Recovery Partition mandatory for File Vault and unencrypted TM Backup?

I recently had to setup my Macbook Pro from scratch meaning erasing the whole disk and start from there.
The update to Lion took already place a while ago and I had File Vault active. After making a last backup using
TM I erased the disk and all partitions including Recovery partition and used the Leopard system DVD to boot
the machine.
From there I used the restore function to restore my TM backup to the MacBook. However, as the drive was
not partioned and not formated, I had to do this manually. Apparently, the recovery process via TM does not include
that. After system recovery, I booted from the Macbook and all apps and configuration seemed ok.
I was a little surprised to see that I was able to do this recovery without being asked for ID and password of the user's File Vault access
or the File Vault recovery key. All I needed was the TM ID and password (which is different from the owners ID and password)
I am not sure if this is supposed to work like this but I looks rather easy to gain access to application an data of another user if that
is all it takes?
Now booting Lion again, I checked File Vault and noticed it was disabled although it was enabled for quite a while and long time
before I took the latest backup. I could not turn it on, after providing a recovery key and asking me wether I wanted to write it down
or safe it with Apple which I declined I wanted to reboot the notebook to start encryption but stopped saying my partition or volume
would not support File Vault. This was GUID and MacOS Extended Journal partition and volume which to my knowledge would
certainly support File Vault. In fact this is basically what I had before when File Vault was turned on and running.
I called Apple support a few times. The second agent told me that it does not work because there is not recovery partition on my
system but there was when I took the latest backup and I do have other means to get the recovery screen. Anyway it seems that
File Vault required a local Recovery partition and I was wondering if anyone can tell me why this dependency exist. If I write down the
recovery key, why would I need it to be stored on my disk as well?
Also, if anyone has an idea if there is a way of creating a local recovery partition without having to go through the lenghty process of installing
Leopard then upgrade to Lion and install all the apps and configure the OS again, would be great? I assume when I am back on Lion and use the TM
backup for recovery, I probably end up with having the Recovery partition deleted and start from scratch again.
I am a little concerned about the fact that it seems so easy to gain access to a protected backup and that the TM restore process does not include
restoring partition and volumes as well. Who knows how many other dependencies exist and users have to reinstall their system again after recovery.
I was following the recovery instruction of Apple but perhaps someone knows a better way to do this?

Just an update, I went ahead and installed Lion again over the existing TM restored installation using the Lion Update file and at least File Vault is working. Interestingly, I still do not have a Recover partition so obviously something new for Apple Support to learn.

Similar Messages

  • How do I create 2 Recovery partitions: one for Lion and one for Mountain Lion?

    Well that is basically the question:
    How do I create 2 recovery partitions: one for Lion and one for Mountain Lion?
    Reason is that I would like to keep the option to return to Lion, or even better, have a seperate partition for eacht?

    can I access my programs from the other partition, so I can save space ...
    No, as far as I know, each one is completely separate - especially if you're dealing with two different versions of OS's.
    is it possible to safely make an extra partion on a running drive (it is my main computer ...) The disk is large enough ...
    how large would this have to be
    I've personally never done it on a running drive - have read it's possible, but don't want to suggest it since I've never done it and wouldn't be sure about the steps. This is how I got to two partitions on my iMac:
    Originally, I had just one partition with Snow Leopard. I used CCC to clone that to an external drive. Booted into that drive and used DU to partition and erase the internal. I then cloned the new clone back. Also cloned the same thing to the other partition which I then upgraded to Lion. So I had two OS's - SL and Lion. I've now decided to clone my SL to an external drive for occasional use and installed ML on that partition - so now I have Lion and ML.
    There are two ways to get a "fresh" install: either download the OS again and install it on a partition of your choice or, as I've done as well, copy the installer to a safe place so you don't need to download it again. It does include whatever apps/software is included in the OS.  I've designated two smaller partitions on externals as my "fresh" installs of both Lion and ML for emergency or reinstall purposes (this is my way of dealing with not having install DVDs) - I took the time to install it there and then slowly add fresh installs of my important apps (either via download or install CD) - don't bother with the little/less used stuff, a current copy of that can be downloaded if and when I need it. I don't really update those two - that can also be done if/when I need it since that'll always change.
    So, yesterday, I decided I wanted to start fresh with ML - booted into my fresh install of Lion (on external), wiped the SL partition on my internal and installed Lion. Decided to download a fresh copy of the ML installer and installed that. Then ran Software Update. After that, repaired permissions. Then I methodically opened every third party app and checked for updates - installed those where necessary. After all that, I simply copied (drag 'n drop) my entire Documents folder (which contains all my important data,, photos, etc) over from another backup.
    This took a while, but mostly because of the long download times; the installs weren't all that bad. I should be running a really clean system now, especially since nothing was ported over except my Documents folder.

  • File Vault and Firewall?

    I have a new macbook pro. Should I turn on File Vault and Firewall?

    The purpose of FileVault is to protect your files from being read by someone who has physical access to the computer. If you need or want that protection, you should enable it.
    The application firewall blocks incoming network traffic, regardless of origin, on a per-application basis. Typically, it would be configured to allow only applications digitally signed by Apple to listen on the network. It does not block outgoing traffic, nor can it distinguish between different sources of incoming traffic. It is not, as some people seem to believe, a malware filter.
    So for example, suppose you enable file sharing, and allow access by guests to certain folders. You want people on your local network to be able to access those files without having to enter a password. When configured as stated above, the firewall will allow that. Your router will prevent outsiders from accessing the files, whether the application firewall is on or not. But if your computer is portable and you connect it to an untrusted network such as a public hotspot, the firewall will still allow access to anyone, which is not what you want.
    Now suppose you unknowingly install a trojan that steals your data and uploads it to a remote server. The firewall, no matter how it's configured, will not block that outgoing traffic. It does nothing to protect you from that threat.
    Another scenario: Your web browser is compromised by a trojan. The trojan redirects all your web traffic to a bogus server. The firewall does nothing to protect you from this threat.
    A final scenario: You're running a public web server. Your router forwards TCP connection requests on port 80 to your Mac, and the connections are accepted by the built-in web server, which is signed by Apple. The application firewall, still configured as above, allows this to happen. Now you download a different trojan, one that tries to hijack port 80 and replace the built-in web server. The good news here is that the firewall does protect you; it blocks incoming connections to the trojan and alerts you. The bad news is that you've been rooted. The attacker who can do all this can just as easily disable the firewall, in which case it doesn't protect you after all.
    It might make a bit of sense to use the firewall if you're running trusted services on an unprivileged port; that is, a port numbered higher than 1023. Those ports can be bound by a process with no special privileges.
    Here is a more realistic scenario in which you should enable the firewall. Your portable Mac has several sharing services enabled. You want those services to be available to others on a home or office network. When you're on those networks, the firewall should be off. When you move to an untrusted network, you can either turn off all the services, or enable the firewall to block them. Blocking is easier: one configuration change instead of several.

  • File Vault and Time Machine

    Hi, I am new mac users, and I need to know how to secure my time machine drive so if you plug in to other mac should ask for password, by googling some info, I found some trick to set our mac with file vault, so all user data will be encrypted.
    but after my imac sets file vault, time machine only works for shared folders, and not realtime backup my main data and system, it inly backup when I log out or shut down my mac.
    so I assume my backup data from my time machine will not work for restoring file as normal time machine backup
    any solution for this? thanks

    Time Machine and File Vault aren't a particularly good combination.
    See #25 in [Time Machine - Frequently Asked Questions|http://web.me.com/pondini/Time_Machine/FAQ.html] (or use the link in *User Tips* at the top of this forum), for details and some possible alternatives.

  • File vault and wake from sleep

    I had File Vault on ever since I got my Macbook Pro. It has always been slow to sleep and to wake from sleep -- sometimes taking 30 seconds. Then I turned File Vault and encryption of virtual memory off. Now the Macbook Pro wakes from sleep instantly. Can anyone explain what accounts for the difference?

    Hi, Daniel.
    You MacBook Pro employs Safe Sleep. An educated guess would be that using one or both of FileVault or Encrypted VM might incur an additional delay for encryption of the sleepimage file.
    Since it is easy to enable or disable Encrypted VM, try turning that back on and seeing if the delay returns. If so, that was the cause. If not, then it would FileVault.
    Good luck!
    Dr. Smoke
    Author: Troubleshooting Mac® OS X

  • What are the differences between file vault and legacy file vault?

    what are the differences between file vault and legacy file vault?

    Legacy is an encrypted disk image of your Home folder, FileVault2 is whole disk encryption

  • My mac says that it has 40 gb of movies on it but when i finder search for file size, and for file type it gives me no videos

    My mac says that it has 40 gb of movies on it but when i finder search for file size, and for file type it gives me no videos or movies. I have called apple 3 times and each time they do the same thing and then do something that takes awhile to finish so we hang up and then it never works.
    Please Help

    each time they do the same thing
    And what thing might that be?

  • File vault and wanted to upgrade to Lion

    I have a client who was using file vault and wanted to upgrade to Lion. I did a Time Machine backup and upgraded to Lion. Ater that I noted that time machine does not backup file vault files. Please help.

    Are you trying to sign into the App Store and can't?

  • Is a toll-free number mandatory for simultaneous VOIP and teleconferencing? How do we get a number, we're an academic institution?

    Is a toll-free number mandatory for simultaneous VOIP and teleconferencing? How do we get a number, we're an academic institution?

    page is here
    http://ca.blackberry.com/support/tablets/playbook/​contact-support.html
    Click here to Backup the data on your BlackBerry Device! It's important, and FREE!
    Click "Accept as Solution" if your problem is solved. To give thanks, click thumbs up
    Click to search the Knowledge Base at BTSC and click to Read The Fabulous Manuals
    BESAdmin's, please make a signature with your BES environment info.
    SIM Free BlackBerry Unlocking FAQ
    Follow me on Twitter @knottyrope
    Want to thank me? Buy my KnottyRope App here
    BES 12 and BES 5.0.4 with Exchange 2010 and SQL 2012 Hyper V

  • What is file vault and should i turn it on??

    What is file vault and shuld i use it?

    It basically is a system that encrypts your hard drive, making it more secure. It basically makes it so if your laptop is stolen and the thief wants to access files, they won't be able to just take out the HD and put it in another computer.
    It really is not necessary unless you are working with files that are very confidential.

  • Lion OSX File Vault and filesharing with unencrypted users/computers

    How does File Vault 2 work in the following Use-Case? 
    User A, has full disk encryption through File Vault enabled on a MacBook Air. 
    User A has an Microsoft Excel file that has been stored in his/her Documents Folder on their encrypted drive. 
    User A wants to share this file with User B so that User B can finish entering data and adding some calculations. 
    User B is a Windows 7 PC with no disk encryption. 
    User A drops this file on a WIndows file server that both User A and User B has access to. 
    This file server is not an encrypted system. 
    Will the act of User A dropping the file on the file server automatically unencrypt the file so the User B can open the Excel file and work with it?

    The files don't get passed as an encrypted object. They get passed as files. The encryption/decryption works at a level that is transparent to just about everything, includingthe file system.
    So, no, the file is not encrypted when you drop it onto a file server.

  • How do I use the remote wipe feature for file vault 2 / lion?

    I tried to find a preference panel. I know that for the ios you have to link/setup your device. I tried the find my iphone web site to see if my computer was listed there and it isn't at the moment. Is this new lion feature only available later with icloud? I checked the lion feature page and it lists it with file vault 2 with no asterisk so my guess is it should already now work.
    It would be a pity to think you've setup your computer to find out that you hadn't "activated" your computer/laptop
    Thanks,
    Phillyman

    Hi,
    I'm out of the country on business but probably the only way to figure this out is to call apple or drop by their retail stores. If no one figures this out (and I'm pretty sure there is nothing to figure out at this time). I'll try to call apple when I'm back in august.
    I find it wrong that apple touts this as a feature with no disclaimer. I'm a loyal mac fan for twenty years so I'll continue to buy their prodcuts and I did buy lion the day it came out. BUT a disclaimer (as they have done in the past) would have been nice. I know of at least two mac users who usually don't buy new OS's until they get it with their new laptops that specifically bought lion for this feature since they had read about it in a newspaper article.
    I also thought this was one of the more useful features in lion since my family already "lost" an iPad and we liked to delete our data after our alarm and message didn't work for a day.
    I'm sure  apple has it's reasons for not offering the feature just yet but in that case a disclaimer is a must. I would probably drop the reference remote wipe until I have the infrastructure in place.
    Cheers,
    Phillyman

  • Time Machine, File Vault and External Hard Drive

    I use file vault on my well travelled MBP.  When I get home I connect to my EHD for a regular backup using Time Machine.  I am the only user on the MBP.  My questions are:
    Since the MBP is encrypted is the backup encryted on the EHD?
    Should I ever need to restore from Time Machine using the EHD would I therefore need the password to access the backup?
    If the EHD is NOT encrypted, how do I accomplish this and have File Vault work as seemlessly on the EHD as it does on the MBP
    MacOS X 10.7.5
    Thanks

    1. Only if the external HD is encrypted, which can be done by formatting it as an encrypted volume with Disk Utility before setting it up with Time Machine, or by checking the option to encrypt the drive in the Time Machine system preferences.
    2. No. The password for unlocking the drive is kept on the drive, so if you need to restore from backup all you should need is to supply the password when using the OS X Tools.
    3. See #1.

  • Default operation for File Vault

    Just a suggestion for the folks at Apple. When I shut down, the "save disk space" dialog does not always immediately appear. Sometimes I walk away from the computer and come back later with the dialog still open. Why not put in a default similar to the log-off or shut down; if the decision isn't made in a minute, just cancel the "save space" procedure?
    stu h

    It is really annoying that the "save disk space" dialogue appears such a long time after I have commanded the computer to shut down. As a result the computer often remains switched on after I have packed up and gone away. Is there no option that allows File Vault to save disk space routinely whenever I shut down?

  • Solution for File Vault Error.

    I just got off the phone from Apple Tech support (Holding for 20 minutes on a 10th attempt) I could not get past the log-in screen. "File Vault error needs to be repaired". This is what Brandon from Apple told me to do.
    1)Restart Computer holding down the "c" key.
    2)Follow the onscreen instructions until you get to "Select Drive to install to"
    3)Select your drive-click customize
    4)Select the 2nd option, (install and do back of of files) and uncheck the box below the option...sorry I can't remember what the option is...Im in the middle of trying it now.
    5)continue.
    6)If you have already screened the install DVD, there is no reason to do this step again, it is ok to skip to install.
    If this does not work you need to erase and install, however, you will need to do a file transfer to another mac computer via fire-wire by holding down the "T" key during start up prior to erasing the drive and installation of Leopard.

    I would really love to try this, as I am having the same problem, but even after removing everything possible in the customization, I don't have enough disk space to do so. Probably because I used it all installing the operating system the FIRST time. I don't want to have to do an erase and re-install. I didn't back up nearly enough stuff last time because I was assured I wouldn't need to.
    Now, it's after hours so I can't talk to apple and I am stuck with my husband's PC. Ew.

Maybe you are looking for

  • Dynamic action - Cache server data

    APEX 4.2.2 Is there a way to cache server side data in a global (page/document level) Javascript vector (bunch of key-value pairs) (associative array, array of objects or some such)? This way the data can be used by subsequent dynamic actions' Javasc

  • Has anyone else had an unsaved photo disappear from a text message?Gone. No thumbnail... it doesn't exist anymore? How do you fix that? Can you fix that?

    The photo is gone in the text message. Gone. No thumbnail...it doesn't exist anymore. How do you fix that? Can you fix that? Can you ever get the photo to show up again? I stumpted the guy on the phone with this problem. I need some help from anyone

  • Error while generating new proxy-client

    Hi, I'm trying to generate a proxy-client from the following WSDL file: https://www.anlagenkataster.de/opencms/services/ZuesService?wsdl=1.1 Unfortunately the generation aborts everytime I try saying: "Exception occurred in library handler Incorrect

  • Problems with iOS5 update

    I have just updated my iPhone4 to the new iOS5 and am having major problems that I can't seem to find a way to fix. On my itunes it now shows my phone as being over capacity by 15.7gb, have tried a number of things and still not fixed. Also when the

  • Running in Servlet Container or Standalone?

    How can I detect if I'm running in a servlet container or a standalone application? if ( iAmRunningInAServletContainer() )   // do this else   // do thatIs there a System property that all servlet containers set? I can't find any.