I don't know anything about anything, but as far as I know anyone with physical access to an unencrypted Linux computer can get in easily. I agree with you that auto login should be fine for your threat model.
linux4noobs
linux4noobs
Noob Friendly, Expert Enabling
Whether you're a seasoned pro or the noobiest of noobs, you've found the right place for Linux support and information. With a dedication to supporting free and open source software, this community aims to ensure Linux fits your needs and works for you. From troubleshooting to tutorials, practical tips, news and more, all aspects of Linux are warmly welcomed. Join a community of like-minded enthusiasts and professionals driving Linux's ongoing evolution.
Seeking Support?
- Mention your Linux distro and relevant system details.
- Describe what you've tried so far.
- Share your solution even if you found it yourself.
- Do not delete your post. This allows other people to see possible solutions if they have a similar problem.
- Properly format any scripts, code, logs, or error messages.
- Be mindful to omit any sensitive information such as usernames, passwords, IP addresses, etc.
Community Rules
- Keep discussions respectful and amiable. This community is a space where individuals may freely inquire, exchange thoughts, express viewpoints, and extend help without encountering belittlement. We were all a noob at one point. Differing opinions and ideas is a normal part of discourse, but it must remain civil. Offenders will be warned and/or removed.
- Posts must be Linux oriented
- Spam or affiliate links will not be tolerated.
Yeah, it is safe.
But last I checked, enabling autologin means your GNOME Keyring / KDE Wallet won't unlock automatically. Something to keep in mind.
That's a bummer. I still don't know what it's useful for, except for not having to type SSH passphrases. I think it doubles as a password manager? I don't need that, I use Bitwarden.
I think KDE stores Wi-Fi passwords in the wallet. Plus various third-party software may store its secrets in there.
Ok. That seems important then. Having to type the WiFi password would be even more annoying. :) The other part seems important, too.
Now it makes me wonder how non technical people who have auto login enabled deal with it. I mean, I'd expect it to work like on Windows.
Is that why my gf keeps getting that wallet thing on every reboot and I don't? She only wanted to put a password for updates (well not really but she has no choice) there is nothing on her pc but games, no personal info
Yeah, that's most likely the reason.
What if I set autologin in my Desktop Environment (GNOME or KDE), but left LUKS locked down with a passphrase? Wouldn’t that be safe?
Probably safe enough
This is precisely what I do.