Summary

Ubuntu installations with Home Directory Encryption selected should encrypt swap space and disable hibernation capabilities.

Release Note

Ubuntu now provides support for encrypted home directories as part of the desktop installation.

Rationale

Security conscious users want to encrypt their home directories to guard against information theft in the event their computer is lost or stolen. We provided this option during the development of Ubuntu 9.04, but the security team asked us to remove it as without encrypted swap, it was possible for the private keys to be stored in the clear.

User stories

Assumptions

Design

The existing design for this option in ubiquity will be used.

Implementation

Test/Demo Plan

Unresolved issues

UDS Raw Notes


CategorySpec

ServerKarmicEncryptedSwap (last edited 2009-06-18 16:03:56 by cpc4-slam5-2-0-cust9)