[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Please upload signed kernel images at the same time as unsigned ones



I agree but in the mid/long term most of the PCs except manually assembled ones are likely to require this crap. This is the implementation of the so-called NGSCB (or Palladium, or whatever) which is supposed to be for user safety, but is actually more bound to DRM sh*t than anything else... So yup it sucks but as of now we do not have much choice.

And this crap has begun : look at some Microsoft Surface computers for example...

2017-01-23 13:07 GMT+01:00 Thorsten Glaser <t.glaser@tarent.de>:
On Mon, 23 Jan 2017, Ben Hutchings wrote:

> And if you insist you want fixes a.s.a.p. you should be using unstable

I’ve noticed the problem at least once on unstable, where there were
two uploads of the kernel (noticeable in apt-listchanges for the
linux-libc-dev package) with a few days in between, without any
corresponding linux-signed changes; before, the new kernel would just
be available as it did not have an ABI bump.

I don’t know, this signing seems like an antifeature, but…

Gruß
//mirabilos
--
tarent solutions GmbH
Rochusstraße 2-4, D-53123 Bonn • http://www.tarent.de/
Tel: +49 228 54881-393 • Fax: +49 228 54881-235
HRB 5168 (AG Bonn) • USt-ID (VAT): DE122264941
Geschäftsführer: Dr. Stefan Barth, Kai Ebenrett, Boris Esser, Alexander Steeg


Reply to: