ecryptfs team mailing list archive
-
ecryptfs team
-
Mailing list archive
-
Message #00291
Re: [Bug 277894] Re: anyone with a livecd can acces data on ubuntu -- encrypt home directories
As I have said above, I'm work on seamless home directory encryption for
Jaunty.
I have it working in several virtual machines, and on my primary
laptop. I'm still bringing together the pieces to automate the setup
thereof.
It will *not* be the default. However, I do hope that it is an option
on installation (both desktop and server), as well as an option when
the administrator creates new users.
:-Dustin
--
anyone with a livecd can acces data on ubuntu -- encrypt home directories
https://bugs.launchpad.net/bugs/277894
You received this bug notification because you are a member of eCryptfs,
which is subscribed to ecryptfs-utils in ubuntu.
Status in “ecryptfs-utils” source package in Ubuntu: In Progress
Bug description:
all of my personal files i store in ubuntu can be accessed by anyone with a livecd without knowing my password. mac actually locks your personal data by default so if you put a livecd in and try to access them it will prompt you for the password. ubuntu does not have this. this renders all of my personal files insecure. this seems pretty serious to me.
try using a livecd to read data from your home folder on a mac and see what happens. this is what should happen in ubuntu.
once again, seeing as this applies to everyone on a default setup and how it allows anyone to see all of the files on the computer without a password, including extremely private and critical ones, and seeing as how you can eveen delete these files too, it seems pretty serious to me.
Follow ups
References