From mboxrd@z Thu Jan 1 00:00:00 1970 Received: from mailman by lists.gnu.org with archive (Exim 4.43) id 1Hu4IK-0002gf-85 for mharc-grub-devel@gnu.org; Fri, 01 Jun 2007 06:23:44 -0400 Received: from mailman by lists.gnu.org with tmda-scanned (Exim 4.43) id 1Hu4II-0002ga-TN for grub-devel@gnu.org; Fri, 01 Jun 2007 06:23:42 -0400 Received: from exim by lists.gnu.org with spam-scanned (Exim 4.43) id 1Hu4IG-0002gN-G8 for grub-devel@gnu.org; Fri, 01 Jun 2007 06:23:41 -0400 Received: from [199.232.76.173] (helo=monty-python.gnu.org) by lists.gnu.org with esmtp (Exim 4.43) id 1Hu4IG-0002gK-8u for grub-devel@gnu.org; Fri, 01 Jun 2007 06:23:40 -0400 Received: from smtpout01.nanet.at ([194.112.145.46]) by monty-python.gnu.org with esmtp (Exim 4.60) (envelope-from ) id 1Hu4IF-0006gT-Qu for grub-devel@gnu.org; Fri, 01 Jun 2007 06:23:40 -0400 Received: from gnupsi.local (gate.hakmistelbach.ac.at [194.112.174.250] (may be forged)) by smtpout01.nanet.at (8.10.2/8.10.2) with ESMTP id l51ANUf18779 for ; Fri, 1 Jun 2007 12:23:30 +0200 From: Klaus Weiss To: The development of GRUB 2 In-Reply-To: <20070530232859.GB24702@coresystems.de> References: <10779735.post@talk.nabble.com> <20070524160348.GA13048@aragorn> <20070525151103.GA12477@wolff.to> <20070530131841.GB4771@aragorn> <20070530232859.GB24702@coresystems.de> Content-Type: text/plain Date: Fri, 01 Jun 2007 12:20:37 +0200 Message-Id: <1180693237.4180.0.camel@gnupsi> Mime-Version: 1.0 X-Mailer: Evolution 2.6.3 Content-Transfer-Encoding: 7bit X-detected-kernel: Linux 2.2 (2) Subject: Re: TPM chip and Grub bootloader X-BeenThere: grub-devel@gnu.org X-Mailman-Version: 2.1.5 Precedence: list Reply-To: The development of GRUB 2 List-Id: The development of GRUB 2 List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 01 Jun 2007 10:23:43 -0000 hallo bist cool Am Donnerstag, den 31.05.2007, 01:28 +0200 schrieb Stefan Reinauer: > * Robert Millan [070530 15:18]: > > IOW, no matter who the keys belong to, the problem is there's a component in > > the hardware I paid for that is hostile to me, which contains keys that I > > cannot retrieve (good, because of security), and refuses to use the keys on > > anything I want it to (bad, because it's inherently an abusive tool). > > You do not need a TPM based system. Todays BIOSes prohibit flashing > anything not signed by the vendor using SMI and hardware lockdown > mechanisms. You are locked out already, even though you might not care > or know yet. > > Stefan > -- GNU Maintainer (uid:klausweiss) Free Software - Free as in Freedom