>It's running Linux and includes Busybox and dnsmasq, so plenty of GPLed code. I emailed the manufacturer asking for a copy and got told that they wouldn't give it to me, which is unsurprising but still disappointing. Has the GPL really lost it's power that much? I mean not responding to inquiries is one thing, but outright saying no?
More awful IoT stuff
241–245 of 245 posts
Re: More awful IoT stuff
#242>It's running Linux and includes Busybox and dnsmasq, so plenty of GPLed code. I emailed the manufacturer asking for a copy and got told that they wouldn't give it to me, which is unsurprising but still disappointing. Has the GPL really lost it's power that much? I mean not responding to inquiries is one thing, but outright saying no?
Re: More awful IoT stuff
#243Re: More awful IoT stuff
#244Earlier quoted context omitted.
TLS + Client Certs + EECDH+AESGCM:EDH+AESGCM:AES256+EECDH:AES256+EDH
You forgot to mention +[Vault|CFSSL|XYZ] for cert management.
Also, all of this can be done with plain openssl, there is no need for additional tools.
[1] https://blog.cloudflare.com/introducing-cfssl/ [2] https://www.vaultproject.io/intro/
Re: More awful IoT stuff
#245Earlier quoted context omitted.
I believe you can still sue for an injunction (e.g. to compel them to distribute copies of code as per the GPL).
Injunction is a way to prevent more damage from occurring. So generally speaking, injunctions : 1) are only available either during a trial or as a last resort (if you can make a good case the defendant won't pay even if the judge compels them) 2) you'd still have to prove more damage will be done if injunction isn't there. Those have to be real damages, with real monetary amounts on them. This is western law, it's p…