• CaptKoala@lemmy.ml
    link
    fedilink
    English
    arrow-up
    2
    ·
    1 year ago

    TIL, I use GOS and never thought to look, I just see a banner saying there’s been updates and I’ve got “update and restart now”, “schedule restart” and “I’ll restart myself when ready” (or some such).

    • impure9435@kbin.run
      link
      fedilink
      arrow-up
      4
      ·
      1 year ago

      The main purpose of this is actually security. Because when the device is in BFU (before first unlock) state, it’s much harder to gain access to the data (without the correct unlock credentials). During the reboot, the encryption keys are wiped from RAM, making it essentially impossible to access the device, since brute-force unlock attempts are prohibited by Weaver API, which is enforced by the Titan M2 hardware security module. You can read more about this at https://grapheneos.org/faq#encryption

      • CaptKoala@lemmy.ml
        link
        fedilink
        English
        arrow-up
        1
        ·
        1 year ago

        I will give that a read. I have been unintentionally using this feature, anytime I expect I won’t use the GOS pixel for a bit I restart it, I’ve also found it disables biometrics as a security measure. Cool stuff.