* Mario Ohnewald: > The whole setup must fulfill the following requirements: > > a) it must be able to boot (remotely) without userinput/passphrase > b) the importtant partitions such as /etc, /var, /usr and /home must be > encrypted/protected. Put the key on an USB stick, and load it from an initial ramdisk? This works quite well, but I don't know if it matches your requirements.