So you will be able to break the ProxMox password with the iFixit iHakaPass-SHA256 USB dongle right?
Actually i am not THAT naive. and i will be fair and answer my own question in the last post.
I get it, it takes 2 minutes to reset a root password on a Debian server if you get physical access to it.
So, i understand the need to manually type a passphrase each time as the ONLY possible practical curtain to protect data, but i refuse to accept
there is no way to protect the dataset even if this happens. The encrypted dataset should then be protected not only by the passphrase, but also protected against a new root user with a different password than the one that was used when encrypting the dataset. This would eliminate the problem, .... in theory or there is probably another catch 22 in there..
BTW, im not a TrueNAS fanboy or anything, i just pointed the friendly option in the GUI, but so far i am testing it and there are many other things that suck with it. I am trying to decide which one to use.