Remember to power off your devices when they are unattended for encryption to work properly. Otherwise someone can get the key from RAM.
>>109371419Stop posting common knowledge anon.
>>109371419wow that's really good advice, i might sign up for expressvpn just to thank them for this infographic, they really do have my privacy in mind :)
>>109371441/g/ is full of people bragging about uptime or saying turning off your computer is bad.
>>109371419That's why it's such an embarrassment that hibernate doesn't work on Linux. I can't fathom why Linux users do not care
>>109371419Isn't this what segmented and protected memory access helps to protect? That windows still doesn't have and Linux, macos, android, and ios have had for years?
>>109371463In context, full disk encryption only concerns data at rest. When computer is on, data is being used.
>>109372868Powered on devices rely on mitigations, which there's an arms race to defeat and improve, e.g. Cellebrite. Powered off is guaranteed safe. This is why iPhones auto shutdown after 72 hours and grapheneOS after ~18 hours by default iirc, adjustable down to 15 minutes. Basic principle, no key in RAM is always safer than key in RAM
>>109371419use case for full disk encryption?
>>109371494>hibernate doesn't work on Linuxgotta make the swap at least half as large as your ram capacity>>109371419https://ounapuu.ee/posts/2024/11/20/keyfiles/>anything can be the key including a photo on a flash drive>make a udev rule so the system halts when it detects flash drive removal
>>109371419>drug him and whack with this $5 wrench until he gives the password
>>109375204Not how courts work.