Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

FileVault does not require a password input at EFI. It decrypts user data in memory after user login


I thought current versions of FileVault encrypt the entire OS and the login screen is just a fancy boot partition?


You're mostly correct.

On a CoreStorage Filevault 2 system, the Recovery HD is used as the boot loader, calling an EFI program named "boot.efi" present on the filesystem.

On a APFS system things are a bit different; the Recovery HD is still used, however this is now a Logical volume presented from the main volume group, with the update to High Sierra a Firmware upgrade was pushed out to all supported systems enabling the EFI to grok APFS.

Edit removed terminal output




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: