summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorDaniel Micay <danielmicay@gmail.com>2021-04-01 13:47:44 -0400
committerDaniel Micay <danielmicay@gmail.com>2021-04-01 13:47:44 -0400
commiteb35b4ba62f990b179c8cab9c76c49eb45130e90 (patch)
tree15d827e5796d9b2611d8a1593fc41d6cce3ccc91
parent553d293bdc47c10abf080c3c60876db731ec9c92 (diff)
clarify recommendation
-rw-r--r--static/faq.html16
1 files changed, 7 insertions, 9 deletions
diff --git a/static/faq.html b/static/faq.html
index 2f669979..6d1c3fa4 100644
--- a/static/faq.html
+++ b/static/faq.html
@@ -396,15 +396,13 @@
owner profile without rebooting due to it encrypting the sensitive system-wide
operating system data.</p>
- <p>Our recommendation for a high security setup is to use the owner profile
- only for managing other profiles. Using a secondary profile for regular usage
- allows you to make use of the device without decrypting the data in your
- regular usage profile. It also allows putting it at rest without rebooting the
- device. Even if you use the same passphrase for multiple profiles, each of
- those profiles still ends up with a unique key encryption key and a compromise
- of the OS while one of them is active won't leak the passphrase. The advantage
- to using separate passphrases is in case an attacker records you entering
- it.</p>
+ <p>Using a secondary profile for regular usage allows you to make use of the
+ device without decrypting the data in your regular usage profile. It also
+ allows putting it at rest without rebooting the device. Even if you use the
+ same passphrase for multiple profiles, each of those profiles still ends up
+ with a unique key encryption key and a compromise of the OS while one of them
+ is active won't leak the passphrase. The advantage to using separate
+ passphrases is in case an attacker records you entering it.</p>
<p>File data is encrypted with AES-256-XTS and file names with AES-256-CTS. A
unique key is derived using HKDF-SHA512 for each regular file, directory and