• rastilin@kbin.social
    link
    fedilink
    arrow-up
    2
    ·
    11 months ago

    TPM is basically never for your benefit. It’s becoming a requirement because Microsoft is going to one day say “you can only run apps installed from the Windows Store, because everything else is insecure” and lock down the software market. Valve knows this which is why they’re going so hard on the Steam Deck and Linux.

  • argv_minus_one@beehaw.org
    link
    fedilink
    English
    arrow-up
    1
    ·
    11 months ago

    “Maybe use it for the boot-time ‘gather entropy from different sources,’ but clearly it should not be used at runtime.”

    Good idea. Ask it during boot/insmod for some hardware-random bits to seed Linux’s usual software-only CSPRNG, then just use that.

    And even that might not be a great idea. I wouldn’t be surprised if the fTPM RNG is subtly not-entirely-random, at some alphabet agency’s behest. I remember there being a controversy over rdrand for this reason…

  • shapis@lemmy.ml
    link
    fedilink
    arrow-up
    1
    ·
    11 months ago

    Would love this. I’m still getting the ftpm stutters and there’s no way to disable it in my motherboards bios.

  • interdimensionalmeme@lemmy.ml
    link
    fedilink
    arrow-up
    1
    ·
    11 months ago

    I always just kill my TPM chip. It’s so obvious tpm will be used in the future for application offline DRM. They will executed encrypted operations under the TPM veil and decompilers will become unusable.

  • FunkyMonkey@feddit.de
    link
    fedilink
    arrow-up
    1
    ·
    11 months ago

    I’ve had a weird system-wide stutter for months and the usual googling and troubleshooting didn’t help… omg. This might be it. Thank you Linus and thank you op.