225 karma · joined May 19, 2011
Sadly only firefox and ie can do this for years
Now ARM boot restrictions from Microsoft directly affects me, as soon i can't buy any ARM based machine, given the way the markets work. And in the future it is a big possibility that i can't buy any other PC and put any OS that i like without pay directly or indirectly money to Microsoft. And i can see some foreign governments to use this technology to control the OS that her citizens runs, and install backdoors.
So yes UEFI secure boot is a treat to my freedom and not only my freedom to run the OS of my choice.
Of course, i totally agree with you on that the reall reasons is for MS and hardware manufactures is trying to control MY hardware.
a. User turn ON a switch to enter "OS Install mode"
b. User install the OS of his choice. During installation the installer read a motherboard specific key from the BIOS and sign his bootloader/kernel/drivers using that key.
c. User turn OFF the "OS installation switch". System is save (at least as long as the OS in choice is not a Redmnond one)
Is there any fundamental problems with this approach?
I personaly will never buy any machine, as soon as i can, as soon as it is still legal, with any "secure" feature. My machine is mine, not to the original manufacture, not to Microsoft or to Redhat or to anyone that believe that it is theirs. Even that i know that i live in a great democracy, i have nothing to hide, and my government is my good friend