3. File Systems: Lesson Ten Flashcards
How does FileVault protect user data?
FileVault protects the entire system volume and all its data by using strong XTS-AES 128 encryption.
During system startup, a FileVault-enabled user must enter a password to decrypt the system volume.
What are the system requirements for using FileVault?
To enable FileVault, OS X computers must have the hidden OS X Recovery HD volume on the system disk.
Also, any Legacy FileVault accounts must be decrypted and returned to normal accounts before FileVault can be enabled.
Which users are allowed to unlock a FileVault-protected system?
Any user who’s FileVault enabled is allowed to unlock a FileVault-protected system.
This includes any local or cached network user account that was enabled when FileVault 2 was set up or created after FileVault 2 was enabled.
Further, administrators may return to Security and Privacy preferences to enable additional accounts.
How can you unlock a FileVault-protected system when all user accounts have lost their passwords?
A FileVault-protected system can be unlocked using the recovery key that was generated during the FileVault setup process.
This key can be entered during system startup and will allow you to reset the user’s account password.