I have to admire this writeup for the sheer deranged glory of remotely unlocking your desktop's encrypted root drive on boot by setting up Tailscale and a very limited SSH server in your initrd, so you can SSH in to enter the unlock password. And of course you give your initrd a separate and limited Tailscale identity and its own set of SSH host keys.

jyn.dev/remotely-unlocking-an-

(via tech.lgbt/@jyn/115939595372361 or lobste.rs/s/spemfa/remotely_un )

0

If you have a fediverse account, you can quote this note from your own instance. Search https://mastodon.social/users/cks/statuses/115942566024039165 on your instance and quote it. (Note that quoting is not supported in Mastodon.)