Modern computers have the options to encrypt data on your hard drive. This means that all the files stored on your computer are scrambled up so they cannot be read unless you provide the correct password -or decryption key as it’s known.
This is really useful for protecting data in the event of a theft. If someone were to steal your computer then they cannot get at your encrypted personal data, even if they put the hard drive into another computer the data remains encrypted and private.
In Windows, hard drive encryption is called BitLocker and is found on Pro versions of Windows Vista in 2006 up to current versions of Windows 10, so it’s been around for a long time. BitLocker talks to a chip in your computer called the TPM, the Trusted Platform Module that uniquely identifies your computer and ensures that your hard drive can only be decrypted in your computer. The TPM settings also ensure that nobody can use an external boot device to view your files. Apple encryption is called FileVault and works on iMac and MacBooks since about 2012.
Encryption does slow your computer down, a lot. If all your files are encrypted then the computer has to work extra hard to decrypt each file before use. Some experts suggest an impact of up to 50% depending on the architecture of your computer. Encryption can also cause big issues in the event of a problem with the computer. If your encrypted hard drive partially fails and you need to recover datathen this can be impossible unless you’ve got the manual decryption keyand even then recovery can be impossible.
It is possible to encrypt memory keys to allow the safe transport of sensitive data. This is particularly useful because memory keys are small and easily lost. Again it’s important to remember the decryption key, as without the key, the data is useless.
There are some really good reasons to enable encryption: if you’re storing personal or medical data about your customers, or if you deal with financial transactions for your customers if you were a financial advisor for instance. Encryption is also a requirement on many public service networks such as the NHS, military and anywhere where national secrets are held. Encryption is also useful if you perform illegal operations such as the sale of drugs or human kidneys as it means authorities have difficulty viewing your computer!
But for most users, domestic or business, encryption is not useful and can be a real hindrance. We recommend keeping encryption turned off unless it’s a policy requirement or essential.
I hope you find this information useful. If you would like to see particular subjects covered then please feel free to ask at www.alfindlay.com.
Al Findlay | Freelance IT & AV Support Consultant | Website design and Hosting | www.AlFindlay.com | 01395 542500