[13:59] <cyberanger> minasota: Sort of, My /boot partition is on a usb key, which serves as a security key for booting
[14:00] <cyberanger> Laptop is fully encrypted, but you still need some unencrypted portion to boot off of, to unlock the rest of the system.
[15:55] <Juzzy> optionally you can encrypt just /home right out of the box
[21:04]  * wrst encrypts nothing and runs everything as root, just to watch it burn
[23:48] <cyberanger> Juzzy: I don't do that becuase I want the full system though, that way I don't have to audit the code doing the unlocking across the filesystem.