zlacker

[return to "Toward a Reasonably Secure Laptop"]
1. Taek+P9[view] [source] 2017-07-11 13:12:01
>>doener+(OP)
Is this something we could achieve with a corporate alliance? I know a lot of tech companies would like to give their employees secure laptops. I also know that there are large costs associated with making hardware, especially if you are talking about dropping ME.

A dozen companies with 1000 employees each and a budget of $2,500 per employee gets you $30 million, which is surely enough to get a decent, qubes-secure laptop with no ME. You aren't going to be designing your own chips at that point, but you could grab power8 or sparc or arm.

Are there companies that would reasonably be willing to throw in a few million to fund a secure laptop? I imagine at least a few. And maybe we could get a Google or someone to put in $10m plus.

◧◩
2. Xeoncr+ag[view] [source] 2017-07-11 14:05:01
>>Taek+P9
I would think that one company (Google, Amazon, Facebook, etc..) that cared enough would be better off SOLEY funding a project like this for themselves first - then others second.

$100 Million investment isn't a stretch for something from a large company.

◧◩◪
3. brians+Ci[view] [source] 2017-07-11 14:22:24
>>Xeoncr+ag
They did. Apple laptops have no ME, and Chromebooks are safe (e.g., the source is open to Google!)
◧◩◪◨
4. cyphar+Nu[view] [source] 2017-07-11 15:48:07
>>brians+Ci
ChromiumOS is what Google bases ChromeOS on, and it's source is available (most notably, the U-Boot and device-specific firmware source is available for all Chromebooks). That's one of the reasons why Chromebooks are so well-supported by coreboot.
◧◩◪◨⬒
5. gcb0+I95[view] [source] 2017-07-13 17:12:18
>>cyphar+Nu
very wrong.

from their site:

"For years, coreboot has been struggling against Intel. Intel has been shown to be extremely uncooperative in general. Many coreboot developers, and companies, have tried to get Intel to cooperate; namely, releasing source code for the firmware components. Even Google, which sells millions of chromebooks (coreboot preinstalled) have been unable to persuade them.

...

Basically, all Intel hardware from year 2010 and beyond will never be supported by libreboot...."

[go to top]