

Let me clarify: when I meant two factor, I mean both. You need both the print AND the pin to unlock. So its more convenient than a full passphrase (for first unlock) but still requires knowledge not just biometrics.


Let me clarify: when I meant two factor, I mean both. You need both the print AND the pin to unlock. So its more convenient than a full passphrase (for first unlock) but still requires knowledge not just biometrics.


No, this preserves the phone in an “after first unlock” state. They specifically dont want a phone to reboot or shutdown because then the encryption keys get dumped from memory and require the password to decrypt the keys.


You can disable. You can also two factor it e.g. fingerprint and pin, with also a long password for BFU.
True. But I’d still rather have a TOTP setup.


I guess it depends on your locale, but august has always been summer. (Northern hemisphere of course). The equinox isn’t until the end of September.


One would be CG-NAT as you mentioned, and some people want to host for other people too, potentially including too many people/too distant/too tech illiterate to easily set up WG.


Lots of banks will send a check on your behalf. It withdraws the money that day so you can predict it rather than when the business cashes it. And you have proof the money was sent and your bank/credit Union has a stake in the fight if the business gets shay about it.


Wow. Wasn’t expecting a Joe Hill reference today. That works extremely well.


Yeah I think it’s a failure to monitor. But there’s no monetary incentive to do that, so it won’t happen without regulation, and the US doesn’t have that political climate right now.


And yet they let him do it 717 times without reporting it. Company working as intended I guess.
The benefit is if your PIN was compromised your phone would still be inaccessible, barring them having you physically. It’s another layer of defense. Similar to a yubikey, if someone had your phone but not the extra hardware. Although I think using a yubikey every time I wanted to use my phone would be prohibitively inconvenient.
Also, I don’t think PIN and password would be considered 2 Factor. That’s essentially just a longer password.