Skip Navigation

Posts
9
Comments
566
Joined
2 yr. ago

  • I heard somebody say that they would really prefer if people used FGT NZS instead, however I don't complain about people making their disdain for fascism public

  • rule

    Jump
  • Hey user224 how about some Rust

  • Not vegan, biscoff is way more transfem

  • I think Heads (osresearch.net) uses security keys as a kind of substitute TPM, however that only works if you replace your - supported - PCs firmware with it.
    I don't know too much about how this works in particular, so I can't really compare it. safeboot.dev recommends Heads where possible, which I understand is partly due to safeboot relying on proprietary firmware implementations, while Heads uses libre software for the most part. Sadly the Heads firmware only supports older models/CPUs, which afaik don't receive (all) microcode updates, including one which weakens the IOMMU.

  • Yes, with a TPM. A TPM (2.0) can seal secrets and only release it when a machine fulfills certain configuration and state requirements (saved into registers called PCRs).
    For example: make the decryption key one part dependant on a passphrase you memorized (to not only rely on a TPM), and one part on something saved in a TPM. If you select the correct PCRs when saving the latter, and your TPM works as advertised (and doesn't offer an easy way to eavesdrop/fool it), removing the battery would make the TPM not release the secret (if removing the battery even still works on modern machines).
    However, this depends on having a unified kernel image, having configured dm-verity and maybe more stuff I don't recall right now. Probably should also make sure you don't allow Microsoft's Secure Boot keys and instead only your own. I hope this will get easier in the future, but I know SystemD is actively developing useful tools for that (e.g. ukify).
    That all doesn't mean the critique of TPMs (intransparent, proprietary) is invalid. Maybe we'll have OpenTitan based TPMs at some point?

  • See safeboot.dev for a project which tries to fix this.

  • LUKS doesn't protect you from an evil maid attack. It hides your data when your stuff gets stolen in a powered off state, but it provides neither verification of data, nor does it provide verified/secure/safe boot.
    In simple terms: the very first thing which gets loaded needs to be unencrypted (barring some exceptions I will omit here), which can get replaced with an evil version by the evil maid.

  • Why is this an issue for you? Taking stuff and remixing it is how new stuff gets made. Nintendo surely won't go into bankruptcy anytime soon.

  • I don't play multiplayer games really, is Lethal Company fun alone? I saw it all over YouTube.

  • Thanks for the answer! I don't have a windows installation around anymore, so I'll just see if when I do try it, it runs better.
    Not having DRM is a good sign at least iirc :D

  • I wanted to get into that on Linux, too. Which Wine/Proton version did you use?

  • Relieved to read, wouldn't be as happy to try it out if it was a proprietary engine. Good luck!

  • Open source has no tangible effect on release schedules?
    If the software in question was proprietary you wouldn't even have that option. Distro packages could backport that fix too.

  • The steam reviews for cassette beasts drove me away from it, what did you like about it? Also what's your in game time, if you don't mind me asking?

  • Share some gems? :)

  • That wall of text is a bit difficult to read to me, I think it would've helped me if you put some line breaks and dots in there 😅
    I'd like to add that Fabric, Sodium, Lithium, and Iris are all libre/open source software.

  • Thank you hat man, is there a vegan option though?

  • I make it do online research for me and then I have it validate my thoughts.

    That's precisely the issue. The words sound convincing, but this way of thinking leads to it becoming a yes-man. Either it confirms what you think, or your prompt is wrong.

  • This doesn't seem like a lot more plastic than most noodles come with? Not disagreeing with your point, but instant food is price and time wise helpful when money is tight.