The story started by reading this. But in my case this setup didn't work out because of the EFI partition. So here I'm writing to remember what I did.
First of all, the advantages of encrypting /boot
partition are
- As Dusty mentioned there're some dangers to leaving the bootloader and ramdisks unencrypted.
- Also my original
/boot
partition had250MB
which was not enough, but now it's not complaining anymore.