If you use FileVault, this trick to increase security may interest you

Security

The percentage of users of FileVault on OS X It must be quite small, but that is as true as that small portion of maqueros is interested in safety as much as possible, and with this trick it can be increased even more if possible.

Simple and effective

What this trick allows us is destroy the FileVault storage key every time we put the Mac in sleep mode, so a new key will be generated at each boot and therefore the security will be significantly increased. 

Like most OS X tricks, it is applied in the Terminal by executing a command, in this case the following:

pmset -a destroyfvkeyonstandby 1

It should be mentioned that it has two cons that from my point of view are important: it goes into Deep Sleep mode skipping the boot from RAM (which affects performance, taking longer to boot) and we will have to enter the FileVault password each time we come out of sleep to generate a new key again.

If your degree of security has to be maximum, I consider it a good trick, but for most users it doesn't make much sense to use it because FileVault itself is very secure.

Source - OS X Daily


Leave a Comment

Your email address will not be published. Required fields are marked with *

*

*

  1. Responsible for the data: Miguel Ángel Gatón
  2. Purpose of the data: Control SPAM, comment management.
  3. Legitimation: Your consent
  4. Communication of the data: The data will not be communicated to third parties except by legal obligation.
  5. Data storage: Database hosted by Occentus Networks (EU)
  6. Rights: At any time you can limit, recover and delete your information.

  1.   Jose Luis Colmena said

    If you want extreme security, I recommend that you put your user on a high-speed SD card and also activate FileVault with maximum encryption, so when you put it to sleep or turn it off, you can extract the SD and with it all your data .

    Your Mac may be stolen, but never your data.

    Smile!

  2.   Javi said

    I find this comment interesting. How could a user be created on the card? Or do you just mean to save the data to the card? It occurs to me for example when installing electronic certificates and others that it would be very interesting. a greeting