google / google/fscrypt

[question] fscrypt recovery - and the mechanics behind it

Open
#125 0 comments 5 reactions 0 assignees View on GitHub
documentation enhancement
Dominant language
Go
Stars
1k
Forks
111
Avg merge
2d 19h
Merged PRs (30d)
3

Description

How long until `fscrypt recovery` will be a thing?

I've had my ass saved at least once in the past by keeping an unwrapped ecryptfs key safely stored, and I'd appreciate having that option again.

> fscrypt supports the idea of of protecting a single directory with multiple protectors. This means having access to any of the protectors is sufficient to decrypt the directory.

Can I assume this is "Protector" file contains encrypted keys to encrypted policy files, which contain key/salt for FS policy? Or does it do something more complicated under the hood?

Contributor guide

Open the contributing guide

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.