Gentoo Archives: gentoo-user

From: Adam Carter <adamcarter3@×××××.com>
To: gentoo-user@l.g.o
Subject: Re: [gentoo-user] Re: CPU upgrade and LVM questions.
Date: Tue, 11 Dec 2018 22:47:07
Message-Id: CAC=wYCEEeXjbpr4i3Eh0BbRAoWkT3AuYUmfup58ZHMuvfZiz3A@mail.gmail.com
In Reply to: Re: [gentoo-user] Re: CPU upgrade and LVM questions. by Neil Bothwick
1 On Tue, Dec 11, 2018 at 7:49 PM Neil Bothwick <neil@××××××××××.uk> wrote:
2
3 > > So tell us what is your perfect country for hardware manufacturing?
4 >
5 > There isn't one as you can never be sure. You are presenting hope, and
6 > maybe likelihood, as certainty when this does not exist.
7 >
8
9 Datapoint - looks like Bloomberg is starting to walk back its complete
10 support of the original implant story.
11 https://www.bloomberg.com/news/articles/2018-12-11/super-micro-says-third-party-test-found-no-malicious-hardware
12 Also they have assigned another reporter that was not involved in the
13 original story, to attempt to verify the claims of the original story...
14
15 Others have made the point that the Amazon and Apple denials left them no
16 wriggle room in the event that implants are found and shareholders launch a
17 class action, and that this indicates a genuine belief that there are no
18 backdoors.
19
20 Considering risk;
21 If you are of interest to a nation state, you're pretty much stuffed
22 anyway, and I think this discussion has been around implants made via
23 Chinese government action.
24 The management processor issue is a real problem because they're not well
25 understood, on by default, cant be (or cant easily) be disabled, and has to
26 be software maintained. However, given all the other issues like the never
27 ending stream of security issues in software, i'm not sure it changes the
28 overall risk profile significantly. Only time will tell.
29
30 Sorry for further polluting your thread Dale :)

Replies

Subject Author
Re: [gentoo-user] Re: CPU upgrade and LVM questions. Dale <rdalek1967@×××××.com>