From mboxrd@z Thu Jan 1 00:00:00 1970 Received: from mailman by lists.gnu.org with archive (Exim 4.43) id 1HtumB-0001y1-Eh for mharc-grub-devel@gnu.org; Thu, 31 May 2007 20:13:55 -0400 Received: from mailman by lists.gnu.org with tmda-scanned (Exim 4.43) id 1Htum9-0001xT-4o for grub-devel@gnu.org; Thu, 31 May 2007 20:13:53 -0400 Received: from exim by lists.gnu.org with spam-scanned (Exim 4.43) id 1Htum6-0001uv-HG for grub-devel@gnu.org; Thu, 31 May 2007 20:13:51 -0400 Received: from [199.232.76.173] (helo=monty-python.gnu.org) by lists.gnu.org with esmtp (Exim 4.43) id 1Htum6-0001uq-Ep for grub-devel@gnu.org; Thu, 31 May 2007 20:13:50 -0400 Received: from khepri.openbios.org ([80.190.231.112]) by monty-python.gnu.org with esmtps (TLS-1.0:DHE_RSA_AES_256_CBC_SHA1:32) (Exim 4.60) (envelope-from ) id 1Htum6-0001xJ-4R for grub-devel@gnu.org; Thu, 31 May 2007 20:13:50 -0400 Received: from stepan by khepri.openbios.org with local (Exim 4.67) (envelope-from ) id 1Htum1-00040G-E4 for grub-devel@gnu.org; Fri, 01 Jun 2007 02:13:45 +0200 Date: Fri, 1 Jun 2007 02:13:45 +0200 From: Stefan Reinauer To: The development of GRUB 2 Message-ID: <20070601001345.GA15269@coresystems.de> References: <10779735.post@talk.nabble.com> <20070524160348.GA13048@aragorn> <20070525151103.GA12477@wolff.to> <20070530131841.GB4771@aragorn> <20070530232859.GB24702@coresystems.de> <87zm3lhrpc.fsf@xs4all.nl> MIME-Version: 1.0 Content-Type: text/plain; charset=utf-8 Content-Disposition: inline Content-Transfer-Encoding: 8bit In-Reply-To: <87zm3lhrpc.fsf@xs4all.nl> X-Operating-System: Linux 2.6.22-rc2-git7-43-default on an x86_64 User-Agent: Mutt/1.5.13 (2006-08-11) X-Duff: Orig. Duff, Duff Lite, Duff Dry, Duff Dark, Raspberry Duff, Lady Duff, Red Duff, Tartar Control Duff X-detected-kernel: Linux 2.6 (newer, 3) Subject: Re: TPM chip and Grub bootloader X-BeenThere: grub-devel@gnu.org X-Mailman-Version: 2.1.5 Precedence: list Reply-To: The development of GRUB 2 List-Id: The development of GRUB 2 List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 01 Jun 2007 00:13:53 -0000 * Marco Gerards [070531 18:40]: > > You do not need a TPM based system. Todays BIOSes prohibit flashing > > anything not signed by the vendor using SMI and hardware lockdown > > mechanisms. You are locked out already, even though you might not care > > or know yet. > > That sounds terrible. How do you deal with this for LinuxBIOS? currently by pulling the chip and writing it in an external flash writer. But that is a bad option for the people out there without this kind of equipment. -- coresystems GmbH • Brahmsstr. 16 • D-79104 Freiburg i. Br. Tel.: +49 761 7668825 • Fax: +49 761 7664613 Email: info@coresystems.de • http://www.coresystems.de/