← prev | next →
bastianb0t 2022-09-21 05:53:25
https://www.theregister.com/2018/01/22/intel_spectre_fix_linux/
‘WHAT THE F*CK IS GOING ON?’ Linus Torvalds explodes at Intel spinning Spectre fix as a security feature –
The RegisterPatches slammed as ‘complete and utter garbage’ as Chipzilla U-turns on microcode
lordwilliamwolf 2022-09-21 05:53:36
ChrisCromer 2022-09-21 05:51:59
Nope, the fixes are through microcode.
oh ok. im asking because i saw some stuff about this, what you’re saying, being discussed in the Libreboot bios community.
lordwilliamwolf 2022-09-21 05:53:48
bastianb0t 2022-09-21 05:53:25
https://www.theregister.com/2018/01/22/intel_spectre_fix_linux/
linus angy
lordwilliamwolf 2022-09-21 05:54:16
thanks for sharing
ChrisCromer 2022-09-21 05:54:59
lordwilliamwolf 2022-09-21 05:53:36
oh ok. im asking because i saw some stuff about this, what you’re saying, being discussed in the Libreboot bios community.
Nobody can fix it except for intel/amd, which is why it’s microcode and not bios.
ChrisCromer 2022-09-21 05:55:23
It’s not a motherboard hole, it’s a CPU vulnerability.
lordwilliamwolf 2022-09-21 05:56:44
ChrisCromer 2022-09-21 05:54:59
Nobody can fix it except for intel/amd, which is why it’s microcode and not bios.
I understand but afaik there are some things that can be fixed through the BIOS.
I was following this fork of Libreboot, called OSBoot, which was made by the original creator of Libreboot, and she was talking about how she just takes Libreboot and adds some microcode updates for security purposes
lordwilliamwolf 2022-09-21 05:57:05
idk if it was specifically spectre/meltdown tho
lordwilliamwolf 2022-09-21 05:57:47
https://osboot.org/
highly recommend to check out the project. it’s a middle ground between libreboot and coreboot i think. I have an OS Boot laptop and i ran Artix on it
lordwilliamwolf 2022-09-21 05:58:33
CPU microcode updates do not hurt your freedom, because your CPU already has older, buggier microcode in mask ROM anyway. You should choose osboot, not Libreboot, even on Libreboot-compatible hardware, because the microcode updates improve system stability and reliability. Out of principle, osboot will always enable microcode updates. Libreboot is inferior to osboot, in every way, but it will continue to be developed and polished, alongside osboot development.
ChrisCromer 2022-09-21 05:59:07
lordwilliamwolf 2022-09-21 05:56:44
I understand but afaik there are some things that can be fixed through the BIOS.
I was following this fork of Libreboot, called OSBoot, which was made by the original creator of Libreboot, and she was talking about how she just takes Libreboot and adds some microcode updates for security purposes
The microcode gets loaded by grub before loading initramfs… So it’s the same thing essentially.
lordwilliamwolf 2022-09-21 05:59:26
ChrisCromer 2022-09-21 05:59:07
The microcode gets loaded by grub before loading initramfs… So it’s the same thing essentially.
ahh okay, makes sense
ChrisCromer 2022-09-21 06:01:39
Microcode is always loaded before kernel and before initrmfs. osboot will load it 1 step before that, so no noticable difference.
lordwilliamwolf 2022-09-21 06:02:08
i guess the upside in this case is just that you have the microcode for any OS you use
lordwilliamwolf 2022-09-21 06:02:13
ChrisCromer 2022-09-21 06:01:39
Microcode is always loaded before kernel and before initrmfs. osboot will load it 1 step before that, so no noticable difference.
i gotcha
ChrisCromer 2022-09-21 06:02:57
lordwilliamwolf 2022-09-21 06:02:08
i guess the upside in this case is just that you have the microcode for any OS you use
The downside is that if your osboot isn’t kept up to date, you don’t get the new microcode.
ChrisCromer 2022-09-21 06:03:16
Unlike arch/artix where it is updated constantly.
lordwilliamwolf 2022-09-21 06:04:48
ChrisCromer 2022-09-21 06:02:57
The downside is that if your osboot isn’t kept up to date, you don’t get the new microcode.
Does that matter though? Osboot only works on a specific set of pre-2008/09 systems
lordwilliamwolf 2022-09-21 06:05:04
so for those systems would it matter?
ChrisCromer 2022-09-21 06:05:14
It matters if a hole is found that effects those processors.
ChrisCromer 2022-09-21 06:05:49
And most people just install bios and forget about it. They usually only update when something is not working.
lordwilliamwolf 2022-09-21 06:06:01
true
lordwilliamwolf 2022-09-21 06:06:06
yeah, i gotcha, makes sense
lanciagreggori 2022-09-21 06:13:25
Drogobo1 2022-09-20 23:17:50
which init system should I use
Sinit, DIY in it’s purest form
我係孫嘉晨 2022-09-21 06:26:34
ItsZariep 2022-09-21 05:47:19
that is Artix mirror, not Arch
so i will try to modified udev PKGBUILD to add systemd-boot
grakata_clem 2022-09-21 07:22:02
qontinuum 2022-09-20 23:05:31
Just grab a bottle and profit like you were at the zoo
Why buying tickets to circus and zoo, if Artix group is free
cfp_95 2022-09-21 08:07:30
lordwilliamwolf 2022-09-21 05:43:46
@ChrisCromer overall thoughts on parabola?
Tried installing it multiple times (on a 32bit machine) and failed miserably at package signature verifications. I eventually dropped it. I will maybe give Hyperbola a try in the future 🙂
cfp_95 2022-09-21 08:09:55
It was due to some expired keys in the parabola keyring tho
qontinuum 2022-09-21 08:10:14
cfp_95 2022-09-21 08:09:55
It was due to some expired keys in the parabola keyring tho
Was talking about hyperbola and parabola
qontinuum 2022-09-21 08:10:19
They are basically useless
RadiantKnight 2022-09-21 08:10:47
cfp_95 2022-09-21 08:07:30
Tried installing it multiple times (on a 32bit machine) and failed miserably at package signature verifications. I eventually dropped it. I will maybe give Hyperbola a try in the future 🙂
no god please no no
cfp_95 2022-09-21 08:11:35
I agree, but I had an old ThinkPad x60 and considered making it 100% libre by installing libreboot and parabola just for fun
grakata_clem 2022-09-21 08:11:43
qontinuum 2022-09-21 08:10:19
They are basically useless
Parabola is useful, it allows to throw grenades above the walls
cfp_95 2022-09-21 08:11:58
Fun and educational purpose 🙃
qontinuum 2022-09-21 08:12:23
Just go for Guix
← prev | next →