3 ms·
The current state of userfriendly is quite good. In Ubuntu it's just a checkbox in the installer and input a passphrase.
by folmar 3y ago
The current state of userfriendly is quite good.
In Ubuntu it's just a checkbox in the installer and input a passphrase.
- dathinab 3y agoyes and it does use the TPM and is affected by this attack ;=) at least the recent ubuntu versions when using the default full disk encryption setup do setup decryption using TPM you still need an additional password as without you would e.g. lose access to your data if you change some hardware, you motherboard brakes or depending on how they set it up you also need the password after kernel upgrades etc. but the vulnerability allow someone with hardware access to access all your data by booting their code but messing with the TPM in a way where it still measures as if it's was booting your code
- Rimintil 3y agoThe passphrase is what makes it a poor user experience. Many people simply need an encrypted disk that you can't boot offline and not the boot-time PIN/passphrase (which Microsoft abandoned as the default in Windows 8, I believe, again due to UX).