Account Options

  1. Sign in
The old Google Groups will be going away soon, but your browser is incompatible with the new version.
Google Groups Home
« Groups Home
Decrypting FileVault 2 on 10.8
There are currently too many topics in this group that display first. To make this topic appear first, remove this option from another topic.
There was an error processing your request. Please try again.
flag
  4 messages - Collapse all  -  Translate all to Translated (View all originals)
The group you are posting to is a Usenet group. Messages posted to this group will make your email address visible to anyone on the Internet.
Your reply message has not been sent.
Your post was successful
 
From:
To:
Cc:
Followup To:
Add Cc | Add Followup-to | Edit Subject
Subject:
Validation:
For verification purposes please type the characters you see in the picture below or the numbers you hear by clicking the accessibility icon. Listen and type the numbers you hear
 
Lucas Moore  
View profile  
 More options Nov 14 2012, 10:44 am
From: Lucas Moore <lmo...@CALVIN.EDU>
Date: Wed, 14 Nov 2012 10:44:01 -0500
Local: Wed, Nov 14 2012 10:44 am
Subject: Decrypting FileVault 2 on 10.8
Through testing of my 10.8 image I've found that I cannot decrypt a FileVault 2 volume through Apple's published methods.  I have followed their KB article at http://support.apple.com/kb/HT5077?viewlocale=en_US just like I did with our 10.7 image.  Encryption happens without a hitch.  When I reboot into the Recovery Partition to test decryption I get "error -69749: Unable to unlock the Core Storage volume" after running the diskutil cs unlockVolume command from Step 9.  The private FileVaultMaster.keychain is on an external drive and unlocks fine with our Master Password.  I found someone with my similar issue posting here: https://jamfnation.jamfsoftware.com/discussion.html?id=4588 but the solution to boot into the Recovery Drive does not fix my issue.  Running the same commands from the Recovery Drive still offer up the same error message.

Any ideas?

Lucas Moore

_____________________________________________________
MacEnterprise, Inc
http://www.macenterprise.org

Subscription Options and Archives
http://lists.psu.edu/archives/macenterprise.html


 
You must Sign in before you can post messages.
To post a message you must first join this group.
Please update your nickname on the subscription settings page before posting.
You do not have the permission required to post.
Trouton, Rich R  
View profile  
 More options Nov 14 2012, 11:00 am
From: "Trouton, Rich R" <trout...@JANELIA.HHMI.ORG>
Date: Wed, 14 Nov 2012 15:58:16 +0000
Local: Wed, Nov 14 2012 10:58 am
Subject: Re: Decrypting FileVault 2 on 10.8
On Nov 14, 2012, at 10:44 AM, Lucas Moore wrote:

> Through testing of my 10.8 image I've found that I cannot decrypt a FileVault 2 volume through Apple's published methods.  I have followed their KB article at http://support.apple.com/kb/HT5077?viewlocale=en_US just like I did with our 10.7 image.  Encryption happens without a hitch.  When I reboot into the Recovery Partition to test decryption I get "error -69749: Unable to unlock the Core Storage volume" after running the diskutil cs unlockVolume command from Step 9.  The private FileVaultMaster.keychain is on an external drive and unlocks fine with our Master Password.  I found someone with my similar issue posting here: https://jamfnation.jamfsoftware.com/discussion.html?id=4588 but the solution to boot into the Recovery Drive does not fix my issue.  Running the same commands from the Recovery Drive still offer up the same error message.

Lucas,

Can you verify the following?

1.  That the FileVault Master keychain you're using has both the private and public keys inside?
2. Prior to running diskutil cs unlockVolume, that you've unlocked the keychain using the following command?: security unlock-keychain /path/to/FileVaultMaster.keychain

I've got a post available on this: http://derflounder.wordpress.com/2011/11/23/using-the-command-line-to...

The relevant section is named "Using FileVaultMaster.keychain on the command line"

Thanks,
Rich

> Any ideas?

> Lucas Moore

> _____________________________________________________
> MacEnterprise, Inc
> http://www.macenterprise.org

> Subscription Options and Archives
> http://lists.psu.edu/archives/macenterprise.html

---
Rich Trouton
trout...@janelia.hhmi.org

JFRC Help Desk
phone: x4030
email: helpd...@janelia.hhmi.org

The best way to get in touch with me is through email.

_____________________________________________________
MacEnterprise, Inc
http://www.macenterprise.org

Subscription Options and Archives
http://lists.psu.edu/archives/macenterprise.html


 
You must Sign in before you can post messages.
To post a message you must first join this group.
Please update your nickname on the subscription settings page before posting.
You do not have the permission required to post.
Lucas Moore  
View profile  
 More options Nov 14 2012, 11:07 am
From: Lucas Moore <lmo...@CALVIN.EDU>
Date: Wed, 14 Nov 2012 11:06:32 -0500
Local: Wed, Nov 14 2012 11:06 am
Subject: Re: Decrypting FileVault 2 on 10.8
Yes, the FileVaultMaster.keychain has both the private key and the certificate inside it.  I imported the .keychain into Keychain Access to verify.

I also ran the unlock-keychain command prior to decryption.  Master password worked fine to unlock it as it went directly back to the command prompt with no error.

Lucas Moore

>>> "Trouton, Rich R" <trout...@JANELIA.HHMI.ORG> 11/14/2012 10:58 AM >>>

On Nov 14, 2012, at 10:44 AM, Lucas Moore wrote:

> Through testing of my 10.8 image I've found that I cannot decrypt a FileVault 2 volume through Apple's published methods.  I have followed their KB article at http://support.apple.com/kb/HT5077?viewlocale=en_US just like I did with our 10.7 image.  Encryption happens without a hitch.  When I reboot into the Recovery Partition to test decryption I get "error -69749: Unable to unlock the Core Storage volume" after running the diskutil cs unlockVolume command from Step 9.  The private FileVaultMaster.keychain is on an external drive and unlocks fine with our Master Password.  I found someone with my similar issue posting here: https://jamfnation.jamfsoftware.com/discussion.html?id=4588 but the solution to boot into the Recovery Drive does not fix my issue.  Running the same commands from the Recovery Drive still offer up the same error message.

Lucas,

Can you verify the following?

1.  That the FileVault Master keychain you're using has both the private and public keys inside?
2. Prior to running diskutil cs unlockVolume, that you've unlocked the keychain using the following command?: security unlock-keychain /path/to/FileVaultMaster.keychain

I've got a post available on this: http://derflounder.wordpress.com/2011/11/23/using-the-command-line-to...

The relevant section is named "Using FileVaultMaster.keychain on the command line"

Thanks,
Rich

> Any ideas?

> Lucas Moore

> _____________________________________________________
> MacEnterprise, Inc
> http://www.macenterprise.org

> Subscription Options and Archives
> http://lists.psu.edu/archives/macenterprise.html

---
Rich Trouton
trout...@janelia.hhmi.org

JFRC Help Desk
phone: x4030
email: helpd...@janelia.hhmi.org

The best way to get in touch with me is through email.

_____________________________________________________
MacEnterprise, Inc
http://www.macenterprise.org

Subscription Options and Archives
http://lists.psu.edu/archives/macenterprise.html

_____________________________________________________
MacEnterprise, Inc
http://www.macenterprise.org

Subscription Options and Archives
http://lists.psu.edu/archives/macenterprise.html


 
You must Sign in before you can post messages.
To post a message you must first join this group.
Please update your nickname on the subscription settings page before posting.
You do not have the permission required to post.
Trouton, Rich R  
View profile  
 More options Nov 14 2012, 11:39 am
From: "Trouton, Rich R" <trout...@JANELIA.HHMI.ORG>
Date: Wed, 14 Nov 2012 16:38:27 +0000
Local: Wed, Nov 14 2012 11:38 am
Subject: Re: Decrypting FileVault 2 on 10.8
On Nov 14, 2012, at 11:06 AM, Lucas Moore wrote:

> Yes, the FileVaultMaster.keychain has both the private key and the certificate inside it.  I imported the .keychain into Keychain Access to verify.

> I also ran the unlock-keychain command prior to decryption.  Master password worked fine to unlock it as it went directly back to the command prompt with no error.

Can you try on another encrypted Mac? There's a couple of things I can think of that may be the issue:

1. Something's funky with that Recovery HD partition
2. The FileVaultMaster keychain has incorrect keys inside.

Thanks,
Rich

---
Rich Trouton
trout...@janelia.hhmi.org

JFRC Help Desk
phone: x4030
email: helpd...@janelia.hhmi.org

The best way to get in touch with me is through email.

_____________________________________________________
MacEnterprise, Inc
http://www.macenterprise.org

Subscription Options and Archives
http://lists.psu.edu/archives/macenterprise.html


 
You must Sign in before you can post messages.
To post a message you must first join this group.
Please update your nickname on the subscription settings page before posting.
You do not have the permission required to post.
End of messages
« Back to Discussions « Newer topic     Older topic »