Tails should default to Argon2id for newly created LUKS volumes
Steps to reproduce:
- Boot up a Tails 5.14 USB stick
- Plug in a USB drive
- Format the USB drive via the GNOME Disk Tool
- Create an encrypted partition
Expected behavior:
- Partition is encrypted with LUKS2/Argon2id, consistent with security advisory (https://tails.boum.org/security/argon2id/index.en.html)
Actual behavior:
- Partition is encrypted with LUKS2/Argon2i per
cryptsetup luksDump
output