- Run after "systemd-cryptsetup@crypted.service" instead of "dev-mapper-crypted.device" - Delete old backups after recreating home and root subvols in case of failure - Remove possible immutable attributes from backups, so the service doesn't fail because it's not able to clear old backups