• jabjoe@feddit.uk
    link
    fedilink
    English
    arrow-up
    1
    ·
    5 months ago

    Your want to store a copy of the private key on the encrypted machine so it can automatically sign kernel updates.