GNU social JP
  • FAQ
  • Login
GNU social JPは日本のGNU socialサーバーです。
Usage/ToS/admin/test/Pleroma FE
  • Public

    • Public
    • Network
    • Groups
    • Featured
    • Popular
    • People

Embed Notice

HTML Code

Corresponding Notice

  1. Embed this notice
    翠星石 (suiseiseki@freesoftwareextremist.com)'s status on Monday, 21-Aug-2023 22:41:42 JST翠星石翠星石
    in reply to
    • :niggy:
    @niggy >read-only SPI flash can't get security updates
    So dyke out the old ROM chip and solder in an updated ROM chip?

    >grub verifying a kernel doesn't matter when there's nothing verifying grub
    You verified grub and burned it into a ROM chip - the impossibility of changing that ROM chip from software verifies grub pretty hard.

    >that's the point of secure boot
    The problem with secure boot is that it assumes the proprietary UEFI is verified, when really I haven't come across a single proprietary UEFI that has been properly verified - even though you should NEVER trust a proprietary UEFI.

    >if you're secure-boot signing your own bootloader, the signing key is on the machine, which defeats the point
    You can have the signing key on a different machine with a slight inconvenience - it's probably better to have the key on another computer of yours, rather than relying in the utter clowns that all OEM's are, who probably have the signing key on a windows computer (the NSA probably has direct access to all signing keys for every single OEM for this reason and how on earth are you meant to tell the difference between the manufacturers signed proprietary malware and the NSA's signed proprietary malware when both verify just fine?).

    >the entire chain of trust falls apart when it doesn't start from secure digitally-signed firmware,
    A single piece of proprietary software makes all chains of trust crumble.
    In conversationMonday, 21-Aug-2023 22:41:42 JST from freesoftwareextremist.compermalink
  • Help
  • About
  • FAQ
  • TOS
  • Privacy
  • Source
  • Version
  • Contact

GNU social JP is a social network, courtesy of GNU social JP管理人. It runs on GNU social, version 2.0.2-dev, available under the GNU Affero General Public License.

Creative Commons Attribution 3.0 All GNU social JP content and data are available under the Creative Commons Attribution 3.0 license.