logoalt Hacker News

dangeroyesterday at 4:43 AM3 repliesview on HN

Depends on the use case. If boot requires a password, the computer can never lose power or be rebooted without human presence. That’s not always practical.


Replies

teddyhyesterday at 1:12 PM

You can reboot your full-disk-encryption server while you sleep. Obligatory plug: <https://www.recompile.se/mandos>

Disclosure: I am a co-author of Mandos.

show 2 replies
prmoustacheyesterday at 9:29 AM

That is what remote kvm are for and if you do that on commodity hardware you can start a tiny ssh server starting up from an initrd. Having said that an attacker with local access could change the initrd without your knowledge so that it logs the password you enter so it is not necessarily the most secure solution.

show 1 reply
tucnakyesterday at 9:32 AM

Google: IPMI, BMC