Ubuntu QA:
BlogBrainstormPackage status
Log in
Ubuntu QA
The Ubuntu community has contributed 22823 ideas, 138726 comments, 2639112 votes
Idea sandbox Idea sandbox
Popular ideas Popular ideas
Ideas in development Ideas in development
Implemented ideas Implemented ideas

Popular ideas Here are the last 6 months most popular ideas about Ubuntu.

Input one bootup encryption pass for multiple partitions  
Written by conquerorodueko the 20 Apr 13 at 15:28. Global category: Security. New
In the need to set up multiple partitions for added physical security, a need for a better bootup encryption password entering needs to be integrated.

At current, for every desired encrypted partition on the same hard-drive, the encryption needs to be set individually, hence at bootup, the encryption key for each partition would need to be put in. This can be tedious if not needed for that level of challenging security, but it is also useful for more complex levels of security hence it should not be removed. It could be useful that way for larger cooperations that need to ensure that physical access to a machine must have the right approval the respective approving bodies, where each physical encryption password would be entered by a different individual.
0
votes
up equal down
Solution #1: Include extra option for one encryption key for multiple encrypted partitions
Written by conquerorodueko the 20 Apr 13 at 15:28.
Include another option that will allow one encryption key to unlock all multiple encrypted partitions on the same hard-drive at bootup if configured that way during installation process. This will help reduce having to input the same key multiple times at bootup to unlock multiple encrypted partitions that are set to use the same key.
3
votes
up equal down
Solution #2: Separate encrypted partition application with GUI
Written by cheesehead the 29 Apr 13 at 12:21.
The Rationale describes an advanced use case. It should not be in the basic installer.

The installer is not intended to be an advanced encrypted partition manager, nor do the installer maintainers want to maintain and test a lot of extra code that only a few power-users need.

Instead, a separate application should generate the keys, do the encryption, send the keys to the admin, run the installer, install the keys on the finished system, and perhaps even test.

This solution makes encrypted-multiple-partition installs easy, and keeps all that extra complexity out of the installer.

Add a comment or propose a solution >>