|
|
|
|
|
by mxvzr
3305 days ago
|
|
If the machine is turned off and only the home directory is encrypted, I am at liberty to patch the kernel or binaries, update your package manager or dns settings, or anything in between really. I can do none of that with FDE (assuming I don't already know the key of course). What am I missing here? |
|
If you are just concerned with identity thieves and basic asset protection then as long as that stuff is encrypted you are fine, whether that is whole system, home directory, ~/Private directory, or just those specific files.