Conversation

There should have been no way to get to that situation without: 1. Being offered the option to use the passphrase as input to a KDF, with warning about strength. 2. Being warned to store key backup on paper, and that data WILL BE GONE PERMANENTLY if you don't.
1
3
Replying to and
Being able to easily rotate it is particularly important for always enabled disk encryption where the storage is encrypted before the user has chosen a passphrase. Changing it really needs to be done safely (atomic), shouldn't require a lot of space and should also be quick.
Replying to
Sure, but the user wanting to change their passphrase is different than them wanting to rotate the underlying disk encryption key. It could require a lot of time and storage space or simply backing up, resetting and restoring from the backup.
2
Show replies