PayloadKit

FileVault Recovery Key Redirection Payload

com.apple.security.FDERecoveryRedirect

The payload that configures FileVault recovery key redirection.

macOS
macOS 10.9+exclusive

Configuration Keys (2)

KeyTypeTitle
RedirectURLrequired

The URL to which FDE recovery keys should be sent instead of to Apple. The URL must begin with https://.

stringRedirect URL
EncryptCertPayloadUUIDrequired

The UUID of a payload within the same profile that contains a certificate used to encrypt the recovery key when it's sent to the redirected URL. The referenced payload must be of type \'com.apple.security.pkcs1\'.

stringEncryption Certificate Payload UUID