Earlier quoted context omitted.
how is it "criminally" irresponsible on a personal computer? I should be able to delete my own data whenever i want to, unless ordered by a court not to. Also OpenBSD has had the ability to wipe the system on failed password attempts for many years now.
It's criminally irresponsible to sell such a computer, because it will easily result in data loss and not all users are educated enough to understand the consequences of such a flawed "security" design. Of course, you can claim that it's ultimately the customers fault in this case, and I agree, but they should nevertheless expect some lawsuits. There is always a tradeoff between security and data integrity, something…
ORWL – The first open source, physically secure computer
41–50 of 195 posts
Re: ORWL – The first open source, physically secure computer
#42Earlier quoted context omitted.
how is it "criminally" irresponsible on a personal computer? I should be able to delete my own data whenever i want to, unless ordered by a court not to. Also OpenBSD has had the ability to wipe the system on failed password attempts for many years now.
It's criminally irresponsible to sell such a computer, because it will easily result in data loss and not all users are educated enough to understand the consequences of such a flawed "security" design. Of course, you can claim that it's ultimately the customers fault in this case, and I agree, but they should nevertheless expect some lawsuits. There is always a tradeoff between security and data integrity, something…
Re: ORWL – The first open source, physically secure computer
#43How do they deal with the intel management engine in all intel chips? https://libreboot.org/faq/
FTA: This project is about having a standard, physically secure computer that anyone can use – as open as we can make it. All these concepts are important, and they mean that x86 and flawless out-of-the-box Windows support are not optional. There are reasons everyone is using x86, even in the security community and in governmental agencies around the world: compatibility, performance, and security. Make no mistake, s…
Re: ORWL – The first open source, physically secure computer
#44Isn't the phrase Evil Maid a bit off-key? I'm sure this must have been discussed at great length elsewhere. We could express the same idea without the power and gender relations implied.
Re: ORWL – The first open source, physically secure computer
#45Isn't the phrase Evil Maid a bit off-key? I'm sure this must have been discussed at great length elsewhere. We could express the same idea without the power and gender relations implied.
Also technically whilst it does originate from maiden it is mostly gender neutral today, just like busboy or a bodyman are.
Re: ORWL – The first open source, physically secure computer
#46I scowled when I read about the Intel chip, and I stopped reading when they mentioned USB. Assuming for a moment that there's no hidden backdoor in the Intel chip (which seems exceedingly unlikely from all that I've read regarding IME, not to mention the un-auditable microcode), all this fancy hackery is still going to get pwned by BadUSB. Secure computing cannot and will not move forward until we have a way to mitig…
Seems like using built in input and display and giving up some external ports would be the only reasonable strategy if you were being as serious about physical security as this wants to be.
Re: ORWL – The first open source, physically secure computer
#47Re: ORWL – The first open source, physically secure computer
#48Re: ORWL – The first open source, physically secure computer
#49It's an interesting concept, for sure – but could someone more knowledgeable than me explain whether this leaves the system vulnerable to the potential, alleged backdoors present in Intel's chips via the Intel Management Engine?