Hacker News new | ask | show | jobs
by lodonnell9213 1756 days ago
Bitlocker (enterprise setup) is different, you can backup into AD, and also have network unlock (requires a connection to dc that’s wired)

However I agree, I heavily use iMessage, it’s convenient because when I used signal I didn’t get notifications.

However, Apple has had the decryption keys server side for ages, and I believe the reason they don’t have E2EE is purely because users don’t store their backup keys, and kick off when they loose all their life that’s stored in iCloud, and it’s just not worth the hassle to the support team, my family is the same with 1Password, they don’t backup their secret key thing, so I have to either store it or restore their account.

Bitlocker doesn’t help in this regard either, you can bypass the mandatory saving section by using print to PDF to store the recovery file to the encrypted drive, essentially locking a safe with the key inside.