Hi!
Is there a way to download offical initramfs source and make changes to it?
Instead of the LUKS password prompt, I would like to automatically get the key from the TPM.
Something like this:
tpm2_unseal -c 0x81000004 -p pcr:sha256:0,4,7,8,9 -o /tmp/lukskey.bin
cryptsetup luksOpen....
Dependencies of tpm2_unseal should also be in there.
Note: the NVRAM addres, 0x81000004, should be changable during setup depending on free NVRAM location (when having multiple OSes on the same computer)
Btw, I would love to see this feature as part of the official installer.