ITX Motherboard with an Elbrus CPU
blog.jmdawson.co.uk
blog.jmdawson.co.uk
I very much hope to be able to buy one at some point.
The performance is probably ~5 years behind industry standard and price is probably 5-20x more. But that's fine, when the only buyer is government agencies and military contractors.
And probably more than adequate for the kinds of applications you'd use this in. Military technology needs to be state-of-the-art for ruggedness and reliability, not performance.
For a similar example, look at the CPUs used in space missions: based on performance specs alone, the best ones would have been state-of-the-art in the 90s.
Yes, Intel chips aren't much faster now than they were 5 years ago. I vaguely remember reading on Anandtech that Haswell was the last generation that Intel was able to increase the IPC (instructions per cycle) by 15% over the previous generation, and nowadays the typical generational improvement is ~5%.
According to my calculations, that would mean that the latest generation of Intel chips would be ~27% faster than the Elbrus: (1 + 5%)^5 - 1
So unlike Transmeta, you can actually disable the x86 emulation and run native VLIW code on an Elbrus CPU? It's interesting. But I guess it's still not useful to independent developers in the FOSS community, it appears that MCST’s proprietary C/C++ compiler is the only compiler that can target the CPU.
What better chip to use than one that the Russian government assumes is only going to be used by loyal compatriots anyway? Anyway, that sounds like something a Russian spy would say, so make of it what you will.
I'd contemplate buying it if it had less binary blobs in it than an Intel or an AMD does. But maybe we don't have to go to Russia for that, as it feels like PC compliant ARM builds are going to be a thing soon.
wha-
Edit, there’s more info on other sites, it does look like the compiler cache? https://images.anandtech.com/doci/15823/VVolkonsky-RSCDays-2...
I have a few systems running 9front from CF. I also use CF cards in IDE adapters to replace spinning rust disks in retro systems. (edit: typo)
1. No price.
2. Bootloader is proprietary.
3. (less concerning) No performance data.
It's really hard to buy this as a security-focused open-source system without an open bootloader.
It reminds me of my Loongson 2F laptop powered by a Chinese MIPS processor, same model previously used by Richard Stallman. For a while (before Thinkpad X200), it was the go-to choice if one wanted a laptop with 100% free boot firmware and zero binary blob (the original boot firmware codebase is buggy and ancient, but with source, later GNU developers made it run GRUB 2). I got it just because it was an interesting non-x86 machine.
It's a bit disappointing that a would-be Russian equivalent couldn't do the same (an understandable problem, the designers of the board have no control over it), otherwise it'll also be a more hackable and interesting platform, at least for those who are fans of exotic non-x86 systems and don't care about price or performance.
I find this to be the most interesting fact of the blog post...I wish author could elaborate more.
Btw, couple months ago MCST established an official public forum for Elbrus users/partners/etc. Mostly in Russian, though most people there would understand English too. That is performance numbers - various Elbrus-es vs. i7 2600 - posted by a user there http://forum.elbrus.ru/viewtopic.php?f=38&t=6193
https://www.anandtech.com/show/15823/russias-elbrus-8cb-micr...
https://www.yumpu.com/en/document/read/54543367/the-elbrus-a...
So, a SPARC like CPU, but the use case appears to be running either native Elbrus OS (Linux) or x86-64 through some sort of optimized emulation.
"Direct execution of 20+ Operating Systems, including: MSDOS, Windows XP, 7, Linux, QNX, PS/2."
This seems to indicate the emulation is somewhat like what Apple is doing with the M1: https://images.anandtech.com/doci/15823/VVolkonsky-RSCDays-2...
The ECC RAM could make this a good candidate for ZFS.
I've subscribed to the CrowdSupply campaign: https://www.crowdsupply.com/sra-centr8/icepeakitx-elbrus-8cb
There is not a chance that they hope to make money on it.
Also, amusingly, I read "Fall detection sensor" as "Fail detection sensor" at first, and was really confused as to what that was. :P
It ram poorly on 386 machines, and wasn’t until the 486-66 that it was acceptable and the first Pentium (P6?) that I remember it being smooth.
It is also interesting to think that smart refrigerators and automobiles end up with significantly more capable processors and hardware than early desktops. 'Running Doom' turns into more a challenge of getting an operating system and a working C compiler onto the device than one of optimization.
I've often toyed with the thought of pushing the limits of the classic 2.5D FPS on modern hardware (without acceleration), pretty impractical being that most things have a GPU of some sort built-in at this point, but it would be interesting at least.
When GPUs became available it seems like everything kind of moved towards more 'true' 3D where everything became defined geometrically (QUAKE etc) rather than via sprites.
https://www.youtube.com/watch?t=3125&v=buWzWtXHimk&feature=y...
I don't think I've seen anyone do that in practice though, it might just have been that they had to put _something_ extra in the security features and just added whatever sensor wasn't listed yet.
Not said anywhere but the spec looks like this is a good fit for military or industrial control panels.
However, while it's often proposed as such, I don't think it's actually useful - thermal fault injection is a real threat, but I said "theoretical" since it's the least of your problems when the attacker has physical access - both clock and power fault injection are easier. Nevertheless, at least a countermeasure to thermal faults is reasonable if you are just protecting a smartcard where everything is on a single chip. On the other hand, for a computer motherboard, such a sensor looks pretty useless. The target is simply too large to be protected (unless you can seal the entire system in a box fitted with sensors like a hardware security module). But I guess it is still a theoretical security feature, thus it was listed as such despite its uselessness.
[0] https://eprint.iacr.org/2014/190.pdf
> [...] We further presentheating faults by operating the devices beyond their specified temperature ratings. The efficiency of this kind of attack is shown by a practical attack on an RSA implementation. Finally, we introduce data remanence attacks on AVR microcontrollers that exploit the Negative Bias Temperature Instability (NBTI) property of internal SRAM cells. We show howto recover parts of the internal memory and present first results on an ATmega162. The work encourages the awareness of temperature-based attacks that are known for years now but not well described in literature. It also serves as a starting point for further research investigations.
Buy a “security focused” computer where the compiler is not open source, and the CPU/ICs have not been decapped, imaged and analysed from a manufacturer with ties to the Russian government? No thank you.
I would not be surprised if there is a hardware Trojan in this machine.
If you want to avoid eavesdropping, it's probably best to avoid email altogether and use something designed for that purpose (like Signal). I don't see how you would get the effect you describe by using Yandex unless you did something like only ever emailing other Yandex accounts.
But my point is that email itself is an insecure technology, and not even Phil Zimmerman bothers with PGP [1]. If you want to avoid something like 5 Eyes eavesdropping with a Russian/Chinese/etc. email provider, at a minimum you probably won't be able to email anyone with a 5 Eyes-based email account, and even if you do that some fraction of your mails may still get hoovered up in transit somewhere else. Sticking to only emailing accounts on the same provider seems like the most "secure" implementation of this idea, but even that is suspect. The PRC hacked Gmail ten years ago, and it's not unreasonable to assume the NSA could have an APT in Yandex.
IMHO, this equipment really only helps with security concerns unique to the Russian government itself. Regular people in other countries have better options for their use-cases.
[1] https://www.vice.com/en/article/vvbw9a/even-the-inventor-of-...
Not that Im saying to get one of these or not. Just an idea why it might be interesting to prefer to give information to one country instead of another. (if you have the choice)
Given full access to your email they can do a lot of things that would cost you your job and potentially lead to criminal charges. Given that these governments are actively performing cyber crimes in your nation of residence why wouldn't they use you (and your credentials) as a stepping stone?
The risk is low but so is the risk of your own government going after you. Neither is zero.
Was presumably meant in reference to neighboring countries where Russia involves itself to the point where it would be wiser for a citizen of such a country to store their data in the West.
The U.S. is not a country fitting this definition by any stretch.
But even if it wasn't this whole argument is the good old "I don't have anything to hide" re-stated but for foreign powers. It goes fine until you end up with your piss tape.
is an extremely US-sided view.
Speaking to Russians, they'd tell you that they'd love to get along with the US, but that Americans only have 2 modes of operation i.e. be submissive to US like the EU is, (that certainly is the case with the EU as someone living there I can conform, just look at the weak EU response of the US pulling from the Iran Deal for example), or be an archenemy that needs to be vilified & threatened.
They'd tell you that NATO is threatening their borders & that the US would never tolerate Russian troop buildup in Mexico.
Take the 2016 US election as an example, everyone freaked out. Hardly anyone ever mentioned that the US started meddling in Russian elections more than two decades earlier.
Granted, I think the current 'setup' with the US being the archenemy suits the Russian government just fine for domestic audiences, which is especially ironic as it actively hurts real, independent, democratic movements.
It also suits US defense contractors, 'cyber' experts and various grifters offering to combat misinformation.
the US is on the left, Russia is on the right.
[0] https://pics.me.me/our-blessed-homeland-their-barbarous-wast...
That's why the author wasn't able to obtain one before: they simply never bothered releasing it for non-government use.
AFAICT, this has much less documentation than the Itanium, so even from a tinker's perspective, this is really uninteresting.
No, it's clearly a Russian national security project around supply chain security. IIRC, while the US is pretty good on the processor front, they have similar concerns around other ICs and components.