<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Posts on blastrock's blog</title><link>https://blastrock.github.io/posts/</link><description>Recent content in Posts on blastrock's blog</description><generator>Hugo</generator><language>en-us</language><lastBuildDate>Sat, 23 May 2026 21:08:42 +0200</lastBuildDate><atom:link href="https://blastrock.github.io/posts/index.xml" rel="self" type="application/rss+xml"/><item><title>The post-ultimate guide to better Full Disk Encryption with TPM and Secure Boot (with hibernation support!)</title><link>https://blastrock.github.io/posts/fde-tpm-sb-ng/</link><pubDate>Sat, 23 May 2026 21:08:42 +0200</pubDate><guid>https://blastrock.github.io/posts/fde-tpm-sb-ng/</guid><description>&lt;p&gt;You bought a laptop and want to secure it in case it gets stolen? Or you&amp;rsquo;re just a nerd who wants to do nerd things? This guide is just for you!&lt;/p&gt;
&lt;p&gt;In this guide we will go through my struggles while attempting to set up Full Disk Encryption without having to enter my passphrase on each boot.&lt;/p&gt;
&lt;h2 id="preliminaries"&gt;
 Preliminaries
 &lt;a class="heading-link" href="#preliminaries"&gt;
 &lt;i class="fa-solid fa-link" aria-hidden="true" title="Link to heading"&gt;&lt;/i&gt;
 &lt;span class="sr-only"&gt;Link to heading&lt;/span&gt;
 &lt;/a&gt;
&lt;/h2&gt;
&lt;h3 id="déjà-vu"&gt;
 Déjà vu?
 &lt;a class="heading-link" href="#d%c3%a9j%c3%a0-vu"&gt;
 &lt;i class="fa-solid fa-link" aria-hidden="true" title="Link to heading"&gt;&lt;/i&gt;
 &lt;span class="sr-only"&gt;Link to heading&lt;/span&gt;
 &lt;/a&gt;
&lt;/h3&gt;
&lt;p&gt;The diligent reader will notice that this post is very similar to another one of mines (yes, the only other one).&lt;/p&gt;</description></item><item><title>The ultimate guide to Full Disk Encryption with TPM and Secure Boot (with hibernation support!)</title><link>https://blastrock.github.io/posts/fde-tpm-sb/</link><pubDate>Wed, 06 Apr 2022 12:00:00 +0000</pubDate><guid>https://blastrock.github.io/posts/fde-tpm-sb/</guid><description>&lt;p&gt;&lt;em&gt;Difficulty&lt;/em&gt;: way harder than it should be!&lt;/p&gt;
&lt;blockquote class="note"&gt;&lt;p&gt;&lt;strong&gt;Note:&lt;/strong&gt;&lt;/p&gt;
&lt;a href="https://blastrock.github.io/posts/fde-tpm-sb-ng/" class="external-link" target="_blank" rel="noopener"&gt;A more modern&lt;/a&gt; post replaces this one.
&lt;/blockquote&gt;

&lt;p&gt;&lt;strong&gt;IMPORTANT&lt;/strong&gt;: This guide has a security flaw as nicely explained in
&lt;a href="https://oddlama.org/blog/bypassing-disk-encryption-with-tpm2-unlock/" class="external-link" target="_blank" rel="noopener"&gt;this
article&lt;/a&gt;.
I have not taken the time to update it yet, so keep that in mind.&lt;/p&gt;
&lt;p&gt;You bought a laptop and want to secure it in case it gets stolen? Or
you're just a nerd who wants to do nerd things? This guide is just for
you!&lt;/p&gt;</description></item></channel></rss>