This is also very interesting https://0pointer.net/blog/authenticated-boot-and-disk-encryption-on-linux.html