings everyone, I’ve fallen in love with this project so, first of all (Since it’s my first thread here) thank you very much for all the amazing work put to all the contributors here!
I’ve been meaning to install this disto on bare metal but I was waiting for better Wayland support for some applications that I need for work.
I have now a wholly LUKS encrypted Fedora (Except for boot and EFI) with / on a storage and /home on a separate one. I already know that for atomic distro it’s not advised to manually partition the disk (Disks in this case) but I still want to try.
In any case, I was wondering some things.
- Is it useful to fully encrypt an immutable system? Shouldn’t the root partition be intrusion protected?
- Does the encryption of / entails some possible problems with the layering and whatnot?
- I’ve seen that by default the bluefin installer, when selected the LUKS encryption option does also encrypt everything except for Boot and EFI partitions. Is this the only way viable?
I thank already in advance whomever will take some times to answer this, perhaps silly to some, questions.