Become a MacRumors Supporter for $50/year with no ads, ability to filter front page stories, and private forums.

Takuro

macrumors 6502a
Original poster
Just filed bug FB20361778 with Apple for a stupid issue that's easy to reproduce:

- Clean install 15.7 on an external drive.
- Create a user, enable FileVault, and reboot.
- The user's password and recovery key will not be recognized. You are now totally locked out with no way to recover.

Reproduced on a 2020 iMac.

I know some said they released a 15.7.1 emergency update, but it's unclear if it addressed this.
 
Last edited:
Yes, this happened to me just now. Wish I never upgraded to 15.7. I was happy with Ventura. I just wanted to try it out. Big mistake. Now any FileVault Encrypted disk can't be used as boot disk anymore. The Login password and recovery key won't be accepted. Will not boot past the Login screen.

Apple will probably not address this issue as these old T2 Macs are EOL. Funny thing is if they left bridgeOS at version 9 everything would still be working fine. So what was the point of the firmware update of bridgeOS that came with 15.7? I really hate the age of the security enclave T2 chips etc. Never had any problem with Macs without these security chips. I was hoping this Mac mini 2018 would last me many more years.

Would be near impossible to find another Mac mini 2018 that hasn't been upgraded to Sequoia and having the older T2 firmware.
 
"- Clean install 15.7 on an external drive.
- Create a user, enable FileVault, and reboot.
- The user's password and recovery key will not be recognized. You are now totally locked out with no way to recover."

Just have to post this:
Fishrrman's "Mac Rule Number 7":
NEVER use encryption on a drive unless you have a rock-solid and compelling reason to do so. What if you have an emergency and the encryption prevents you from accessing it?
 
  • Like
Reactions: richmlow
"- Clean install 15.7 on an external drive.
- Create a user, enable FileVault, and reboot.
- The user's password and recovery key will not be recognized. You are now totally locked out with no way to recover."

Just have to post this:
Fishrrman's "Mac Rule Number 7":
NEVER use encryption on a drive unless you have a rock-solid and compelling reason to do so. What if you have an emergency and the encryption prevents you from accessing it?

I totally agree with Fishrrman!

Often, people think "Ah, security.....I need to activate FileVault!" This is a very natural thought to have....especially, since we are constantly inundated with news reports of hacking, malware, ransomware, etc.

What people don't realize is that the vast majority of the time, your data is NOT important to bad actors. The data is important to YOU. So, it's better for people to have reliable backups of their data. This make much more sense than locking in a "FileVault" and then (due to unexpected circumstances) lose all access to it by being locked out.

Personally, I have never activated FileVault (or any other type of disk/SSD encryption). My access to my data is too important to me.


richmlow
 
I totally agree with Fishrrman!

Often, people think "Ah, security.....I need to activate FileVault!" This is a very natural thought to have....especially, since we are constantly inundated with news reports of hacking, malware, ransomware, etc.

What people don't realize is that the vast majority of the time, your data is NOT important to bad actors. The data is important to YOU. So, it's better for people to have reliable backups of their data. This make much more sense than locking in a "FileVault" and then (due to unexpected circumstances) lose all access to it by being locked out.

Personally, I have never activated FileVault (or any other type of disk/SSD encryption). My access to my data is too important to me.
OK, but "reliable backups" have nothing to do with FileVault or not, but with backups that run and are handled with foresight, like keeping multiple ones you switch between and don't store in one single place.
Because I have reliable backups, I can use FileVault. At worst I risk a few hours of data. I would not use it without reliable backups.

If my Mac gets stolen, I will still have my data and the thieves won't. You actually know nothing about which data, in other member's Macs, is important to whom, when it's not your business to know (except when it is, of course).

Other than that, there's nothing wrong with your approach as it suits you and your data.
 
Register on MacRumors! This sidebar will go away, and you'll see fewer ads.