Any way to permanently disable FORCE ENCRYPTION when you flash Stock OOS? - OnePlus 3 Questions & Answers

When ever I flash stock OOS or update OOS, my phone ends up encrypted, and then it becomes a hassle when i'm trying to not lose data, and all I wanna do is flash a custom kernel to go along with the newly installed OOS update.. Decrypting requires me to format all my userdata and it's just something I would not want to do every time there's an update. Anyone know how to keep Oneplus 3 permanently decrypted?

Well Idk about permanent decrypt but when you flash full stock oos from OnePlus website it will automatically encrypt your device. So my steps to stay decrypt everytime I flash OOS rom
1) Make sure your device already in decrypt mode
2) Download full OOS rom zip
3) Wipe (cache,system,data,dalvik) and Flash OOS zip on TWRP
4) Reboot to twrp
5) Flash Magisk with disable force encryption
6) Flash lazyflasher or DM Verity and Force encryption disabler zip
7) Then reboot and you're safe decrypted
Magisk Latest 17.1(17100) Without Preserve force encryption enabled
https://drive.google.com/file/d/16X2v0APGsrBtLILYSg_S4RUgal92eU_H/view?usp=sharing

Related

[MOD][X01BD] Disable forced encryption of data partition [stock][pie]

Disable forced encryption of data partition​
Instructions:
1. Download the decrypt.zip and move/copy to sdcard/otg drive
2. Flash in recovery
3. Format /data
4. Reboot
To encrypt the rom again, flash encrypt(pie).zip and format /data
What is the meaning of forced encryption on data partition
#ArtFuL said:
Disable forced encryption of data partition
Instructions:
1. Download the decrypt.zip and move/copy to sdcard/otg drive
2. Flash in recovery
3. Format /data
4. Reboot
Click to expand...
Click to collapse
In which recovery stock or on custom recovery?
Sdsahu101 said:
In which recovery stock or on custom recovery?
Click to expand...
Click to collapse
Custom recovery
Can I update to Pie via TWRP, after editing updater-script, if yes, can I flash decrypt.zip just after updating without formatting data. Actually, I don't want to format my device and install all the applications again.
Is 1903.064 is stable enough to use, I mean cam2api, screen flickering, PUBG on HD setting, charging time it was taking too long to charge earlier, reduced battery backup, screen brightness, cracking sound, double tap was also not working.
nice_guy75 said:
Can I update to Pie via TWRP, after editing updater-script, if yes, can I flash decrypt.zip just after updating without formatting data. Actually, I don't want to format my device and install all the applications again.
Is 1903.064 is stable enough to use, I mean cam2api, screen flickering, PUBG on HD setting, charging time it was taking too long to charge earlier, reduced battery backup, screen brightness, cracking sound, double tap was also not working.
Click to expand...
Click to collapse
Yes. You can. But if the phone is encrypted and flashing decrypt for the first time, decryption comes into effect only after formatting data
#ArtFuL said:
Yes. You can. But if the phone is encrypted and flashing decrypt for the first time, decryption comes into effect only after formatting data
Click to expand...
Click to collapse
No, Mine is decrypted. I am on Oreo with TWRP and already flashed decrypt.zip of Oreo? So can I flash 1903.064 zip via TWRP, after editing updater script and then flash decrypt.zip of Pie, to save my data partition?
I hope decrypt.zip of Pie does not format data while flashing.....
nice_guy75 said:
No, Mine is decrypted. I am on Oreo with TWRP and already flashed decrypt.zip of Oreo? So can I flash 1903.064 zip via TWRP, after editing updater script and then flash decrypt.zip of Pie, to save my data partition?
I hope decrypt.zip of Pie does not format data while flashing.....
Click to expand...
Click to collapse
Then no need to format. You won't loose data
is this necessary if i will go for custom rom? i mean just like in oreo, can i use the decrypt.zip for oreo to stock pie in order to decrypt my device? or i will use this one for pie? just to clarify sir.
kayamokid said:
is this necessary if i will go for custom rom? i mean just like in oreo, can i use the decrypt.zip for oreo to stock pie in order to decrypt my device? or i will use this one for pie? just to clarify sir.
Click to expand...
Click to collapse
Flashing decrypt oreo infact caused many problems on wifi/modem for many users. Also decrypt oreo didn't worked on pie for some users. So flashing decrypt pie is recommended for Oreo too.
legacy07 said:
Flashing decrypt oreo infact caused many problems on wifi/modem for many users. Also decrypt oreo didn't worked on pie for some users. So flashing decrypt pie is recommended for Oreo too.
Click to expand...
Click to collapse
it meams its just like the updated version of decrypt.zip? thanks sir.
Which one of these two files should be flashed
Karthik kollapureddy said:
Which one of these two files should be flashed
Click to expand...
Click to collapse
Choose according to whether you have to encrypt or decrypt
legacy07 said:
Choose according to whether you have to encrypt or decrypt
Click to expand...
Click to collapse
I'm a beginner so would you please tell me what's encypt and decrypt
---------- Post added at 06:32 AM ---------- Previous post was at 06:29 AM ----------
Karthik kollapureddy said:
I'm a beginner so would you please tell me what's encypt and decrypt
Click to expand...
Click to collapse
I'm confused and the rooting step
Hi all. I have zenfone updated to Oreo/android 8.1.
Phone model Z01BDC = ZC551KL .
What should I do to apply this patch to decrypt my /data ?
I installed TWRP 3.1.0.0 and the fact that /data is Encrypted is a problem.
Thank you.
sintoo said:
Hi all. I have zenfone updated to Oreo/android 8.1.
Phone model Z01BDC = ZC551KL .
What should I do to apply this patch to decrypt my /data ?
I installed TWRP 3.1.0.0 and the fact that /data is Encrypted is a problem.
Thank you.
Click to expand...
Click to collapse
This mod works in X01BD and X00TD. Not sure if it work for Z01BD. You can flash this patch by following the steps in the thread but success isn't guaranteed. Take a system backup as if anything goes wrong. Also be ready to loose your data
legacy07 said:
... So flashing decrypt pie is recommended for Oreo too.
Click to expand...
Click to collapse
I'm not sure about that... I am flashing this file (decrypt pie) for Oreo just. The phone does not boot in this case. I was forced to flashing old decrypt file for Oreo after and it all worked again.
It's not working with Official TWRP 3.3.1-0. I'm using stock Pie .065. Every time I reboot to system, it starts encrypting my device and when I reboot to recovery, TWRP is gone and I'll be booted to stock recovery. Then I flashed TWRP and checked the fstab.qcom. It was never patched. With OFRP, I don't have this issue as it patches fstab.qcom automatically after flashing a zip. But with the zip provided in OP, I'm unable to disable forced encryption. I don't get any error while flashing the zip though. Does any other file needs to be patched to disable forced encryption other than fstab.qcom?
anagramgenius said:
It's not working with Official TWRP 3.3.1-0. I'm using stock Pie .065. Every time I reboot to system, it starts encrypting my device and when I reboot to recovery, TWRP is gone and I'll be booted to stock recovery. Then I flashed TWRP and checked the fstab.qcom. It was never patched. With OFRP, I don't have this issue as it patches fstab.qcom automatically after flashing a zip. But with the zip provided in OP, I'm unable to disable forced encryption. I don't get any error while flashing the zip though. Does any other file needs to be patched to disable forced encryption other than fstab.qcom?
Click to expand...
Click to collapse
I think twrp official has decryption issues. Check with twrp 3.2.3
legacy07 said:
I think twrp official has decryption issues. Check with twrp 3.2.3
Click to expand...
Click to collapse
I checked with Rk585's TWRP 3.2.3 too. Same issue persists. It worked fine when I was in Oreo.
After flashing the zip, I booted back to recovery and copied the fstab.qcom to my PC to check if it has been replaced with the flashed zip. It did replace it. But when I boot to system, it starts encrypting my device and TWRP gets replaced by stock recovery. So I flashed the TWRP again and checked the fstab.qcom. Voila. It was unpatched. I don't know what is happening during the boot. The patched fstab is getting replaced by original fstab.
Edit: Seems there is a problem with the zip I guess. Or more files need to be patched to disable forced encryption in stock Pie rom. I tested in both PBRP and OFRP.
Case 1: I flashed stock rom in Official TWRP, then flashed PBRP zip and booted into PBRP. After booting into PBRP, it doesn't automatically disable forced encryption if no rom zip is flashed in it. So I flashed the decrypt zip provided in this OP. Then I booted to system, it started encrypting my device.
Case 2: I flashed stock rom in Official TWRP, then flashed OFRP zip and booted into OFRP. After booting into OFRP, it automatically disabled forced encryption even though no rom zip was flashed. Hence after booting into system, it didn't automatically encrypt my device as forced encryption was disabled automatically by OFRP.
So PBRP and OFRP do something else to disable forced encryption other than just patching fstab.qcom. Atleast in stock Pie rom. That's why I'm unable to disable forced encryption by flashing decrypt zip in any of the recoveries unless it is patched by recoveries themselves.

How to disable force encryption on OOS (Pie & Oreo)?

Hello Everyone
I felt this section will be more appropriate for this query as it can also help many others who might be seeking an answer to the same question after Pie OOS (Community Beta) came out. This can also act as a guide for all future queries regarding force encryption. So, I have a really simple query, for which I have searched before posting but no concrete information came up.
Query:
How to prevent OOS from force-encrypting my internal data on first boot after a fresh ROM flash? I have tried flashing Magisk before first boot but that doesn't prevent force encryption. I am also using a custom kernel so patching stock boot image and flashing it won't be a viable option too.
Does anyone know of any zip or method which would prevent OOS from triggering force encryption (both Pie open beta and Oreo 5.0.8)?
I have tried to flash Oreo on an decrypted partition as follows but it still encrypted it.
1. Factory Reset
2. Flash OOS 5.0.8 zip on decrypted storage
3. Flash TWRP
4. Reboot to recovery
5. Flash Magisk
6. Flash custom kernel
7. Reboot
8. Rom takes 10 minutes to boot and storage is encrypted when booted up.
Look at this thread:
https://forum.xda-developers.com/oneplus-3t/how-to/disable-dm-verity-force-encryption-op3t-t3688748
jeffrey268 said:
Look at this thread:
https://forum.xda-developers.com/oneplus-3t/how-to/disable-dm-verity-force-encryption-op3t-t3688748
Click to expand...
Click to collapse
The doubt i have is for the patched boot image. I always flash a custom kernel and i assume it will replace the bootimage as well.

Unable to encrypt after root

Hi everyone.
I had a issue and i really want help
I had unlock the OEM,and after installing the twrp and format data (to remove the forced encrypt), i had flash the Disable_Dm-Verity_ForceEncrypt zip file.
Okay, after that i have restarted the device and configure as my away to use, after that, booted on recovery again and flashed the magisk.
But i wanna encrypt my device, and when i go to configs->security and encrypt area, says that my device its not encrypted. Okay, i followed the steps and when i gonna try to encrypt the device, the process start and... some seconds after, the phone just restart and nothing has done.
The onlys changes that i have made on system is: root and flashed a splash.img(without that stupid warning of unlocked bootloader)
I really want to encrypt my device, so, if i get stolen, the thief wont get my user data.
Can anyone help me?
Flash the stock rom and and don't flash the encryption disabler next time. You don't need to install TWRP to flash Magisk either, you can just boot it and then flash Magisk. Also you don't even need TWRP, you can just follow the guide in the forum to install Magisk by booting the magisk patched boot.img for your version of the stock ROM and then install Magisk manually via Magisk Manager.
TL;DR : Flash stock ROM and do the same things except flashing dm-verity-disabler, you don't need that for Magisk or TWRP.
marstonpear said:
Flash the stock rom and and don't flash the encryption disabler next time. You don't need to install TWRP to flash Magisk either, you can just boot it and then flash Magisk. Also you don't even need TWRP, you can just follow the guide in the forum to install Magisk by booting the magisk patched boot.img for your version of the stock ROM and then install Magisk manually via Magisk Manager.
TL;DR : Flash stock ROM and do the same things except flashing dm-verity-disabler, you don't need that for Magisk or TWRP.
Click to expand...
Click to collapse
Thanks sir, i will try!
marstonpear said:
Flash the stock rom and and don't flash the encryption disabler next time. You don't need to install TWRP to flash Magisk either, you can just boot it and then flash Magisk. Also you don't even need TWRP, you can just follow the guide in the forum to install Magisk by booting the magisk patched boot.img for your version of the stock ROM and then install Magisk manually via Magisk Manager.
TL;DR : Flash stock ROM and do the same things except flashing dm-verity-disabler, you don't need that for Magisk or TWRP.
Click to expand...
Click to collapse
Sir, i really need twrp now, its there any way i can enable encrypt after rooting the device? (to sure that, if gets stolen, the data need to be wipped out or the password must be given on twrp)
Same issue, i tried to encrypt on security menu,reboot and nothing was done.
@edit
Better, without TWRP, i can flash other zips via magisk/stock recovery?
mrkeitsuke said:
Sir, i really need twrp now, its there any way i can enable encrypt after rooting the device? (to sure that, if gets stolen, the data need to be wipped out or the password must be given on twrp)
Same issue, i tried to encrypt on security menu,reboot and nothing was done.
@edit
Better, without TWRP, i can flash other zips via magisk/stock recovery?
Click to expand...
Click to collapse
I'm not sure what you're trying to do here, do you want to have TWRP + stock encryption?
If so you can just boot TWRP and flash the TWRP installer package (.zip) inside TWRP to do that. And you don't need to change anything, currently I have TWRP installed and encryption enabled on my Stock ROM.
But if you're trying to get TWRP's own encryption, sadly that doesn't work.
You can also use TWRP without flashing/installing it, just go to the directory TWRP is stored in, open a command line, connect your phone and boot it with this command :
Code:
fastboot boot twrp.img
then flash whatever you'd like.
DO NOT lock your bootloader after you flash something on TWRP, this will most probably brick the device.
marstonpear said:
I'm not sure what you're trying to do here, do you want to have TWRP + stock encryption?
If so you can just boot TWRP and flash the TWRP installer package (.zip) inside TWRP to do that. And you don't need to change anything, currently I have TWRP installed and encryption enabled on my Stock ROM.
But if you're trying to get TWRP's own encryption, sadly that doesn't work.
You can also use TWRP without flashing/installing it, just go to the directory TWRP is stored in, open a command line, connect your phone and boot it with this command :
Code:
fastboot boot twrp.img
then flash whatever you'd like.
DO NOT lock your bootloader after you flash something on TWRP, this will most probably brick the device.
Click to expand...
Click to collapse
I want to stick with the stock rom rooted, with the twrp installed and the user data encrypted
So i can flash things through TWRP even i have encrypt enabled?
@edit
dont worry about bootloader, i will keep unlocked
It's perfectly fine to have TWRP and/or Magisk and encryption using stock ROM.
Flash stock ROM (erase user data)
Install TWRP
install Magisk
Don't flash the encryption Disabler. As its name implies, it disables the automatic encryption of the userdata partition.
a1291762 said:
It's perfectly fine to have TWRP and/or Magisk and encryption using stock ROM.
Flash stock ROM (erase user data)
Install TWRP
install Magisk
Don't flash the encryption Disabler. As its name implies, it disables the automatic encryption of the userdata partition.
Click to expand...
Click to collapse
:highfive: i had done this and... i think its working!!! :crying::crying::crying:
(crying for emotion, almost thirty factory resets to get an good result :crying::crying::crying
Anyway, if anything bad occurs, i will update here, thanks a1291762 and marstonpear

How to encrypt phone again?

I unlocked and rooted my 8T as described in this thread
https://forum.xda-developers.com/re...de-unlocking-bootloader-twrp-rooting-t4031831
I made decryption including format Data and installing Universal DM-Verity and ForceEncrypt disabler, also installed stock EEA V11.0.3.0.PCXEUXM (MIUI10) and Magisk
All working fine except phone password lock, and as I read now, locks don't work on decrypted phone. So I decide to encrypt my phone back. But it does not work, when I pressed "encrypt phone" button in privacy settings it just reboot and nothing happened.
I tried OrangeFox recovery, made all steps as described here
https://forum.xda-developers.com/redmi-note-8/how-to/guide-flashing-miui-ota-rom-recovery-t4041591
but still the same trouble.. So, how to encrypt phone with stock rom, root and recovery?
rusm said:
I unlocked and rooted my 8T as described in this thread
https://forum.xda-developers.com/re...de-unlocking-bootloader-twrp-rooting-t4031831
I made decryption including format Data and installing Universal DM-Verity and ForceEncrypt disabler, also installed stock EEA V11.0.3.0.PCXEUXM (MIUI10) and Magisk
All working fine except phone password lock, and as I read now, locks don't work on decrypted phone. So I decide to encrypt my phone back. But it does not work, when I pressed "encrypt phone" button in privacy settings it just reboot and nothing happened.
I tried OrangeFox recovery, made all steps as described here
https://forum.xda-developers.com/redmi-note-8/how-to/guide-flashing-miui-ota-rom-recovery-t4041591
but still the same trouble.. So, how to encrypt phone with stock rom, root and recovery?
Click to expand...
Click to collapse
All kind of phone password,pattern,pin,fingerprint,face locks etc do work on decrypted phone in stock rom without any issue..tested myself.... although if you want to encrypt phone again then flash fastboot rom via mi flash
the_weird_aquarian said:
All kind of phone password,pattern,pin,fingerprint,face locks etc do work on decrypted phone in stock rom without any issue..tested myself.... although if you want to encrypt phone again then flash fastboot rom via mi flash
Click to expand...
Click to collapse
Yes, I want encrypted phone.
How it possible with Magisk and recovery?
I need flash fresh EEA 11.0.3.0 from Miflash, than install recovery and Magisk. And what else?
If I install Dm-Verity path, than I need format data and decrypt phone.
If I skip Dm-Verity installation, than I will have a bootloop.
rusm said:
Yes, I want encrypted phone.
How it possible with Magisk and recovery?
I need flash fresh EEA 11.0.3.0 from Miflash, than install recovery and Magisk. And what else?
If I install Dm-Verity path, than I need format data and decrypt phone.
If I skip Dm-Verity installation, than I will have a bootloop.
Click to expand...
Click to collapse
flash the fastboot rom from mi flash and boot it till android setup....you don't necessarily have to set up your phone right now(you can setup your phone no issue though)...then flash orangefox recovery....then in orangefox settings->miui ota settings-> tick everything except Disable Forced Encryption...then flash stock recovery rom through orangefox once....after that flash magisk.... don't flash dm verity....now reboot.
Do not format data in any step..
the_weird_aquarian said:
flash the fastboot rom from mi flash and boot it till android setup....you don't necessarily have to set up your phone right now(you can setup your phone no issue though)...then flash orangefox recovery....then in orangefox settings->miui ota settings-> tick everything except Disable Forced Encryption...then flash stock recovery rom through orangefox once....after that flash magisk.... don't flash dm verity....now reboot.
Do not format data in any step..
Click to expand...
Click to collapse
Thank you! It working.
Seems that OrangeFox do his job well. Now I have encrypted phone with root, and recovery handling my password and decrypt data if need.
Strange, that menu items "Disable DM-Verity" and "Disable forced encryption" gray in my Orangefox any time from initial installation, but everything looks OK in system...
rusm said:
Thank you! It working.
Seems that OrangeFox do his job well. Now I have encrypted phone with root, and recovery handling my password and decrypt data if need.
Strange, that menu items "Disable DM-Verity" and "Disable forced encryption" gray in my Orangefox any time from initial installation, but everything looks OK in system...
Click to expand...
Click to collapse
:good:

Stock ROM update to V12.0.2.0.RCOMIXM Android 11 - Magisk bootloop

My ginkgo had stock ROM V12.0.6.0.QCOMIXM (A10) and I updated to stock ROM V12.0.2.0.RCOMIXM using TWRP recovery (twrp_ginkgo-willow_3.4A9_23-12-2020_BL) However after flashing the rom zip, and after flashing magisk, my phone got into "MIUI" icon, then bootloops into recovery again with alphanumeric directory names.
I tried Disable Dm Verity Force Encrypt after flashing magisk.zip but same problem.
I have tried the following recoveries so far:
twrp_ginkgo-willow_3.4A9_23-12-2020_BL
twrp-3.5.2_10-2-ginkgo
orangefox R11.0_1 (with Disable DM-Verity, Disable Forced Encryption and Aggresive stock recovery deactivation all enabled).
But whenever I flash magisk, I still get the bootloop and alphanumeric directory names, and the only way to restore my phone without having to wipe data is to flash the recovery zip again (but without magisk).
Any suggestions on how to get around this?
bomberb17 said:
Any suggestions on how to get around this?
Click to expand...
Click to collapse
i already answered you here
use this DFE

Categories

Resources