Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

TPM used for secure boot, (hypothetically) used to block installing non-windows OS, means the owner is forced to using an OS that has telemetry.

That is the argument I suppose OP was making. The secure boot locking is hypothetical, but it is often feared. I get why, because it seems like something Microsoft would love to do.



TPM is used for measured boot, to not release a secret/operate on a key if measurements do not match.

It doesn't block you from running anything.


Dang your right.

I figured the TPM was part of secure-boot validation. But given some extra thought, it is clear that verifying a signature does not require any secrets.


>It doesn't block you from running anything.

Yet




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: