LinuxQuestions.org
Visit Jeremy's Blog.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Hardware
User Name
Password
Linux - Hardware This forum is for Hardware issues.
Having trouble installing a piece of hardware? Want to know if that peripheral is compatible with Linux?

Notices


Reply
  Search this Thread
Old 04-11-2023, 01:53 PM   #1
camerabambai
Member
 
Registered: Mar 2010
Distribution: Slackware
Posts: 408

Rep: Reputation: 54
Some questions about privacy/security at HW level.


LEGEND:

IME=Intel Management Engine

Linux can be a safe OS (is not perfect, but is Open Source so is difficult to place backdoors and other stuff). But with modern hardware security and privacy are not granted as happen with the good old hardware.
On the modern Intel CPU there is the "Intel Managment Engine", which is in ring 3 (all privileges!), with his own OS (Minix), and with complete access to network-stack, disk, etc.
AMD use something similar called PSP, some people said PSP is not dangerous and invasive like IME, some others said is the same thing.
Personally I prefer PC more OS (open source) as possible, with Intel we have a lot of good solutions

a)NovaCustom, some laptops use Coreboot firmware, on some models is possible to disable the IME, the prices are not too high imho

b)Minfree, some good thinkpad, with modern cpu and IME disabled, prices are low

c)Purism, offer not only laptops but also minipc and servers with coreboot, very good. Prices are high-medium.

d)System76 offer some good laptops with Coreboot, is possible to disable IME.

e)Store Viking offer some laptops and Workstation with Opteron with coreboot. Prices are a little high.

f)https://www.raptorcs.com/ offer a nice line of ppc Workstation with Open PPC Power 9 very powerful, completely Open Source (only the network card and some VGA are with proprietary firmwares), the prices are ultra-high.

Unfortunately ATM seems is not possible to disable AMD PSP, and Coreboot still don't support Ryzen. The only solution to avoid PSP is buy a CPU without it (only on Ryzen there is PSP, as I know)

What do you think about this?

What about the Raspberry Pi?

In your opinion PSP is dangerous as IME?

Last edited by camerabambai; 04-11-2023 at 01:56 PM.
 
Old 04-12-2023, 07:15 AM   #2
pan64
LQ Addict
 
Registered: Mar 2012
Location: Hungary
Distribution: debian/ubuntu/suse ...
Posts: 22,002

Rep: Reputation: 7338Reputation: 7338Reputation: 7338Reputation: 7338Reputation: 7338Reputation: 7338Reputation: 7338Reputation: 7338Reputation: 7338Reputation: 7338Reputation: 7338
Security always depends on the admin/maintainer and configuration, not on the hardware and software. Also it is not a one time activity, but a continuous process. So I don't understand your question.
By the way, a Commodore 64 and a ZX Spectrum were perfectly secure (without linux).
 
1 members found this post helpful.
Old 04-19-2023, 01:38 PM   #3
business_kid
LQ Guru
 
Registered: Jan 2006
Location: Ireland
Distribution: Slackware, Slarm64 & Android
Posts: 16,421

Rep: Reputation: 2339Reputation: 2339Reputation: 2339Reputation: 2339Reputation: 2339Reputation: 2339Reputation: 2339Reputation: 2339Reputation: 2339Reputation: 2339Reputation: 2339
You should lurk on the security forum, or get this moved there. Reporting your own thread and asking for the transfer is a good way to do it.

You appear not to have a problem we can fix. If your question is "Have you read ...?" the answer is probably no. But you can. All this stuff is written up well.
 
  


Reply

Tags
privacy, security



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
LXer: U.S. Broadband Privacy Rules: We will Fight to Protect User Privacy LXer Syndicated Linux News 2 04-07-2017 10:44 AM
LXer: Data Privacy Day 2017: Solutions for everyday privacy LXer Syndicated Linux News 0 01-29-2017 10:12 AM
LXer: Are you Privacy Aware? Data Privacy Day, and Every Day LXer Syndicated Linux News 0 01-27-2017 05:33 AM
LXer: FCC Online Privacy Ruling Helps, not Hurts, Privacy-Minded Users LXer Syndicated Linux News 0 11-11-2015 03:40 PM
emacs in run level 3 then switch to X (level 7) then back to level 3 dsoliver Slackware 3 09-01-2006 03:31 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Hardware

All times are GMT -5. The time now is 05:44 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration