Device encryption: does text-based password fix its issues?

Hi!

So I sometimes read here in the forum, that the Sailfish encryption is not very secure and said to be easily cracked.

Some time ago, Jolla introduced the option to use a text-based password instead of the number code. Now I know that text-based passwords are better from a security perspective, but does this solve the issues with device encryption? Or at least make the situation better?

Or is this related to SailfishOS using LUKS 1 instead of LUKS 2?

Because of the new Jolla phone I’m changing phones later this year and that’s why I wanted to know beforehande, if it would be better to use a text-based password.

This would have been so much better as a question in that thread…

AFAIK there’s no technical reason that would make sfos encryption itself weak, the main problem is password complexity.

You can try comparing passwords using tools like

(note: i have not checked anything about that site, do NOT use real passwords in any case!)

In general yes using an alphanumeric password makes it easier to create a more secure passcode.

But see also: xkcd: Password Strength

6 Likes

Ah okay, that’s good to know, then I will just change my password to alphanumerical when I receive my new Jolla phone.

I’m sorry, but I’ve read this not once and in different, completely unrelated threads so I thought I make this a new thread to not convolute information somewhere else. I’m sorry

This was what my professor at university showed us when we had our information security class :joy:

1 Like