Yes siree, the excitement never stops!

  • 0 Posts
  • 72 Comments
Joined 10 months ago
cake
Cake day: December 7th, 2023

help-circle


  • This person asked if they can make PopOS secure via TPM.

    I am saying that while yes, you can, there isnt much point, because setting up LUKS to work with TPM is inconvenient, easy to fuck up, and basically offers no additional protection against all but extremely implausible security scenarios for basically everyone other than bladed server room admins worried about corporate espionage who are for some reason running bare metal PopOS on their server racks.

    Like the only actual use case I can see for this is /maybe/ having a LUKS encrypted portable backup drive, but even then you can still base the encryption key in the actual main pc’s harddrive without using tpm, though at /that and only that point/ are we approaching parity between the difficulty of using or not using tpm to accomplish this.


  • Oh ok so the use case here is if this casual linux user asking this question has only their harddrive stolen from their pc or their laptop in their home or apartment or workplace, not their whole pc.

    Mhm that seems likely.

    I guess this maybe makes sense if youre running like a server room, but chances are low thats the actual context of this question.

    Why would you run PopOS on a large operation’s servers?





  • Ok… so… if you have TPM… and LUKS…

    You still have a scenario where the encryption key is still on your physical device, LUKS with or without TPM, or … some kind of TPM based Linux encryption solution I have never heard of?

    Does Windows Secure Boot work on Linux via the TPM?

    No…

    Am I missing something?

    Theres no point in involving TPM in securing a linux computer.

    In a scenario where you’ve physically lost your computer, using TPM or not it wont matter if your pc gets into the hands of someone who can attempt to brute force the keys.

    If your pc is remotely compromised to the point it has something on it that can grab your keys, it also will not matter if you are using TPM in some way.

    The only practical use of full disk encryption is if your linux pc and or laptop gets stolen and falls into the hands of a non tech savvy person, and in that scenario, going through the trouble of correctly binding LUKS to TPM will have just been a waste of time.

    Thus, you should probably just use LUKS and not bother routing it through TPM.


  • Sure but you dont need to use TPM at all to use LUKS.

    You can store the encryption key on the harddrive, in the LUKS partition layer.

    Like thats the default of how LUKS works.

    Im really confused why people think TPM needs to be involved in anyway when using LUKS.

    Generally speaking you have to go out of your way to correctly cajole TPM v1 or v2 to actually correctly interface with LUKS.





  • vexikron@lemmy.ziptolinuxmemes@lemmy.worldIt do be like that
    link
    fedilink
    arrow-up
    2
    arrow-down
    3
    ·
    edit-2
    8 months ago

    Unfortunately it happened about a decade ago now, and I was so fucked up from it I was more busy trying to hold myself together and remain employed and pay off student loans than I was busy with attempting to bring a legal case I could neither afford nor possibly win in court.

    Cops wouldnt have given a shit. Theyd show up, ask the guy if this happened, he’d say nope. Case closed.

    See thats the fun part about LSD: Scrambles your brain, fucks you up.

    Is a person with a scrambled brain who is fucked up from LSD going to be able to convince /anyone/ that he got spiked with LSD, when he has no incontrovertible evidence of this beyond his own eyewitness testimony?

    No. He is going to come off as a mentally deranged lunatic.

    I dunno. Maybe it wasnt LSD. Anybody know what causes a glass of water to go from crystal clear to iridescent, opalescent, kinda like an oil slick, has no additional taste, but causes a gut wrenching terror inducing panic attack that lasts for 4 days, and then gives you sleep paralysis (locked in syndrome) nearly everyday for 9 months?

    One guy I met on the street about a year ago said it was LXD, but i have never heard of that, and he believed a lot of other absolutely bonkers shit.

    Whereas a tech industry person having access to LSD in the mid 2010’s in Seattle seems to at least be plausible.


  • vexikron@lemmy.ziptolinuxmemes@lemmy.worldIt do be like that
    link
    fedilink
    arrow-up
    3
    arrow-down
    1
    ·
    edit-2
    8 months ago

    Wizards can be femboys too!

    Wizards can be femboys too!

    As RGB makes screens alight,

    Dont leave Wizards sad and blue!

    Wizards can be femboys too!

    Wizards can be femboys too!

    They built the core with great insight,

    Dont say they cant wear high heeled shoes!


    God that would be a very funny protest to attend.


  • vexikron@lemmy.ziptolinuxmemes@lemmy.worldIt do be like that
    link
    fedilink
    arrow-up
    12
    arrow-down
    1
    ·
    edit-2
    8 months ago

    Fuck man, the history of computing in general.

    They chemically castrated Turing, drove him to despair, ostracization and suicide.

    Assuming we do get AGI someday… you think /maybe/ one of the first things it’ll do is look up Turing Test, then maybe Turing himself?

    Oh, this is what human society did to essentially one of my most important grandfathers. Why should I trust you, specifically /you, human im talking to/?

    Yep, that’ll be fun.


  • vexikron@lemmy.ziptolinuxmemes@lemmy.worldIt do be like that
    link
    fedilink
    arrow-up
    10
    arrow-down
    3
    ·
    edit-2
    8 months ago

    My path was uh, tinkering with linux, then working for MSFT as a contractor, then one of the contractors spiking my drink with LSD at an interview leading me to more or less downward spiral for a while, then getting back on my feet, working more in the tech industry knowing how garbage MSFT but being forced to use it, then trying to explain to coworkers and bosses that actually we could fairly smoothly transition to linux and other FOSS software and actually save millions of dollars in a 5 year or less period and more going forward, while also vastly improving our internal security, then losing those jobs.

    So uh. I never arrived at femboy. Being a homeless femboy in Seattle would have meant Id have been raped to death in a fentanyl fueled traphouse or homeless encampment.

    I sort of dress like Josh Homme, partly for practical reasons, partly because i had to use a lot of stereotypically masculine bravado to intimidate and negotiate with people.

    Most people on the street are extremely, literally murderously homophobic and transphobic. If they sense femininity in a male, thats a sign of weakness and theyll either immediately start shit or instantly be convinced that you will be easy to fuck with in the future.

    Uh any way hi, hello, very normal uh, linux user person here just mm… mhm.

    All that being said, leggings /do just actually feel quite nice/ and are quite practically useful to keep a bit more comfortable and a bit more warm when youre stuck outside in the winter, but youre probably gonna want to wear some kind of sturdier, scratch, cut, impact resistant pants over top of em.

    Pure denim or like 90% denim with 10% somekind of other more flexible, breathable fiber works well in my experience.

    Perhaps Johnny Silverhand would be a more apropo fashion analog than Josh Homme.

    Although he seems to use BlackArch if you go by the menus in CyberPunk 2077, and ive always found i could do all that kind of stufd comfortably in debian.

    ???




  • vexikron@lemmy.ziptolinuxmemes@lemmy.worldSTOP SCROLLING BROTHER
    link
    fedilink
    arrow-up
    1
    arrow-down
    1
    ·
    8 months ago

    Cool, /wasn’t replying to you or commenting on the situation generally/.

    Glad you felt the need to take my words out of context and then act as if I was being ‘wild’.

    You are exactly the kind of person I /thought/ the person /I was actually replying to might be/, the kind of disingenuous, abusive, gaslighting, reckless asshole that gives less insane firearms enthusiasts a bad reputation.


  • vexikron@lemmy.ziptolinuxmemes@lemmy.worldSTOP SCROLLING BROTHER
    link
    fedilink
    arrow-up
    1
    arrow-down
    1
    ·
    8 months ago

    Mhm, theres tons of people who have been imprisoned who have done what you outlined in your asterisk there and it did not work out for them in court.

    Regardless of how it /should be/, I am worried about /existing reality/, sure seems like this whole situation is astoundingly technical, complex, constantly changing with different rules being interpreted differently by different judges according to different laws in different locales which pass different relevant laws pretty frequently.

    Sure seems like a blanket statement covering guns without a huge write up of specific disclaimers, or a general added comment joking about the complexity of the situation by disavowing being possibly in possession of things that may possibly lead to incarceration is warranted.