Live data from Hacker News

Lennart Poettering, Christian Brauner founded a new company

amutable.com

31–40 of 770 posts

Re: Lennart Poettering, Christian Brauner founded a new company

#31

Earlier quoted context omitted.

Sounds like kernel mode DRM or some similarly unwanted bullshit.

> Sounds like kernel mode DRM or some similarly unwanted bullshit. Look, I hate systemd just as much as the next guy - but how are you getting "DRM" out of this?

Remote attestation is literally a form of DRM

Re: Lennart Poettering, Christian Brauner founded a new company

#32
post #30

Earlier quoted context omitted.

> Sounds like kernel mode DRM or some similarly unwanted bullshit. Look, I hate systemd just as much as the next guy - but how are you getting "DRM" out of this?

Hacker News has recently been dominated by conspiracy theorists who believe that all applications of cryptography are evil attempts by shadowy corporate overlords to dominate their use of computing.

No, it's not "all applications of cryptography". It's only remote attestation.

Re: Lennart Poettering, Christian Brauner founded a new company

#33

Earlier quoted context omitted.

Sounds like kernel mode DRM or some similarly unwanted bullshit.

> Sounds like kernel mode DRM or some similarly unwanted bullshit. Look, I hate systemd just as much as the next guy - but how are you getting "DRM" out of this?

Secure boot and attestation both generally require a form of DRM. It’s a boon for security, but also for control.

Re: Lennart Poettering, Christian Brauner founded a new company

#35
post #2

So LP is or has left Microsoft ? >We are building cryptographically verifiable integrity into Linux systems I wonder what that means ? It could be a good thing, but I tend to think it could be a privacy nightmare depending on who controls the keys.

Verifiable to who? Some remote third party that isn't me? The hell would I want that?

Re: Lennart Poettering, Christian Brauner founded a new company

#36
post #18

Earlier quoted context omitted.

I'm sure this company is more focused on the enterprise angle, but I wonder if the buildout of support for remote attestation could eventually resolve the Linux gaming vs. anti-cheat stalemate. At least for those willing to use a "blessed" kernel provided by Valve or whoever.

Only by creating a new stalemate between essential liberty and a little temporary security — anticheat doesn't protect you from DMA cheating.

I might be behind on the latest counter-counter-counter-measures, but I know some of the leading AC solutions are already using IOMMU to wedge a firewall between passive DMA sniffers and the game processes memory.

e.g. https://support.faceit.com/hc/en-us/articles/19590307650588-...

Re: Lennart Poettering, Christian Brauner founded a new company

#37

Hi Chris, One of the most grating pain points of the early versions of systemd was a general lack of humility, some would say rank arrogance, displayed by the project lead and his orbiters. Today systemd is in a state of "not great, not terrible" but it was (and in some circles still is) notorious for breaking peoples' linux installs, their workflows, and generally just causing a lot of headaches. The systemd project…

As someone who's lost many hours troubleshooting systemd failures, I would like an answer to this question, too.

Re: Lennart Poettering, Christian Brauner founded a new company

#38

Really excited to a company investing into immutable and cryptographically verifiable systems. Two questions really: 1. How will the company make money? (You have probably been asked that a million times :).) 2. Similar to the sibling: what are the first bits that you are going to work on. At any rate, super cool and very nice that you are based in EU/Germany/Berlin!

1. We are confident we have a very robust path to revenue.

2. Given the team, it should be quite obvious there will be a Linux-based OS involved.

Our aims are global but we certainly look forward to playing an important role in the European tech landscape.

Re: Lennart Poettering, Christian Brauner founded a new company

#40
The immediate concern seeing this is will the maintainer of systemd use their position to push this on everyone through it like every other extended feature of systemd?

Whatever it is, I hope it doesn't go the usual path of a minimal support, optional support and then being virtually mandatory by means of tight coupling with other subsystems.

Post reply on HN