Dual Catalina boot machine to separate work and home systems.

I would like to separate and isolate my work data (emails, apps, google drive, etc) from my home data (emails, iCloud storage, accounts, etc). I have been looking into making my laptop a dual boot Catalina machine and so far have installed a second OS on an APFS volume. All seams to work fine except every time I log in I am asked by Security Agent to authenticate as a user from the other OS partition in order to decrypt the volume and mount it.


I actually don’t want any connectivity between the two OS’s - the two Volumes - and ideally I don’t want to be asked to mount the other volume every time I log into the machine.


Question: If I used a partition (container) rather than a volume, would the OS still want to mount the other OS at log in?


Question: Is there a way to completely isolate partitions/containers/volumes from each other on a single disk such that two instances of the OS are completely independent and secure?


Many thanks in advance for your insights.

MacBook Pro with Touch Bar

Posted on Mar 14, 2020 2:39 AM

Reply
13 replies

Mar 14, 2020 7:05 AM in response to Phil.W

I actually don’t want any connectivity between the two OS’s - the two Volumes - and ideally I don’t want to be asked to mount the other volume every time I log into the machine.

If you click 'Cancel' on the authentication prompt the mount will be abandoned and the alternate volume will be unavailable. Won't this meet your needs?

Mar 14, 2020 10:51 AM in response to Phil.W

Have you considered having your work system and data on an external SSD and boot from it when needed?


Otherworld Computing (MacSales.com) offers a variety of excellent external SSDs. You can go with USB 3 connectivity or the more expensive Thunderbolt.


I boot from an external SSD with USB 3.1 connectivity in about 50-55 seconds. Booting into my internal SSD is about 25-30 seconds. Once booted the performance seems the same. When not in use the external SSD can be stored in a protected environment.


Just some food for thought.


Mar 14, 2020 1:59 PM in response to Phil.W

Old Toad makes some excellent suggestions. I might add the following for consideration. If I understand correctly, your laptop is provided by your employer. Yes, I would get a good external SSD drive. You could then keep all your personal files on that drive and use the internal drive for business. Then when, and if, you get another computer for personal use, it is an easy matter to then copy your personal files on to it. That is how I would do it.

Mar 14, 2020 5:51 AM in response to Phil.W

It would be much simpler to just add another user account— admin or not your choice.


"Fast user switching" requires no reboot to partitions.


Set up users, guests, and groups on Mac - Apple Support



Do you specify what exact Mac /model /year /size /retina /touchbar is this

or what exact macOS you are currently running?


Computers with the T2 chip, security is not an issue—

ref: macOS - Security - Apple

https://www.apple.com/macos/security/


Mar 14, 2020 6:52 AM in response to leroydouglas

Thanks.


So you're right, it would be much simpler to create a different user account, but . . . .


The company I work for is looking to achieve a UK CyberEssentials rating and to do that they are using MDM on all work laptops and phones. My work MacBook is enrolled and is fine for when I'm on the road. When I work from home I would like to use my MacBook Pro (16" 2019) for all the obvious reasons. To do this, as a BYOD machine, I would have to enrol it to MDM and also company managed Sophos. I would kind of like to avoid this on my own machine hence looking for ways to isolate home stuff from work stuff.


Hope that helps explain why the odd question.

This thread has been closed by the system or the community team. You may vote for any posts you find helpful, or search the Community for additional answers.

Dual Catalina boot machine to separate work and home systems.

Welcome to Apple Support Community
A forum where Apple customers help each other with their products. Get started with your Apple Account.