edit: How will it work in practice? Say I make some Open Source messaging app. Now I need to add some/the government approved algorithm to detect malicious content and then feed this to some government instance. I guess the government will provide me some key/certificate to ensure that my reports of malicious content are legit. But how will this work if this is public, the signing stuff can be abused to file false reports. I have no clue how this will work in practice. The death of Open Source email, chat and messaging apps?
For three years (2016–2019), open-source software couldn't be certified, but since 2019, they consider any 'major modifications' of the software by any user, including the end-user, a reason to certify that forked software. So you can use and modify open-source software for your POS, with that condition if you want to use it for professional reasons. (though I have no idea how it's enforced)
Swedish info; if yo have the same for from france I would be interested. It's not easy to translate the PDF:s into something useable sadly.
Webpage about this process: https://skatteverket.se/foretag/drivaforetag/kassaregister.4...
Cryptographic control unit: https://www4.skatteverket.se/download/18.7d4d4f0515244e542f5...
Requirements of the POS: https://www4.skatteverket.se/download/18.566df4d617d171254ec...
Not if you compile it yourself. Clearly bullish for gentoo and arch users.
Computers are going to become more like cell phones with locked bootloaders. TPM is already a mandatory feature thanks to Windows 11.
No, but they might ban "bespoke" devices.[0] Maybe you're smart and brave enough to build and maintain your own illegal device, but good luck trying to persuade other people to do the same so that you can communicate with them securely online. Also, the government might force ISPs to block access to devices that don't pass remote attestation checks.
[0] https://cyberlaw.stanford.edu/blog/2023/02/my-comment-uk-gov...
Years later, we find out the mind crime courts use ~IRC over SSL~ (edit: emacs org mode over sshfs) to organize their docket, and they eventually have to give RMS access to a libre terminal from his jail cell, so he can help them finish his own processing.
At this point, the backstory is established and our story begins…
Of course it doesn’t really matter the few big companies which control 99%+ of the market will end up complying..
Seems like EU is set on reenacting 1984 for some bizarre reason…
[0] https://matrix.org/blog/2022/03/25/interoperability-without-...
[1] https://goodereader.com/blog/tablet-slates/apple-will-allow-...
Room 641A was leaked in 3 years. And that was one room with one domestic telecom provider. https://en.m.wikipedia.org/wiki/Room_641A
To keep a secret that spans supply chains, across multiple companies, many with substantial international ownership and/or interests? Not gonna happen.
From a CAP theoretic point of view, the info is Available, but there is still a hefty Partition in that there is a significant degree of the population that isn't Consistent on this fact.
I think the same will likely be true for legally-enforced client side scanning. It is already the case that few people simultaneously have both the knowledge and inclination to "jailbreak" their phones. Throw in stiff legal penalties for doing so and even fewer people will do it. A few people still will, but if most people don't then the ban will still be effective even though it's possible to squeeze through the cracks. In both cases, instructions for circumventing the law may be found online by anybody that cares to look. But most people won't.
I don't think it's a good comparison. It's pretty much unenforceable outside of apple cellphones and very hard to detect.
Yes, and it mostly works! Bans on piracy work well already, most people don't torrent games or movies. And locked down platforms exist, demonstrating the technical feasibility of even greater control. Software piracy in particular is much more difficult on the sort of computers that manufactures deliberately design to be locked down, like modern video game consoles and iOS devices. It is still possible, but has been made sufficiently difficult to stop the majority of the population from doing it.
Piracy has been mitigated through better services at competitive prices offered by the likes of Steam, iTunes, Spotify or how Netflix used to be and not at all by law enforcement.
As long as that remains permitted by Apple/Sony and your government, yes. If either of them decide to ban Plex or VLC, it will become effectively impossible for most people with normal levels of motivation and technical know-how.
> You can install VLC or similar software on your iOS device and watch a downloaded mkv.
Presently, you can. And yet presently, relatively few people do.
These sort of bans aren't ever 100% effective; you'll probably always be able to squeeze through the cracks if you try hard enough. That guy in Japan managed to make a homemade shotgun that was good enough to kill the ex-PM, but the simple fact remains that gun control generally works in Japan. And so do anti-piracy measures even today, before the full technical means of authoritarian control have even been brought to bear.
Locked bootloaders exist and mostly work. The fact that you can presently buy computers without locked bootloaders doesn't change the fact that the technical means of control have been demonstrated to work. Political policy is all that protects us today.
And as far as I know - XBox One, Series X and PS5 haven't been jailbroken at all.
> yet
Key word.
The technical means for that sort of thing have also been demonstrated. The only thing holding us back from a highly effective digitally-enabled police state is political policy. Software piracy is presently easy on some platforms, but much more difficult on others. With the right political impetus, those controls could be extended to the presently free platforms. "Just buy an Android" doesn't work when the law requires Google to implement the same sort of controls as iOS. "Just buy a PC" stops working when the government permits or even compels Microsoft, Dell, etc to implement locked bootloaders like a Sony Playstation and only permit applications to run if they've been signed by an organization accountable to the law.
More here
https://mullvad.net/en/blog/2023/2/1/eu-chat-control-law-wil...