Forgot your password?
typodupeerror

Comment Re:This comment section is pathetic. (Score 1) 88

Obligatory "Welcome to Slashdot, you must be new here."

This has been going on for literally years.

Anonymous posting is an option for logged in users, not a thing that people can do without logging in, so they know exactly who is doing this. Slashdot has removed accounts before, therefore it is clear that they want this to occur.

Comment Re:it's all about trust (Score 2) 88

Why are you trusting anything?

That's what TPM is fundamentally about. You talked in another post about it being for separation, that's a trust function, so clearly you know it's about trust. That shows that this comment begins disingenuously.

Open Source TPM software and hardware exist, and are under the user's control in a way that any other TPM is not. Not every motherboard has a TPM slot, but boards with them are not hard to come by, so it is feasible for users to have a TPM that they actually do control. Neither the TPM in your CPU nor the average add-in TPM is actually that. Being able to remove things from it is not the same thing as being in control of it, although it's a part of being in control.

Comment Re:TPM Suspicion Intensifies (Score 1) 88

Windows provides 3 distinct ways to clear all TPM data. Your UEFI provides ways to clear TPM data. It is under *YOUR* control.

The "He who can destroy a thing controls it" idea from Dune was about political control, not direct and literal. You can destroy that data at any time, but that's the extent of your control over it. That's not nothing, but it's far from the hardware working for you.

The fact that a root user can't access information al-a-carte is foundational to the feature

Right, that's why the feature is not for my benefit. If I want to bypass security between applications which is not for my benefit (for example to prevent me from copying data that I'm actually intending to copy) and I can't do that because TPM says no, that's working against me.

Having a separate secure enclave is a good idea, having it be so secure that I can't do what I want with it when I want to is a bad one. Most users won't even try, you only need to make it so that they can't trivially be tricked into it. A big warning, a short delay, a hoop to jump through so that a person who can't read the warning can't get there.

Comment Re:Interesting (Score 1) 33

the people who are actually in the business of data centers, AI, and space, think it can be done and can be cost effective

That's what they say.

Do you believe everything people say?

If it turns out that they can do it

They can't, and only people who know how nothing whatsoever works thinks they can.

Comment Re:kids these days ... (Score 1) 88

A like for like CPU change would trigger a windows reactivation, and that was before you even learned to spell TPU.

Not IME. I changed the CPU on this system that I'm using right now back when it still had Windows on it without requiring reactivation. It took changing the motherboard to have to reactivate.

Comment Re:TPM Suspicion Intensifies (Score 1) 88

It's all been over since we got processors with microcode, which could have something like a TPM in them. I'm not saying all of them do or anything like that, only that any of them could.

If you really want a computer you can trust, you're going to have to get vintage about it.

Slashdot Top Deals

"All the people are so happy now, their heads are caving in. I'm glad they are a snowman with protective rubber skin" -- They Might Be Giants

Working...