[OLPC-devel] Secure BIOS on the OLPC

Ronald G Minnich rminnich at lanl.gov
Mon Aug 28 23:31:11 EDT 2006


don't get me wrong, I like the direction this is going. In fact, if you 
pull this off, we'll have a very secure bios update picture, far more 
secure than most systems, which depend on 'security through obscurity' 
-- they hide the WE# on a GPIO, as if the bad guys can't figure this out 
in a few seconds (there are order 48 GPIOs, just start inverting them to 
find the one that controls it -- we've had to do this here -- it takes 
no time at all). The largest vendors actually use this "security" feature.

Anyway  -- score one more for open sources bioses!

ron



More information about the Devel mailing list