Hacker News new | past | comments | ask | show | jobs | submit login

Huh? AFAIK, the only keys which Apple currently holds in escrow are FileVault 2 recovery keys, and those keys are normally only released by request of the user, in the event of a lost local password (the recovery key's used in place of the user's key, not in addition to it). Apple isn't "intermediating" any decryption at any time, because that happens locally on the end user's machine.

FileVault 2 recovery key escrow is also completely optional-- you don't have to send a key to Apple at all.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact
