EFI Full disc encryption with GELI and key file

Can someone clarify how to use removable flash drive with encryption key with new full disc encryption process?

The new approach is to encrypt /boot altogether with /root filesystem.
So, as I understand, initial encryption performed by EFI loader.
Is there a way to pass keyfile to EFI loader?
Is there any man page for this? I failed to find relevant info about subject.
 
Unfortunately no. I also was unable to find documentation for efi boot loader. Have no time to look in source code.

If you find something please share in this thread as well.
 
Back
Top