So full-disk encryption on a Linux laptop is basically bullshit, isn’t it?

*gasps from the audience* *angry shouting*

Lock your computer: unencrypted
Sleep: unencrypted
Suspend: unencrypted

Hand your locked/sleeping/suspended computer to a customs agent or leave it unattended at a cafe: it’s unencrypted.

And we call this secure.

So I guess that’s the first thing to fix before we can recommend these devices to everyday people instead of Macs (see FileVault for a proper implementation).

@asuperhero @aral I believe systemd homed will offer encrypted, trivially-transferrable user accounts. Though I'm not sure of the status of that subproject.

As much hate as systemd gets...

Sign in to participate in the conversation
Mastodon 🔐 privacytools.io

Fast, secure and up-to-date instance. PrivacyTools provides knowledge and tools to protect your privacy against global mass surveillance.

Website: privacytools.io
Matrix Chat: chat.privacytools.io
Support us on OpenCollective, many contributions are tax deductible!