Description
Encrypted devices can be unlocked during boot with a USB thumb-drive dongle or a fallback passphrase. It is useful for administrators who want controlled automatic unlocking on systems using systemd.
Boot-time disk unlocking is security-sensitive and may conflict with /etc/crypttab. Test recovery paths, protect the USB dongle, and keep a known passphrase before deploying it.