▲ 81 ▼ Today i installed arch linux for the first time (pawb.social) submitted 3 years ago by tibor@pawb.social to c/programmerhumor@lemmy.ml 85 comments fedilink hide all child comments
[–] jackpot@lemmy.ml 1 point 3 years ago (1 child) whats librebooted mean permalink fedilink source parent hideshow 2 child comments replies: [–] gallopingsnail@lemmy.sdf.org 1 point 3 years ago (1 child) Replacing the bootloader with a FOSS bootloader called LibreBoot permalink fedilink source parent hideshow 2 child comments replies: [–] jackpot@lemmy.ml 1 point 3 years ago (1 child) why would you even do that, forgive my ignorance permalink fedilink source parent hideshow 2 child comments replies: [–] KindredAffiliate@lemmy.world 3 points 3 years ago (1 child) If you want to disable Intel Management Engine, the always-on backdoor built into every Intel CPU and/or want as much software as possible on your machine to be FOSS Also it boots much faster than most stock bios. permalink fedilink source parent hideshow 2 child comments replies: [–] a_statistician@lemmy.ml 0 points 3 years ago (1 child) Is there a similar issue with AMD? permalink fedilink source parent hideshow 2 child comments replies: [–] mimichuu_@lemm.ee 0 points 3 years ago (1 child) Not that I know of, AMD is also soon going to make their own FOSS bios with OpenSIL so they're generally the better option if you're a privacy/libre software junkie. permalink fedilink source parent hideshow 2 child comments replies: [–] pitajellybug@lemmy.world 1 point 3 years ago (1 child) As far as I know, OpenSIL stands for Open Silicon Initialization Library, and handles only the hardware initialisation part of the boot process. It may still require loading binary blobs like the Platform Security Processor (PSP), which is AMD's version of Intel Management Engine permalink fedilink source parent hideshow 2 child comments replies: [–] mimichuu_@lemm.ee 2 points 3 years ago (1 child) PSP is not the same thing as IME. Not even close. PSP doesn't even have network access, much less remote computer control like the IME. Still proprietary, but if OpenSIL allows you to turn it off then we might actually be able to run a fully 100% libre modern desktop computer which is honestly pretty awesome. permalink fedilink source parent hideshow 2 child comments replies: [–] spez@sh.itjust.works 1 point 3 years ago (1 child) Things like these and the overall general improvements to linux on a daily basis get me excited for a time when I could buy a Framework laptop with coreboot running linux without issues. Also no backdoors for big brother. permalink fedilink source parent hideshow 2 child comments replies: [–] mimichuu_@lemm.ee 0 points 3 years ago (1 child) Coreboot doesn't disable the IME by the way. It just gets rid of some of it's functionality blobs and sends a signal to it telling it to please disable itself. No one knows if that signal actually works. Only Intel themselves can actually fully remove it from a processor, like they did with the processors they sold to the NSA. permalink fedilink source parent hideshow 2 child comments replies: [–] spez@sh.itjust.works 1 point 3 years ago* (1 child) Only Intel themselves can actually fully remove it from a processor, like they did with the processors they sold to the NSA. Looks interesting, source please. permalink fedilink source parent hideshow 2 child comments replies: [–] mimichuu_@lemm.ee 2 points 3 years ago* Okay I did some research and I was wrong. There is no confirmation Intel specifically removed the IME from NSA's PCs. It's just that some reverse engineers found a flag that supposedly disables it, and their theory is that it was meant for the NSA. https://www.notebookcheck.net/Eureka-The-Intel-Management-Engine-can-finally-be-disabled-thanks-to-the-NSA.245922.0.html I believe this is the switch System76 and Purism turn off, but as I said, since the blob is still there, we can't be sure that switch actually works or if it's just a trap. permalink fedilink source parent
[–] gallopingsnail@lemmy.sdf.org 1 point 3 years ago (1 child) Replacing the bootloader with a FOSS bootloader called LibreBoot permalink fedilink source parent hideshow 2 child comments replies: [–] jackpot@lemmy.ml 1 point 3 years ago (1 child) why would you even do that, forgive my ignorance permalink fedilink source parent hideshow 2 child comments replies: [–] KindredAffiliate@lemmy.world 3 points 3 years ago (1 child) If you want to disable Intel Management Engine, the always-on backdoor built into every Intel CPU and/or want as much software as possible on your machine to be FOSS Also it boots much faster than most stock bios. permalink fedilink source parent hideshow 2 child comments replies: [–] a_statistician@lemmy.ml 0 points 3 years ago (1 child) Is there a similar issue with AMD? permalink fedilink source parent hideshow 2 child comments replies: [–] mimichuu_@lemm.ee 0 points 3 years ago (1 child) Not that I know of, AMD is also soon going to make their own FOSS bios with OpenSIL so they're generally the better option if you're a privacy/libre software junkie. permalink fedilink source parent hideshow 2 child comments replies: [–] pitajellybug@lemmy.world 1 point 3 years ago (1 child) As far as I know, OpenSIL stands for Open Silicon Initialization Library, and handles only the hardware initialisation part of the boot process. It may still require loading binary blobs like the Platform Security Processor (PSP), which is AMD's version of Intel Management Engine permalink fedilink source parent hideshow 2 child comments replies: [–] mimichuu_@lemm.ee 2 points 3 years ago (1 child) PSP is not the same thing as IME. Not even close. PSP doesn't even have network access, much less remote computer control like the IME. Still proprietary, but if OpenSIL allows you to turn it off then we might actually be able to run a fully 100% libre modern desktop computer which is honestly pretty awesome. permalink fedilink source parent hideshow 2 child comments replies: [–] spez@sh.itjust.works 1 point 3 years ago (1 child) Things like these and the overall general improvements to linux on a daily basis get me excited for a time when I could buy a Framework laptop with coreboot running linux without issues. Also no backdoors for big brother. permalink fedilink source parent hideshow 2 child comments replies: [–] mimichuu_@lemm.ee 0 points 3 years ago (1 child) Coreboot doesn't disable the IME by the way. It just gets rid of some of it's functionality blobs and sends a signal to it telling it to please disable itself. No one knows if that signal actually works. Only Intel themselves can actually fully remove it from a processor, like they did with the processors they sold to the NSA. permalink fedilink source parent hideshow 2 child comments replies: [–] spez@sh.itjust.works 1 point 3 years ago* (1 child) Only Intel themselves can actually fully remove it from a processor, like they did with the processors they sold to the NSA. Looks interesting, source please. permalink fedilink source parent hideshow 2 child comments replies: [–] mimichuu_@lemm.ee 2 points 3 years ago* Okay I did some research and I was wrong. There is no confirmation Intel specifically removed the IME from NSA's PCs. It's just that some reverse engineers found a flag that supposedly disables it, and their theory is that it was meant for the NSA. https://www.notebookcheck.net/Eureka-The-Intel-Management-Engine-can-finally-be-disabled-thanks-to-the-NSA.245922.0.html I believe this is the switch System76 and Purism turn off, but as I said, since the blob is still there, we can't be sure that switch actually works or if it's just a trap. permalink fedilink source parent
[–] jackpot@lemmy.ml 1 point 3 years ago (1 child) why would you even do that, forgive my ignorance permalink fedilink source parent hideshow 2 child comments replies: [–] KindredAffiliate@lemmy.world 3 points 3 years ago (1 child) If you want to disable Intel Management Engine, the always-on backdoor built into every Intel CPU and/or want as much software as possible on your machine to be FOSS Also it boots much faster than most stock bios. permalink fedilink source parent hideshow 2 child comments replies: [–] a_statistician@lemmy.ml 0 points 3 years ago (1 child) Is there a similar issue with AMD? permalink fedilink source parent hideshow 2 child comments replies: [–] mimichuu_@lemm.ee 0 points 3 years ago (1 child) Not that I know of, AMD is also soon going to make their own FOSS bios with OpenSIL so they're generally the better option if you're a privacy/libre software junkie. permalink fedilink source parent hideshow 2 child comments replies: [–] pitajellybug@lemmy.world 1 point 3 years ago (1 child) As far as I know, OpenSIL stands for Open Silicon Initialization Library, and handles only the hardware initialisation part of the boot process. It may still require loading binary blobs like the Platform Security Processor (PSP), which is AMD's version of Intel Management Engine permalink fedilink source parent hideshow 2 child comments replies: [–] mimichuu_@lemm.ee 2 points 3 years ago (1 child) PSP is not the same thing as IME. Not even close. PSP doesn't even have network access, much less remote computer control like the IME. Still proprietary, but if OpenSIL allows you to turn it off then we might actually be able to run a fully 100% libre modern desktop computer which is honestly pretty awesome. permalink fedilink source parent hideshow 2 child comments replies: [–] spez@sh.itjust.works 1 point 3 years ago (1 child) Things like these and the overall general improvements to linux on a daily basis get me excited for a time when I could buy a Framework laptop with coreboot running linux without issues. Also no backdoors for big brother. permalink fedilink source parent hideshow 2 child comments replies: [–] mimichuu_@lemm.ee 0 points 3 years ago (1 child) Coreboot doesn't disable the IME by the way. It just gets rid of some of it's functionality blobs and sends a signal to it telling it to please disable itself. No one knows if that signal actually works. Only Intel themselves can actually fully remove it from a processor, like they did with the processors they sold to the NSA. permalink fedilink source parent hideshow 2 child comments replies: [–] spez@sh.itjust.works 1 point 3 years ago* (1 child) Only Intel themselves can actually fully remove it from a processor, like they did with the processors they sold to the NSA. Looks interesting, source please. permalink fedilink source parent hideshow 2 child comments replies: [–] mimichuu_@lemm.ee 2 points 3 years ago* Okay I did some research and I was wrong. There is no confirmation Intel specifically removed the IME from NSA's PCs. It's just that some reverse engineers found a flag that supposedly disables it, and their theory is that it was meant for the NSA. https://www.notebookcheck.net/Eureka-The-Intel-Management-Engine-can-finally-be-disabled-thanks-to-the-NSA.245922.0.html I believe this is the switch System76 and Purism turn off, but as I said, since the blob is still there, we can't be sure that switch actually works or if it's just a trap. permalink fedilink source parent
[–] KindredAffiliate@lemmy.world 3 points 3 years ago (1 child) If you want to disable Intel Management Engine, the always-on backdoor built into every Intel CPU and/or want as much software as possible on your machine to be FOSS Also it boots much faster than most stock bios. permalink fedilink source parent hideshow 2 child comments replies: [–] a_statistician@lemmy.ml 0 points 3 years ago (1 child) Is there a similar issue with AMD? permalink fedilink source parent hideshow 2 child comments replies: [–] mimichuu_@lemm.ee 0 points 3 years ago (1 child) Not that I know of, AMD is also soon going to make their own FOSS bios with OpenSIL so they're generally the better option if you're a privacy/libre software junkie. permalink fedilink source parent hideshow 2 child comments replies: [–] pitajellybug@lemmy.world 1 point 3 years ago (1 child) As far as I know, OpenSIL stands for Open Silicon Initialization Library, and handles only the hardware initialisation part of the boot process. It may still require loading binary blobs like the Platform Security Processor (PSP), which is AMD's version of Intel Management Engine permalink fedilink source parent hideshow 2 child comments replies: [–] mimichuu_@lemm.ee 2 points 3 years ago (1 child) PSP is not the same thing as IME. Not even close. PSP doesn't even have network access, much less remote computer control like the IME. Still proprietary, but if OpenSIL allows you to turn it off then we might actually be able to run a fully 100% libre modern desktop computer which is honestly pretty awesome. permalink fedilink source parent hideshow 2 child comments replies: [–] spez@sh.itjust.works 1 point 3 years ago (1 child) Things like these and the overall general improvements to linux on a daily basis get me excited for a time when I could buy a Framework laptop with coreboot running linux without issues. Also no backdoors for big brother. permalink fedilink source parent hideshow 2 child comments replies: [–] mimichuu_@lemm.ee 0 points 3 years ago (1 child) Coreboot doesn't disable the IME by the way. It just gets rid of some of it's functionality blobs and sends a signal to it telling it to please disable itself. No one knows if that signal actually works. Only Intel themselves can actually fully remove it from a processor, like they did with the processors they sold to the NSA. permalink fedilink source parent hideshow 2 child comments replies: [–] spez@sh.itjust.works 1 point 3 years ago* (1 child) Only Intel themselves can actually fully remove it from a processor, like they did with the processors they sold to the NSA. Looks interesting, source please. permalink fedilink source parent hideshow 2 child comments replies: [–] mimichuu_@lemm.ee 2 points 3 years ago* Okay I did some research and I was wrong. There is no confirmation Intel specifically removed the IME from NSA's PCs. It's just that some reverse engineers found a flag that supposedly disables it, and their theory is that it was meant for the NSA. https://www.notebookcheck.net/Eureka-The-Intel-Management-Engine-can-finally-be-disabled-thanks-to-the-NSA.245922.0.html I believe this is the switch System76 and Purism turn off, but as I said, since the blob is still there, we can't be sure that switch actually works or if it's just a trap. permalink fedilink source parent
[–] a_statistician@lemmy.ml 0 points 3 years ago (1 child) Is there a similar issue with AMD? permalink fedilink source parent hideshow 2 child comments replies: [–] mimichuu_@lemm.ee 0 points 3 years ago (1 child) Not that I know of, AMD is also soon going to make their own FOSS bios with OpenSIL so they're generally the better option if you're a privacy/libre software junkie. permalink fedilink source parent hideshow 2 child comments replies: [–] pitajellybug@lemmy.world 1 point 3 years ago (1 child) As far as I know, OpenSIL stands for Open Silicon Initialization Library, and handles only the hardware initialisation part of the boot process. It may still require loading binary blobs like the Platform Security Processor (PSP), which is AMD's version of Intel Management Engine permalink fedilink source parent hideshow 2 child comments replies: [–] mimichuu_@lemm.ee 2 points 3 years ago (1 child) PSP is not the same thing as IME. Not even close. PSP doesn't even have network access, much less remote computer control like the IME. Still proprietary, but if OpenSIL allows you to turn it off then we might actually be able to run a fully 100% libre modern desktop computer which is honestly pretty awesome. permalink fedilink source parent hideshow 2 child comments replies: [–] spez@sh.itjust.works 1 point 3 years ago (1 child) Things like these and the overall general improvements to linux on a daily basis get me excited for a time when I could buy a Framework laptop with coreboot running linux without issues. Also no backdoors for big brother. permalink fedilink source parent hideshow 2 child comments replies: [–] mimichuu_@lemm.ee 0 points 3 years ago (1 child) Coreboot doesn't disable the IME by the way. It just gets rid of some of it's functionality blobs and sends a signal to it telling it to please disable itself. No one knows if that signal actually works. Only Intel themselves can actually fully remove it from a processor, like they did with the processors they sold to the NSA. permalink fedilink source parent hideshow 2 child comments replies: [–] spez@sh.itjust.works 1 point 3 years ago* (1 child) Only Intel themselves can actually fully remove it from a processor, like they did with the processors they sold to the NSA. Looks interesting, source please. permalink fedilink source parent hideshow 2 child comments replies: [–] mimichuu_@lemm.ee 2 points 3 years ago* Okay I did some research and I was wrong. There is no confirmation Intel specifically removed the IME from NSA's PCs. It's just that some reverse engineers found a flag that supposedly disables it, and their theory is that it was meant for the NSA. https://www.notebookcheck.net/Eureka-The-Intel-Management-Engine-can-finally-be-disabled-thanks-to-the-NSA.245922.0.html I believe this is the switch System76 and Purism turn off, but as I said, since the blob is still there, we can't be sure that switch actually works or if it's just a trap. permalink fedilink source parent
[–] mimichuu_@lemm.ee 0 points 3 years ago (1 child) Not that I know of, AMD is also soon going to make their own FOSS bios with OpenSIL so they're generally the better option if you're a privacy/libre software junkie. permalink fedilink source parent hideshow 2 child comments replies: [–] pitajellybug@lemmy.world 1 point 3 years ago (1 child) As far as I know, OpenSIL stands for Open Silicon Initialization Library, and handles only the hardware initialisation part of the boot process. It may still require loading binary blobs like the Platform Security Processor (PSP), which is AMD's version of Intel Management Engine permalink fedilink source parent hideshow 2 child comments replies: [–] mimichuu_@lemm.ee 2 points 3 years ago (1 child) PSP is not the same thing as IME. Not even close. PSP doesn't even have network access, much less remote computer control like the IME. Still proprietary, but if OpenSIL allows you to turn it off then we might actually be able to run a fully 100% libre modern desktop computer which is honestly pretty awesome. permalink fedilink source parent hideshow 2 child comments replies: [–] spez@sh.itjust.works 1 point 3 years ago (1 child) Things like these and the overall general improvements to linux on a daily basis get me excited for a time when I could buy a Framework laptop with coreboot running linux without issues. Also no backdoors for big brother. permalink fedilink source parent hideshow 2 child comments replies: [–] mimichuu_@lemm.ee 0 points 3 years ago (1 child) Coreboot doesn't disable the IME by the way. It just gets rid of some of it's functionality blobs and sends a signal to it telling it to please disable itself. No one knows if that signal actually works. Only Intel themselves can actually fully remove it from a processor, like they did with the processors they sold to the NSA. permalink fedilink source parent hideshow 2 child comments replies: [–] spez@sh.itjust.works 1 point 3 years ago* (1 child) Only Intel themselves can actually fully remove it from a processor, like they did with the processors they sold to the NSA. Looks interesting, source please. permalink fedilink source parent hideshow 2 child comments replies: [–] mimichuu_@lemm.ee 2 points 3 years ago* Okay I did some research and I was wrong. There is no confirmation Intel specifically removed the IME from NSA's PCs. It's just that some reverse engineers found a flag that supposedly disables it, and their theory is that it was meant for the NSA. https://www.notebookcheck.net/Eureka-The-Intel-Management-Engine-can-finally-be-disabled-thanks-to-the-NSA.245922.0.html I believe this is the switch System76 and Purism turn off, but as I said, since the blob is still there, we can't be sure that switch actually works or if it's just a trap. permalink fedilink source parent
[–] pitajellybug@lemmy.world 1 point 3 years ago (1 child) As far as I know, OpenSIL stands for Open Silicon Initialization Library, and handles only the hardware initialisation part of the boot process. It may still require loading binary blobs like the Platform Security Processor (PSP), which is AMD's version of Intel Management Engine permalink fedilink source parent hideshow 2 child comments replies: [–] mimichuu_@lemm.ee 2 points 3 years ago (1 child) PSP is not the same thing as IME. Not even close. PSP doesn't even have network access, much less remote computer control like the IME. Still proprietary, but if OpenSIL allows you to turn it off then we might actually be able to run a fully 100% libre modern desktop computer which is honestly pretty awesome. permalink fedilink source parent hideshow 2 child comments replies: [–] spez@sh.itjust.works 1 point 3 years ago (1 child) Things like these and the overall general improvements to linux on a daily basis get me excited for a time when I could buy a Framework laptop with coreboot running linux without issues. Also no backdoors for big brother. permalink fedilink source parent hideshow 2 child comments replies: [–] mimichuu_@lemm.ee 0 points 3 years ago (1 child) Coreboot doesn't disable the IME by the way. It just gets rid of some of it's functionality blobs and sends a signal to it telling it to please disable itself. No one knows if that signal actually works. Only Intel themselves can actually fully remove it from a processor, like they did with the processors they sold to the NSA. permalink fedilink source parent hideshow 2 child comments replies: [–] spez@sh.itjust.works 1 point 3 years ago* (1 child) Only Intel themselves can actually fully remove it from a processor, like they did with the processors they sold to the NSA. Looks interesting, source please. permalink fedilink source parent hideshow 2 child comments replies: [–] mimichuu_@lemm.ee 2 points 3 years ago* Okay I did some research and I was wrong. There is no confirmation Intel specifically removed the IME from NSA's PCs. It's just that some reverse engineers found a flag that supposedly disables it, and their theory is that it was meant for the NSA. https://www.notebookcheck.net/Eureka-The-Intel-Management-Engine-can-finally-be-disabled-thanks-to-the-NSA.245922.0.html I believe this is the switch System76 and Purism turn off, but as I said, since the blob is still there, we can't be sure that switch actually works or if it's just a trap. permalink fedilink source parent
[–] mimichuu_@lemm.ee 2 points 3 years ago (1 child) PSP is not the same thing as IME. Not even close. PSP doesn't even have network access, much less remote computer control like the IME. Still proprietary, but if OpenSIL allows you to turn it off then we might actually be able to run a fully 100% libre modern desktop computer which is honestly pretty awesome. permalink fedilink source parent hideshow 2 child comments replies: [–] spez@sh.itjust.works 1 point 3 years ago (1 child) Things like these and the overall general improvements to linux on a daily basis get me excited for a time when I could buy a Framework laptop with coreboot running linux without issues. Also no backdoors for big brother. permalink fedilink source parent hideshow 2 child comments replies: [–] mimichuu_@lemm.ee 0 points 3 years ago (1 child) Coreboot doesn't disable the IME by the way. It just gets rid of some of it's functionality blobs and sends a signal to it telling it to please disable itself. No one knows if that signal actually works. Only Intel themselves can actually fully remove it from a processor, like they did with the processors they sold to the NSA. permalink fedilink source parent hideshow 2 child comments replies: [–] spez@sh.itjust.works 1 point 3 years ago* (1 child) Only Intel themselves can actually fully remove it from a processor, like they did with the processors they sold to the NSA. Looks interesting, source please. permalink fedilink source parent hideshow 2 child comments replies: [–] mimichuu_@lemm.ee 2 points 3 years ago* Okay I did some research and I was wrong. There is no confirmation Intel specifically removed the IME from NSA's PCs. It's just that some reverse engineers found a flag that supposedly disables it, and their theory is that it was meant for the NSA. https://www.notebookcheck.net/Eureka-The-Intel-Management-Engine-can-finally-be-disabled-thanks-to-the-NSA.245922.0.html I believe this is the switch System76 and Purism turn off, but as I said, since the blob is still there, we can't be sure that switch actually works or if it's just a trap. permalink fedilink source parent
[–] spez@sh.itjust.works 1 point 3 years ago (1 child) Things like these and the overall general improvements to linux on a daily basis get me excited for a time when I could buy a Framework laptop with coreboot running linux without issues. Also no backdoors for big brother. permalink fedilink source parent hideshow 2 child comments replies: [–] mimichuu_@lemm.ee 0 points 3 years ago (1 child) Coreboot doesn't disable the IME by the way. It just gets rid of some of it's functionality blobs and sends a signal to it telling it to please disable itself. No one knows if that signal actually works. Only Intel themselves can actually fully remove it from a processor, like they did with the processors they sold to the NSA. permalink fedilink source parent hideshow 2 child comments replies: [–] spez@sh.itjust.works 1 point 3 years ago* (1 child) Only Intel themselves can actually fully remove it from a processor, like they did with the processors they sold to the NSA. Looks interesting, source please. permalink fedilink source parent hideshow 2 child comments replies: [–] mimichuu_@lemm.ee 2 points 3 years ago* Okay I did some research and I was wrong. There is no confirmation Intel specifically removed the IME from NSA's PCs. It's just that some reverse engineers found a flag that supposedly disables it, and their theory is that it was meant for the NSA. https://www.notebookcheck.net/Eureka-The-Intel-Management-Engine-can-finally-be-disabled-thanks-to-the-NSA.245922.0.html I believe this is the switch System76 and Purism turn off, but as I said, since the blob is still there, we can't be sure that switch actually works or if it's just a trap. permalink fedilink source parent
[–] mimichuu_@lemm.ee 0 points 3 years ago (1 child) Coreboot doesn't disable the IME by the way. It just gets rid of some of it's functionality blobs and sends a signal to it telling it to please disable itself. No one knows if that signal actually works. Only Intel themselves can actually fully remove it from a processor, like they did with the processors they sold to the NSA. permalink fedilink source parent hideshow 2 child comments replies: [–] spez@sh.itjust.works 1 point 3 years ago* (1 child) Only Intel themselves can actually fully remove it from a processor, like they did with the processors they sold to the NSA. Looks interesting, source please. permalink fedilink source parent hideshow 2 child comments replies: [–] mimichuu_@lemm.ee 2 points 3 years ago* Okay I did some research and I was wrong. There is no confirmation Intel specifically removed the IME from NSA's PCs. It's just that some reverse engineers found a flag that supposedly disables it, and their theory is that it was meant for the NSA. https://www.notebookcheck.net/Eureka-The-Intel-Management-Engine-can-finally-be-disabled-thanks-to-the-NSA.245922.0.html I believe this is the switch System76 and Purism turn off, but as I said, since the blob is still there, we can't be sure that switch actually works or if it's just a trap. permalink fedilink source parent
[–] spez@sh.itjust.works 1 point 3 years ago* (1 child) Only Intel themselves can actually fully remove it from a processor, like they did with the processors they sold to the NSA. Looks interesting, source please. permalink fedilink source parent hideshow 2 child comments replies: [–] mimichuu_@lemm.ee 2 points 3 years ago* Okay I did some research and I was wrong. There is no confirmation Intel specifically removed the IME from NSA's PCs. It's just that some reverse engineers found a flag that supposedly disables it, and their theory is that it was meant for the NSA. https://www.notebookcheck.net/Eureka-The-Intel-Management-Engine-can-finally-be-disabled-thanks-to-the-NSA.245922.0.html I believe this is the switch System76 and Purism turn off, but as I said, since the blob is still there, we can't be sure that switch actually works or if it's just a trap. permalink fedilink source parent
[–] mimichuu_@lemm.ee 2 points 3 years ago* Okay I did some research and I was wrong. There is no confirmation Intel specifically removed the IME from NSA's PCs. It's just that some reverse engineers found a flag that supposedly disables it, and their theory is that it was meant for the NSA. https://www.notebookcheck.net/Eureka-The-Intel-Management-Engine-can-finally-be-disabled-thanks-to-the-NSA.245922.0.html I believe this is the switch System76 and Purism turn off, but as I said, since the blob is still there, we can't be sure that switch actually works or if it's just a trap. permalink fedilink source parent