The invention relates to the technical field of
software encryption protection, in particular to a method, a
system and equipment for automatically guiding an encrypted disk in a Linux
system and a medium. A fixed UUID is designated as a partition identifier, a
plaintext is encrypted through a symmetric
encryption and decryption
algorithm, a secret key is obtained, and the
plaintext is prevented from being leaked when process parameters are transmitted; a secret key and a secret key decryption
algorithm are embedded in the GRUB, so that the GRUB has a
plaintext restoration function; the method comprises the following steps: transmitting a key parameter when a kernel is under a GRUB guide boot partition, obtaining a plaintext by using a decryption
algorithm when the parameter is obtained in the kernel, and writing the plaintext into an initrd memory fixed path file after decompressing initramfs (initrd); the
system-cryptsetup is used for realizing that a cryptttb file reads a plaintext
password file mounting partition, and the cryptttb file is used for reading a plaintext
password file mounting partition; and finally, switching and guiding the root
file system. According to the method, a user does not need to be informed of a plaintext
password for a
software final state, key binding,
disk encryption and system boot management and control are achieved, and finally manual intervention is not needed.