Live data from Hacker News

LineageOS 19

lineageos.org

231–240 of 260 posts

Re: LineageOS 19

#231
post #56
post #10

I wish that LineageOS could accept the "signature spoofing" patch that is needed for microg (possibly with a toggle switch that would be "off" by default), so that we could avoid the need for the less-frequently-updated https://lineage.microg.org/ and properly install apps from Play Store without the Google Service Framework (that essentially give root access to Google on your smartphone). (and actually I also wish t…

I'm on GrapheneOS for this reason. Sandboxed GSF isn't perfect, but it's good enough for use as a daily driver.

Sandboxes GSF literally IS perfect though. I'd be interested to know what doesn't work for you.

Re: LineageOS 19

#232

Earlier quoted context omitted.

> They ship userdebug builds as production releases What specific security problem does this cause? > pretend to support devices past their vendor EOL (which is impossible since Lineage can't provide security updates for firmware etc.) This is good for security. Not everyone can afford to get a new phone as soon as the vendor drops support, and just because you can't fix everything doesn't mean that you shouldn't fix…

> This is good for security No, it isn't. It's good for reducing e-waste, your security is on the line. Having the newly shaped and colored Android UI doesn't do anything to fix security issues..

Security issues can occur in both the device-agnostic Android OS code and in device-specific drivers. Some people are going to continue to use phones after the vendor drops support. Although those people won't get security updates to their device-specific drivers anymore no matter what they do, by using LineageOS instead of their stock ROM, they will get security updates to the device-agnostic Android OS code.

Re: LineageOS 19

#233

Earlier quoted context omitted.

> Always start here: https://source.android.com/security/ I don't see any evidence for your claim there. > From another subthread: Replied in that one.

I'm pointing you toward how things are meant to work, not arguing with you or leading you through your research. If you want to skip paying $150 for a Pixel to use on Graphene or Calyx or something halfway decent, and "just use Lineage how bad could it be", be my guest!

The "Support length" table at https://calyxos.org/docs/guide/device-support/ shows that CalyxOS supports a bunch of devices even after the vendor drops support. For example, support for the Pixel 4a 5G ends in October 2023, but CalyxOS plans to support it until August 2024. It's unfair to recommend against LineageOS for doing that while supporting other custom ROMs that also do it.

Also, for supported Pixels $150 or less, https://swappa.com only has the Pixel 3a, which loses manufacturer support next month, and the Pixel 4, which loses manufacturer support 6 months from now.

Re: LineageOS 19

#234
post #10

I wish that LineageOS could accept the "signature spoofing" patch that is needed for microg (possibly with a toggle switch that would be "off" by default), so that we could avoid the need for the less-frequently-updated https://lineage.microg.org/ and properly install apps from Play Store without the Google Service Framework (that essentially give root access to Google on your smartphone). (and actually I also wish t…

I'd also love to see them forking CalyxOS' Datura firewall: https://calyxos.org/docs/tech/datura-details/ It's so much handier when you don't have to navigate through each app's settings.

Re: LineageOS 19

#235
post #221

Earlier quoted context omitted.

AIUI, Zygisk is a Google-approved variety of Magisk. The real issue with SafetyNet bypass is that it's inherently unreliable because Google could at any time require a locked bootloader running stock OEM ROM for passing SafetyNet, so any rooted device would be SOL.

From what I'm reading many newer devices require a locked bootloader, else SafetyNet will fail. So realistically I think that means only Pixel phones could work, since they support relocking the bootloader with a non-stock ROM.

Fishy.

Re: LineageOS 19

#236

It is said to have removed of iptables in favor of eBPF. Won't we loose compatibility with AFWall+? Will there be a relevant alternative? I consider it important to choose which apps can access the Internet and when.

Shit, I just donated to AFWall to get paid features. Didn't know it was obsoleted.

Re: LineageOS 19

#237

Earlier quoted context omitted.

You can’t install paid apps and your google account can be terminated at any point for using Aurora store. So it’s out of the question for a lot of people

Other than paid apps you can use an anonymous or burner account for Aurora - no need to put your Google account at risk. You can also migrate off google and not worry about it.

you don't need to provide any Google account, they provide dummy accounts within app

I'm not sure about paid apps unable to install, never tried, I thought that's the whole point of signing in with your own account

Re: LineageOS 19

#238
post #221

Earlier quoted context omitted.

AIUI, Zygisk is a Google-approved variety of Magisk. The real issue with SafetyNet bypass is that it's inherently unreliable because Google could at any time require a locked bootloader running stock OEM ROM for passing SafetyNet, so any rooted device would be SOL.

From what I'm reading many newer devices require a locked bootloader, else SafetyNet will fail. So realistically I think that means only Pixel phones could work, since they support relocking the bootloader with a non-stock ROM.

Lots of phones support relocking to a user provided key (OnePlus does for sure) but it's a less trusted state than locked to the vendor key, I don't think it counts as good enough for full SafetyNet

Re: LineageOS 19

#239

Earlier quoted context omitted.

Another reason why non removable batteries are crap. I have an old Nexus phone kicking around, if I were to repurpose it I’d just remove the battery and power it via USB. But you can’t do that with newer devices.

I wish there was an ability to replace smartphone batteries with a capacitor bank. Dashcam users have had these battery problems since Day 1. The solution is to replace batteries with capacitors. They are far more durable and can tolerate heating well.

I didn't know about "capacitors". Thanks for mentioning it.
Post reply on HN