How do I configure the refind.conf and refind_linux.conf (and or config.yaml (for ZFSBootMenu)) files properly when installing Arch Linux with ZFS Native Encryption?

This page summarizes the projects mentioned and recommended in the original post on /r/zfs

InfluxDB - Power Real-Time Data Analytics at Scale
Get real-time insights from all types of time series data with InfluxDB. Ingest, query, and analyze billions of data points in real-time with unbounded cardinality.
www.influxdata.com
featured
SaaSHub - Software Alternatives and Reviews
SaaSHub helps you find the best software and product alternatives
www.saashub.com
featured
  • zfsbootmenu

    ZFS Bootloader for root-on-ZFS systems with support for snapshots and native full disk encryption

  • All release assets, including EFI executables and kernel/initramfs pairs, are signed with signify, which provides a simple method for verifying that the contents of the file are as this project intended. Once you've installed signify (that's left as an exercise, although Void Linux provides the signify package for this purpose), just download the desired assets from the ZFSBootMenu release page, download the file sha256.sig alongside it, and run:

  • EfiFs

    EFI FileSystem drivers

  • I am pretty sure that that I am doing something incorrectly with the configuration files for the rEFInd bootloader, but everything else should be correct. However, as I write this, I barely realized did I not use the following commands recommended from the "Usage" section from the aforementioned website where I downloaded the zfs_x64.efi driver file for rEFInd:

  • InfluxDB

    Power Real-Time Data Analytics at Scale. Get real-time insights from all types of time series data with InfluxDB. Ingest, query, and analyze billions of data points in real-time with unbounded cardinality.

    InfluxDB logo
  • zfsUnlocker

    A modular zfs unlocker hook for mkinitcpio on Archlinux.

  • Personally I hate keyfiles and any form of zfs unlocking automation which stores things locally (I suppose TPM cryptography is a good exception). While I use a traditional EFI /boot with systemd-boot (bootctl) I made this initramfs hook so that my machines can dynamically unlock themselves from my vault cluster with a revokable token. Not quite the same approach and if there's no networking a machine could get caught dead in the water for booting back to a password prompt, but it's good enough right now that I use it on everything.

NOTE: The number of mentions on this list indicates mentions on common posts plus user suggested alternatives. Hence, a higher number means a more popular project.

Suggest a related project

Related posts

  • A Home Router Built on Void Linux and ZFSBootMenu

    5 projects | /r/voidlinux | 12 Oct 2021
  • Bash Debugging

    7 projects | news.ycombinator.com | 1 Mar 2024
  • Is It Good Practice to Back Up Data Sets Manually on Cold Storage Externals?

    2 projects | /r/truenas | 10 Dec 2023
  • Asustor Flashstor 12 Pro FS6712X - Link change - atlantic 0000:01:00.0 eth0: atlantic: link change old 0 new 10000

    1 project | /r/asustor | 6 Dec 2023
  • Need drivers for a Dell Fusion Io drive2 card.

    1 project | /r/homelab | 5 Dec 2023