How big brother and big media can put the Internet genie back in the bottle.
fourmilab.ch
fourmilab.ch
The author foresees a future where everyone has to use personal certificates to communicate, which has various pros and cons - while enabling commerce, it could be the end of anonymity. He didn't anticipate a world where the government is simply hoovering up all the plaintext.
Microsoft being the runner-up in the tablet market, I find the move puzzling. What do they have to gain? Why would vendors want to lock themselves in the hands of Microsoft, given MS's past behavior?
More puzzling yet: what is the force in the Microsoft DNA that prompts them to systematically return to this kind of anti-competitive behaviors as soon as they get a chance?
The majority of people don't care. If the people don't care, why would a company do it?
My father on the other hand (who told me I was nuts back in the 90's when I explained how Linux/OSS would change everything) still clings to Windows even though it's a major source of frustration for my folks. I would even raise the age you posited, as I am in my early 30's (though it could just be that I'm immature).
I disagree with your assertion that the war for mobile is won, however. I think MS is down, but certainly not out. If the last 10 years are any indication, things can turn around in the blink of an eye.
"Only the paranoid survive"?
> Consequently, a trusted computing platform must validate the signature of an operating system before booting it. Operating systems not certified as implementing all the requirements of Trusted Computing will not be issued certificates, and may not be booted on such systems.
This has already happened with Windows 8 verified hardware. If you want to run another OS, you (or rather, the OS maintainers) have to pay the $99 Microsoft (ed: VeriSign, see below) tax to get a Microsoft-signed bootloader and kernel. (Fedora has already done this.) A decent write-up is here with some comments from Linus: http://www.zdnet.com/blog/open-source/linus-torvalds-on-wind... It's kind of disturbing when the main reassurance is "Hackers will get around it. Probably."
No. While that is an option -- if you want to use Secure Boot -- MS is requiring certified x86 machines to allow disabling Secure Boot entirely. Does that make it more difficult to install? Marginally, yes; it adds additional steps. Does it mean that you have to jump through the signing hoops? Absolutely not.
That said, the "For now." is fearmongering. It's very possible that MS could change things, but that doesn't mean we should make that assumption -- that's just FUD. There are plenty of legitimate things to gripe about around the Secure Boot stuff, but potential future changes to the policies aren't high on the list.
Similarily, on x86 you have two inhibiting factors: old systems without UEFI+secureboot that can run windows 8, and new systems that have to run older windows versions for some reasons (business requirements).
In a couple of years, there are only secureboot-capable Windows versions out there (and still relevant), and only secureboot-capable systems to run windows 10 on. That's a much more comfortable situation to pull the plug on non-secureboot boot.
When Microsoft claims Linux violates their patents, that it lacks the level of service companies require or that it destroys value, it is FUD. Microsoft does it very well.
But when we raise the possibility Microsoft will act in its best interest in the future (which is to block competition) I'd argue it would be a fair extrapolation from previous behavior. Microsoft consistently engages in anti-competitive behavior and it would be naïve to expect a sudden surge of morality from its top executives.
> I'd say saying it's FUD is playing for time.
Last I heard the no-images-except-signed ones was for for ARM devices only. Did MS just put this into x86? Can you turn it off in the BIOS?
If ever.
The Microsoft requirements are very vague on this point, if early hardware is indication, disabling it could be quite complicated and error prone, IE having to re flash the firmware.
The biggest problem IMO is Microsoft is completely free to change this requirement at any time, and with stuff like ARM already being mandated as having no way to disable secure boot, or load keys, I don't think this is particularly far fetched.
Also consider the fact they never mandated having a way to disable it previously, until there was a massive outcry.