BalenaOS, the lightweight, robust, secure and reliable Linux-based embedded operating system designed to run containers now supports secure boot and disk encryption for the Generic x86_64 (GPT) device type.
This is a companion discussion topic for the original entry at https://blog.balena.io/balenaos-secure-boot-and-disk-encryption-for-x86-64
As Alex noted in the blog post, secure boot & full disk encryption (SB & FDE) requires x86 hardware that meets basic requirements e.g. has a TPM. SB & FDE is known to work on a variety of x86 hardware. As always, it is best to test your specific x86 hardware. As of now (June 2, 2023), SB & FDE is not working on Intel NUC 12 Pro and Intel NUC 13 Pro hardware (it is working on NUC 11). We intend to support those devices and we are actively working on it.