Your system information
- Steam client version: does not matter
- SteamOS version: 3.0
- Opted into Steam client beta?: No
- Opted into SteamOS beta?: Yes
- Have you checked for updates in Settings > System?: Yes
Please describe your issue in as much detail as possible:
Currently SteamOS does not encrypt anything: browser data, steam data, contents of sd cards and so on are easily explorable and modifiable if you connect the SD or SSD to another computer. Most of the users usually do not think about security concerns and may believe the recently added lockscreen is enough.
The only way to securely store sensitive data on the deck is using plasma vaults, but OS image does not include it's default backend (cryfs).
Yes, I know SteamOS is not a general purpose OS, but it gives users possibility to store and process sensitive data on the device but does not care about security putting it on the end user who is not always technically educated enough and used to trust platform holders in security questions.
I believe there must be a way to encrypt root fs and all partitions that may contain user data without making unlocking annoying to the user as the password for root fs may be equal to lockscreen pin and passwords for other partitions including the SD may be stored on the encrypted root and may be unique per partition. It must be even possible to use secure boot and everything almost transparently to the user.
WDYT?
Your system information
Please describe your issue in as much detail as possible:
Currently SteamOS does not encrypt anything: browser data, steam data, contents of sd cards and so on are easily explorable and modifiable if you connect the SD or SSD to another computer. Most of the users usually do not think about security concerns and may believe the recently added lockscreen is enough.
The only way to securely store sensitive data on the deck is using plasma vaults, but OS image does not include it's default backend (cryfs).
Yes, I know SteamOS is not a general purpose OS, but it gives users possibility to store and process sensitive data on the device but does not care about security putting it on the end user who is not always technically educated enough and used to trust platform holders in security questions.
I believe there must be a way to encrypt root fs and all partitions that may contain user data without making unlocking annoying to the user as the password for root fs may be equal to lockscreen pin and passwords for other partitions including the SD may be stored on the encrypted root and may be unique per partition. It must be even possible to use secure boot and everything almost transparently to the user.
WDYT?