| ▲ | drdexebtjl 17 hours ago | |||||||
Just use LUKS, eCryptfs, or ZFS encryption. It’s not the application’s job to do encryption at rest, it’s the filesystem’s. | ||||||||
| ▲ | QuiEgo 15 hours ago | parent [-] | |||||||
I personally find it nicer to unlock my phone to decrypt (Face ID) then dealing with having to auth with my headless server. Is there a way to manage this without putting the keys for LUKS or similar somewhere risky? Main threat is someone stealing the NAS during a break in. | ||||||||
| ||||||||