• kakito69
    link
    fedilink
    English
    arrow-up
    33
    ·
    5 months ago

    Not storing it in plaintext would require setting up some kind of password, right?

    • boredsquirrel@slrpnk.net
      link
      fedilink
      English
      arrow-up
      15
      ·
      edit-2
      5 months ago

      Some way to encrypt the decryption key.

      This could also mean TPM + Pin. Or using a Nitrokey, externally, which stores the password to decrypt the decryption key.

      That is how user account unlocking (on GrapheneOS with Pixel phones) is done.