This article must have been written before this week's spectacular meltdown in Big Sur, which resulted because Apple emphatically did not handle application trust well.
I’m not sure how you could come to that conclusion given the first paragraph acknowledges the meltdown. “ On November 12, 2020 Apple released macOS Big Sur. In the hours after the release went live, somewhere in Apple's infrastructure an Online Certificate Status Protocol (OCSP) responder cried out in pain, dropping to its knees, begging for mercy as load increased beyond what it could handle.”
Application trust is hard, but Apple does it well
111–120 of 213 posts
Re: Application trust is hard, but Apple does it well
#112This article must have been written before this week's spectacular meltdown in Big Sur, which resulted because Apple emphatically did not handle application trust well.
I’m not sure how you could come to that conclusion given the first paragraph acknowledges the meltdown. “ On November 12, 2020 Apple released macOS Big Sur. In the hours after the release went live, somewhere in Apple's infrastructure an Online Certificate Status Protocol (OCSP) responder cried out in pain, dropping to its knees, begging for mercy as load increased beyond what it could handle.”
Re: Application trust is hard, but Apple does it well
#113Earlier quoted context omitted.
Could you switch DNS providers if one fails? Could you have a fallback? What's the parallel here?
The original statement I was objecting to was this: > It is my computer and it should just work how it is meant to be without any external dependencies. DNS is an external dependency, regardless of the level of redundancy.
Re: Application trust is hard, but Apple does it well
#114Earlier quoted context omitted.
> Obviously I still own the car. Do you still own the car if it'll just turn off the engines when attempt to drive into a sketchy neighbourhood? Let's assume the car manufacturer knows the city/town's crime rates well and they have your best intentions in mind. They want you to be safe. Do you still own the car?
If I bought a car knowing that is how it worked, then of course I do. Note: I agree that scenario isn’t desirable. However there is no slippery slope.
This is what Tim Cook said about govt agencies wanting a backdoor - https://www.youtube.com/watch?v=BZmeZyDGkQ0 - right around 4:25.
When I buy an Apple product, this is part of what I think Apple does to protect their customers' privacy - No matter what, not even if the govt says so.
Now suddenly, we're back to talking about whether we can trust Apple after they expressly told us not to trust ANYONE including Apple and why that was such a good thing.
Re: Application trust is hard, but Apple does it well
#115Earlier quoted context omitted.
Your tone here does not seem proportionally appropriate to the level of discourse this article is attempting. The fact of the matter is that computers offer myriad ways to compromise your life and behave maliciously, and avoiding that is a tall challenge for any company. Apple is trying it their way, and you can try it yours. But to call it Stockholm Syndrome is an unfortunate take on these efforts.
>Your tone here does not seem proportionally appropriate to the level of discourse this article is attempting. You mean this level of discourse? >The privacy squad mobilised on this one - in fact, one blog post recieved a lot of attention for decrying such systems with the dogwhistle "you no longer own your computer!"
Re: Application trust is hard, but Apple does it well
#116> "there are a lot of folks reasonably asking if they can trust Apple to be in the loop of deciding what apps should or should not run on their Macs. My argument is - who better than Apple?" My argument: sod off and let me decide what I want with my own hardware. Luckily I have no business case to deal with Apple products and as a private person I do not care what they do as I am not in their "ecosystem" or whatever…
So, basically, you have nothing useful to add to this conversation. You're just here to let everyone know you don't use Apple products. Cool.
Since I only use Windows and Linux as desktop / server OS I am lucky not to be a victim of such tactics (at least for now). I know MS does collect telemetry but it is not known to be down to this level.
Re: Application trust is hard, but Apple does it well
#117Earlier quoted context omitted.
And of course downvote without having shred of evidence supporting the original claims.
You're getting downvoted because your comment seems like trolling. The reason it seems like trolling is that the information you're demanding "evidence" for is: - the number of elapsed hours since October 7, 2019, when Catalina was released and OCSP became mandatory - the number of hours of outage the other day - how division works None of these seem to be fairly in dispute.
Re: Application trust is hard, but Apple does it well
#118Earlier quoted context omitted.
It all comes down to configuration/choice. Its not bad to have OSCP to improve security, but there should be a simple way to turn it off (without those /etc/hosts or similar hacks).
But I don't want to turn it off. I want to benefit from checking the revocation list without sending my data to Apple on every app start, even if I am vulnerable for a few hours, until my computer syncs the revocation list. I want a middle way, not an ON or OFF button.
It sends a hash of the certificate in use to Apple, which happens to be an Apple certificate that is used to sign many applications running on your system.
None of your data is being sent to Apple.
Re: Application trust is hard, but Apple does it well
#119Re: Application trust is hard, but Apple does it well
#120By installing Candy Crush in every home user Windows hasnot made any amazing strides. In fact I would say windows 7/8/8.1 was far far better. What we have now? Candy Crush, Dumb Antivirus taking 20% CPU wasting unnecessary cpu time, Telemetry which sends data even if you opt out.
"I think the privacy arguments are far-fetched" Really?? Just because there are other bad players in market. Just because apple rivals/friends are doing bad thing doesn't mean you have to go and say privacy arguments are far-fetched. Clearly the article is just white washing of apple