Dear KDE Plasma Linux users,
say I have a laptop with a LUKS-encrypted file system.
Say this is a single user system.
The user unlocks the device (before or after the bootloader, should not matter in this discussion) with a safe password.
The user is logged in automatically in KDE Plasma.
KWallet is set to have an empty password, to not ask the user for a password just to enable WiFi or similar (which is the only thing KWallet is being used for).
The user still needs to enter the password after locking the screen, suspending the machine or similar.
Passwords are still in a locked password safe (think KeePassXC or similar), so this requires unlocking with a safe password.
Does anyone see major security flaws in this setup?
Due to #EndOf10 I have converted some users to Linux, and having to enter your password multiple times is the only thing they find annoying...