Passphraseless Disk Encryption Options?
Igor Mozolevsky
igor at hybrid-lab.co.uk
Tue Sep 8 18:51:56 UTC 2015
On 8 September 2015 at 19:35, Li, Xiao <xaol at amazon.com> wrote:
> Agreed, that¹s why I¹m stuck in here: it seems like something either
> unachievable or haven¹t been done before. I mentioned Apple¹s method is
> only because it is something similar in that both requires a full disk
> encryption on startup disk. But Apple¹s way is like to decrypt the disk on
> login; I¹m trying to decrypt the disk during prelogin after the boot.
>
I think you're missing the point- I suspect Apple's login *is* the decrypt
process- OS X needs something from the user to give access to the data;
without the user typing in their password, the data on the disk (as I said)
is just a source of entropy.
--
Igor M.
More information about the freebsd-hackers
mailing list