The way I work around this in a relatively secure way is to use full-
disk encryption (LUKS). Then you can set KWallet without a password, and
you can even set KDM to log you in automatically without a password
(with the screensaver lock enabled at startup perhaps). This way, the
only password you'd need to enter is the one used to decrypt your entire
partition.

This is obviously vulnerable to malicious applications running on your
system once it is booted and you've entered the decryption password. But
then again, even KWallet is vulnerable to malicious applications running
on your system once you're logged in anyway, because all an application
needs to do is to request KWallet access, and then simulate a click on
your behalf on the "Always allow" button.

However, at least this setup is secure against attacks while your
computer is off (someone steals your laptop or something).

-- 
You received this bug notification because you are a member of Kubuntu
Bugs, which is subscribed to kde4libs in Ubuntu.
https://bugs.launchpad.net/bugs/397466

Title:
  There is no KWallet PAM integration

To manage notifications about this bug go to:
https://bugs.launchpad.net/hundredpapercuts/+bug/397466/+subscriptions

-- 
kubuntu-bugs mailing list
kubuntu-b...@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/kubuntu-bugs

Reply via email to