cmagina has quit [Quit: You have been kicked for being idle]
aaradhak[m] has quit [Quit: You have been kicked for being idle]
jpn has joined #fedora-coreos
jpn has quit [Ping timeout: 260 seconds]
guesswhat has quit [Ping timeout: 260 seconds]
guesswhat has joined #fedora-coreos
jpn has joined #fedora-coreos
jpn has quit [Quit: Lost terminal]
<MTRNord[m]>
Hi I am wondering about moving my server to coreos. It is running in a remote DC as a dedicated server (aka no physical access) so I am wondering how I solve luks. Currently with gentoo I do zfs over ssh. As in a ssh server in the initramfs with hardcoded ip and keys that waits for my input to unlock the fs before continuing the boot.
<MTRNord[m]>
Is something like this possible with coreos and luks too? I didn't find anything in the docs or via Google. Is this an impossible think with coreos? Or is it simply not being done often? (and if that is the case I wonder why this is uncommon).
<MTRNord[m]>
Any pointers would be appreciated :)
<MTRNord[m]>
I had seen the tang thingy but if I read that correctly it requires me to have a second server to host that which I don't have in this config. So that isn't possible for me 😅 it would be a little paradox to host it on itself
jpn has joined #fedora-coreos
jpn has quit [Ping timeout: 260 seconds]
jpn has joined #fedora-coreos
<decfi[m]>
decryption on boot with a ssh server waiting should work somehow in coreos, but i don't know any details
<decfi[m]>
i'm interested how this can be achieved