• CaptKoala@lemmy.ml
      link
      fedilink
      English
      arrow-up
      2
      ·
      1 year ago

      TIL, I use GOS and never thought to look, I just see a banner saying there’s been updates and I’ve got “update and restart now”, “schedule restart” and “I’ll restart myself when ready” (or some such).

      • impure9435@kbin.run
        link
        fedilink
        arrow-up
        4
        ·
        1 year ago

        The main purpose of this is actually security. Because when the device is in BFU (before first unlock) state, it’s much harder to gain access to the data (without the correct unlock credentials). During the reboot, the encryption keys are wiped from RAM, making it essentially impossible to access the device, since brute-force unlock attempts are prohibited by Weaver API, which is enforced by the Titan M2 hardware security module. You can read more about this at https://grapheneos.org/faq#encryption

        • CaptKoala@lemmy.ml
          link
          fedilink
          English
          arrow-up
          1
          ·
          1 year ago

          I will give that a read. I have been unintentionally using this feature, anytime I expect I won’t use the GOS pixel for a bit I restart it, I’ve also found it disables biometrics as a security measure. Cool stuff.