Post #3187093
2024-07-25 20:41 UTC
@lispi314@udongein.xyz @dangoodin@infosec.exchange @cstross@wandering.shop yus. He was right. 10y ago:
> Users should be asked for permission ... “Not using keys,” he added. ... Keys will be compromised. Try to limit the damage .. let the user be in control.”
> Per-host random keys.. even with the “stupid” UEFI checks disabled entirely if required. “They are almost certainly going to be *more* secure than depending on some crazy root of trust based on a big company, with key signing authorities that trust anybody with a credit card.”
Replies (0)
No replies.