Hi
I have the following situation:
- Mojave 10.14.1 with FileVault2 enabled
- One mobile/AD account, which is FileVault2 user (is also admin)
- Valid recovery key is stored on our JAMF Pro server
The FV password for this user is broken/forgot and user only can unlock with the recovery key. Even if a password change will be requested, this new password will not be saved, as on the next restart, only the recovery key is working.
I tried to disable FV2 with terminal command: fdesetup disable
But even if the disk is already unlocked (with recovery key), this command prompts for the FW username and password. And as the password is unknown/corrupt, it can not be disabled.
As this is the only FW enabled user, I can't disable FW with another user.
So, how can I disable FW with a recovery key only?