I have FDE with keys in the TPM. It's pretty smooth bit required a one time additional step in Fedora. It's also probably not very secure, but my threat model is simple theft.
You can see https://wiki.archlinux.org/title/Trusted_Platform_Module#PCR... for an example of doing so