4

My SSD supports Full Disk Encryption (FDE). I have enabled FDE and set a password in BIOS.

In case my laptop is stolen or lost, I want nobody to be able to get my data. Is it now secure to allow auto-login within Ubuntu?

Basically I just don't want to enter 2 passwords when booting, just one.

ændrük
  • 78,496
Martin Ho
  • 41
  • 1

2 Answers2

1

It's easy to bypass the BIOS password, all one has to do is remove the CMOS battery and put it back in, so I guess it's rather pointless having one. One can enter recovery mode and reset Ubuntu passwords as well, so if the encryption is tied to a user that's a rather useless "protective" measure as well. Read the answers to this question to set up a secure encrypted disk.

Alex
  • 1,259
0

Is it now secure to allow auto-login for ubuntu?

No, and it never will. And to me secure means accepting the need to insert passwords.

Basically I just don't want to enter 2 passwords when booting.

Then remove the one in BIOS and you will have to insert only one password to get to the desktop. BIOS password are security by obscurity: lots of BIOS passwords have default passwords. Takes 10 seconds to by-pass any of ones listed in the link.

Rinzwind
  • 309,379