*** atk has quit IRC | 00:16 | |
*** atk has joined #maemo | 00:16 | |
*** atk is now known as t- | 00:17 | |
*** t- is now known as Arch-TK | 00:21 | |
*** Arch-TK is now known as t- | 00:21 | |
*** t- is now known as atk | 00:29 | |
*** luke-jr has quit IRC | 00:33 | |
*** err0r3o3_ has quit IRC | 00:56 | |
*** err0r3o3 has joined #maemo | 00:59 | |
*** xy2_ has quit IRC | 01:03 | |
*** Pali has quit IRC | 01:24 | |
*** florian has quit IRC | 01:45 | |
*** xorly has quit IRC | 02:01 | |
*** jrayhawk has quit IRC | 02:20 | |
*** jrayhawk has joined #maemo | 02:20 | |
*** Kabouik_ has quit IRC | 02:22 | |
*** Kabouik_ has joined #maemo | 02:26 | |
*** pagurus has quit IRC | 02:27 | |
*** pagurus has joined #maemo | 02:28 | |
*** luke-jr has joined #maemo | 02:46 | |
*** Kabouik_ has quit IRC | 03:46 | |
*** Kabouik_ has joined #maemo | 03:46 | |
*** LauRoman has quit IRC | 03:49 | |
*** luke-jr has quit IRC | 03:57 | |
*** frals has quit IRC | 04:04 | |
*** yosafbridge has quit IRC | 04:14 | |
*** yosafbridge has joined #maemo | 04:15 | |
*** frals has joined #maemo | 04:22 | |
*** frals has joined #maemo | 04:22 | |
*** Kabouik_ has quit IRC | 04:24 | |
*** dafox has quit IRC | 04:36 | |
*** DocScrutinizer05 has quit IRC | 04:56 | |
*** DocScrutinizer06 has joined #maemo | 04:56 | |
*** DocScrutinizer06 is now known as DocScrutinizer05 | 04:56 | |
*** DocScrutinizer05 has quit IRC | 04:58 | |
*** DocScrutinizer05 has joined #maemo | 04:59 | |
*** luke-jr has joined #maemo | 05:24 | |
*** mva has quit IRC | 06:16 | |
*** mva_ has joined #maemo | 06:16 | |
*** luke-jr has quit IRC | 06:43 | |
*** LauRoman has joined #maemo | 07:02 | |
*** Kilroo has quit IRC | 07:26 | |
*** spiiroin has quit IRC | 07:42 | |
*** Kilroo has joined #maemo | 07:51 | |
*** Milhouse has quit IRC | 08:37 | |
*** xy2_ has joined #maemo | 08:46 | |
*** Milhouse has joined #maemo | 08:51 | |
*** spiiroin has joined #maemo | 08:53 | |
*** Milhouse has quit IRC | 09:12 | |
*** xy2_ has quit IRC | 09:17 | |
*** xorly has joined #maemo | 09:18 | |
*** Milhouse has joined #maemo | 09:26 | |
*** dmth|intevation has joined #maemo | 09:35 | |
*** rhn_mk1 has joined #maemo | 09:40 | |
*** rhn_mk1 has joined #maemo | 09:40 | |
*** FalconSpy_ has joined #maemo | 09:45 | |
*** FalconSpy_ has quit IRC | 09:45 | |
*** FalconSpy has quit IRC | 09:46 | |
*** florian has joined #maemo | 09:56 | |
*** HTTP_____GK1wmSU has joined #maemo | 10:07 | |
*** HTTP_____GK1wmSU has left #maemo | 10:10 | |
*** HTTP_____GK1wmSU has joined #maemo | 10:24 | |
*** HTTP_____GK1wmSU has left #maemo | 10:26 | |
*** freemangordon_ has joined #maemo | 10:32 | |
*** geaaru has joined #maemo | 10:38 | |
*** FalconSpy has joined #maemo | 10:51 | |
*** eMHa has quit IRC | 11:00 | |
*** xorly has quit IRC | 11:30 | |
*** eMHa has joined #maemo | 11:34 | |
*** xray256 has quit IRC | 11:38 | |
*** wnd has quit IRC | 11:40 | |
*** wnd has joined #maemo | 11:40 | |
freemangordon_ | merlin1991: ping | 11:43 |
---|---|---|
*** xray256 has joined #maemo | 11:51 | |
*** deepa is now known as deepy | 11:52 | |
DocScrutinizer05 | moin | 11:56 |
*** cyteen has quit IRC | 11:58 | |
*** freemangordon_ has quit IRC | 12:14 | |
*** Kabouik_ has joined #maemo | 12:28 | |
*** mva_ is now known as mva | 12:34 | |
*** spiiroin has quit IRC | 12:47 | |
*** buZz is now known as buZz2 | 12:51 | |
*** buZz2 is now known as buZz | 12:51 | |
*** spiiroin has joined #maemo | 13:15 | |
*** jonwil has joined #maemo | 13:54 | |
jonwil | hi | 13:55 |
*** cyteen has joined #maemo | 14:05 | |
*** err0r3o3 has quit IRC | 14:06 | |
*** err0r3o3 has joined #maemo | 14:13 | |
*** freemangordon_ has joined #maemo | 14:16 | |
*** wnd has quit IRC | 14:19 | |
*** wnd has joined #maemo | 14:19 | |
*** ketar has joined #maemo | 14:32 | |
DocScrutinizer05 | freemangordon: ping | 14:33 |
DocScrutinizer05 | >>To use AES on N900 you need to flash special boot loader.<< | 14:36 |
*** err0r3o3 has quit IRC | 14:43 | |
freemangordon_ | DocScrutinizer05: pong | 14:44 |
DocScrutinizer05 | you know this crypto NOLO? | 14:44 |
*** err0r3o3 has joined #maemo | 14:45 | |
freemangordon_ | yes | 14:45 |
DocScrutinizer05 | good :-) | 14:45 |
*** xray256 has quit IRC | 14:45 | |
DocScrutinizer05 | should CSSU... ? | 14:45 |
freemangordon_ | it enables AES IP in the L2 firewall, iirc | 14:45 |
DocScrutinizer05 | yep | 14:45 |
DocScrutinizer05 | http://susepaste.org/25062175 | 14:46 |
freemangordon_ | re cssu - there is not much use of that AES, it is slower than doing it on MPU | 14:46 |
DocScrutinizer05 | duh! | 14:47 |
freemangordon_ | it makes sense if we do some mobile payments or such, which we don't :) | 14:47 |
DocScrutinizer05 | but it's a coproc, right? so it could run concurrently to "normal" tasks, e.g. for disk encryption | 14:48 |
freemangordon_ | iirc somebody tried it, and there is no gain, on the contrary | 14:48 |
DocScrutinizer05 | dang | 14:48 |
freemangordon_ | yes, it is coproc | 14:48 |
freemangordon_ | but you do supervisor call, iirc, with all the nasty contexts switches etc | 14:49 |
DocScrutinizer05 | I see | 14:49 |
freemangordon_ | there should be a thread on TMO with the results | 14:50 |
DocScrutinizer05 | does the NOLO itself reveal something, at least. EG when comparing it to default xloader/nolo? | 14:50 |
DocScrutinizer05 | I mean, maybe we got a second signature, cracking would be more than twice as fast with two than with just one signature - in theory ;-D | 14:52 |
DocScrutinizer05 | and maybe this is BS I pulled right outa my read | 14:52 |
DocScrutinizer05 | rear even | 14:53 |
freemangordon_ | you mean 2^127 years instead of 2^128? :p | 14:53 |
DocScrutinizer05 | yes, this sort of thing ;-P | 14:53 |
DocScrutinizer05 | I'm still totally unclear about signatires of xloader in GP SoC | 14:54 |
DocScrutinizer05 | does GP also have a L2 FW? | 14:55 |
DocScrutinizer05 | I'd assume they build the very same chip, incl all IP, and just change the xloader and signature | 14:56 |
DocScrutinizer05 | resp L2 config | 14:56 |
DocScrutinizer05 | a mere guess | 14:56 |
freemangordon_ | iirc, yes, there is L2 firewall on gp devices | 14:57 |
DocScrutinizer05 | and the L2 config is completely done in xloader, or would GP and HS have different ROMBL (apart from obviously different signatures/keys)? | 14:58 |
*** xray256 has joined #maemo | 14:58 | |
DocScrutinizer05 | iirc the omapedia about bootloader said you need to sign xloader for GP too (they don't even cover HS devices there) | 14:59 |
DocScrutinizer05 | ~listvalues omapedia | 15:00 |
infobot | Factoid search of 'omapedia' by value returned no results. | 15:00 |
freemangordon_ | sure GP xloader needs to be signed | 15:01 |
DocScrutinizer05 | ~listvalues omappedia | 15:01 |
infobot | Factoid search of 'omappedia' by value returned no results. | 15:01 |
freemangordon_ | but it is not a problem as the keys are known | 15:01 |
freemangordon_ | though I don;t remember signing xloader for BB back then | 15:02 |
freemangordon_ | though it could be that I just forgot | 15:03 |
DocScrutinizer05 | http://omappedia.org/wiki/Bootloader_Project | 15:03 |
DocScrutinizer05 | >>Note: If you are using an HS (High Security) OMAP device, an extra step is required. First, build x-load.bin using the steps above. Then, download the MShield signing tool and use the commands below. Contact your TI representative to get access to this tool.<< o.O | 15:04 |
DocScrutinizer05 | now who's at home in darknet? ;-) find that tool | 15:06 |
DocScrutinizer05 | though... prolly Nokia had their own keys | 15:06 |
DocScrutinizer05 | ~#maemo boot is http://omappedia.org/wiki/Bootloader_Project | 15:08 |
infobot | okay, DocScrutinizer05 | 15:08 |
*** luke-jr has joined #maemo | 15:16 | |
*** err0r3o3 has quit IRC | 15:21 | |
*** rysiekpl is now known as rysiek|pl | 15:21 | |
bencoh | xloader is signed on n900? | 15:27 |
*** luke-jr has quit IRC | 15:33 | |
DocScrutinizer05 | I *think* yes | 15:36 |
DocScrutinizer05 | the question rather is if it *needs* to be signed, or if a HS device would behave exactly like a GP device when yiu use a GP (unsigend) xloader | 15:37 |
DocScrutinizer05 | this basically boils down to the question if GP and HS SoCs share same ROMBL (or if the ROMBL maybe has a check if there's a HS key or not and acts differently when there is) | 15:40 |
*** dafox has joined #maemo | 15:51 | |
*** luke-jr has joined #maemo | 15:57 | |
DocScrutinizer05 | >>It's also worth noting the TI did not technically disable TrustZone. Instead, the bootrom code transitions the processor into the Normal world prior to switching execution to U-boot. So it's actually using TrustZone to move to the Normal world, but then doesn't provide a mechanism for moving back to the Secure world<< https://stackoverflow.com/questions/7955982/arm-trustzone-development | 15:58 |
*** err0r3o3 has joined #maemo | 15:58 | |
DocScrutinizer05 | >>Yes, things have changed considerable to the positive after 5 years :) << 2017-06-29 | 16:01 |
DocScrutinizer05 | hmmm https://github.com/OP-TEE/optee_os | 16:06 |
DocScrutinizer05 | ~trust | 16:06 |
infobot | rumour has it, trust is safe, or http://www.youtube.com/watch?v=0cbS_lDJuJg | 16:06 |
DocScrutinizer05 | ? | 16:06 |
DocScrutinizer05 | this whole trustzone stuff is as intangible as... No docs at all | 16:11 |
DocScrutinizer05 | and I still don't buy it that there's any benefit from it for end users that couldn't get achieved as well (and actually always been) by mere decent implementation of classical OS-based permission handling | 16:13 |
DocScrutinizer05 | as soon as you hand the signing tools to unwashed public, there's no visible benefit from trusted computing at all | 16:15 |
*** chfoo[m] has quit IRC | 16:18 | |
*** xy2_ has joined #maemo | 16:21 | |
*** chfoo[m] has joined #maemo | 16:25 | |
*** err0r3o3 has quit IRC | 16:28 | |
*** ntinos has quit IRC | 16:36 | |
*** dmth|intevation has quit IRC | 16:40 | |
*** dmth|intevation has joined #maemo | 16:42 | |
*** luke-jr has quit IRC | 16:53 | |
DocScrutinizer05 | a completely different topic: FSF RYF | 16:54 |
*** luke-jr has joined #maemo | 16:54 | |
DocScrutinizer05 | from dng@lists.dyne.org "From:"Taiidan@gmx.com" <Taiidan@gmx.com> Re: [DNG] Purism Librem and disabling Intel ME: it can be done [ Re: TALOS 2 - The Libre Owner Controlled POWER9 Workstation/Server ] 2017-09-08 Fri 06:22" | 16:55 |
DocScrutinizer05 | >> Full documentation and HDL's will be available for all components besides the onboard broadcom nics which currently require a firmware blob as there are no open source non-intel gigabit NIC's - but the FSF says that this minor detail doesn't prevent it from receiving RYF certification as they are behind the POWER-IOMMU and as such are not capable of doing anything malicious.<< | 16:56 |
*** dmth|intevation has quit IRC | 16:56 | |
DocScrutinizer05 | I wonder how they can do this for that hardware, but then consider Neo900 doing basically same as sufficient reason to deny RYF | 16:57 |
*** err0r3o3 has joined #maemo | 16:58 | |
DocScrutinizer05 | we also have no open source WLAN/BT solution available and whatever that IOMMU it's not better than a mere SDIO hw interface | 16:59 |
DocScrutinizer05 | and I don't think I want to even start about our modem sandbox solution that's definitely way beyond anything IOMMU | 17:01 |
DocScrutinizer05 | anybody FSF around to comment? | 17:01 |
*** freemangordon_ has quit IRC | 17:04 | |
*** err0r3o3 has quit IRC | 17:07 | |
*** err0r3o3 has joined #maemo | 17:16 | |
*** jonwil has quit IRC | 18:22 | |
*** Pali has joined #maemo | 18:31 | |
*** phlixi has quit IRC | 18:42 | |
Pali | ~deb2dsc | 18:43 |
infobot | hmm... deb2dsc is on http://pastebin.com/ZPuYnZPr | 18:43 |
Pali | freemangordon ↑↑↑ | 18:43 |
Wizzup | jesus. only on pastebin? :D | 18:44 |
freemangordon | Pali: thanks | 18:45 |
bencoh | :D | 18:46 |
*** ntinos has joined #maemo | 18:47 | |
*** florian has quit IRC | 18:53 | |
freemangordon | Pali: (and the others) how it sounds "Oroshi" as a codename for that maemo-devuan frankenstein? | 18:58 |
Wizzup | Oroshi? | 19:00 |
Wizzup | we had some codenames, but not project names | 19:00 |
Wizzup | e.g. 'kawai' | 19:00 |
freemangordon | Wizzup: nokia used to name releases after winds | 19:00 |
Wizzup | ok. I am going to be afk for a bit. | 19:00 |
KotCzarny | is there a name for 'wind of change' ? | 19:01 |
Wizzup | need food | 19:01 |
freemangordon | KotCzarny: no idea | 19:01 |
*** geaaru has quit IRC | 19:01 | |
KotCzarny | or wind of hope | 19:01 |
freemangordon | KotCzarny: I found ^^^ at wikipedia, feel free to suggest another one if you need symbolics. I coose it because it sounds pretty much ok and simple | 19:02 |
freemangordon | *choose | 19:02 |
freemangordon | KotCzarny: https://en.wikipedia.org/wiki/List_of_local_winds | 19:03 |
freemangordon | Kona and Leste sound ok as well | 19:04 |
KotCzarny | yeah, it should come after 'h' | 19:04 |
freemangordon | mhm | 19:05 |
KotCzarny | Chinook, Diablo, Fremantle, Harmattan | 19:05 |
freemangordon | Meltemi ;) | 19:05 |
KotCzarny | Bora before chinook | 19:05 |
freemangordon | nad Bora | 19:05 |
KotCzarny | Loo ? ;) | 19:05 |
freemangordon | hmm, maybe Kona is better | 19:05 |
KotCzarny | Khamsin isnt bad either | 19:06 |
freemangordon | no, Loo doesn;t sound tasty :D | 19:06 |
KotCzarny | anyway, all winds starting with K on that page sound cool | 19:06 |
freemangordon | I like Kona more, it is shorter but still sounds good | 19:07 |
freemangordon | ok, if no objections in the next couple of hours, then it will be Lona :) | 19:07 |
freemangordon | *Kona | 19:08 |
KotCzarny | http://mentalfloss.com/article/56382/21-wonderful-words-wind | 19:08 |
KotCzarny | more names | 19:08 |
KotCzarny | willy-willy ? | 19:08 |
freemangordon | hehe | 19:08 |
drathir | Luna mmm.... | 19:31 |
drathir | Kira | 19:31 |
drathir | ignore that... ^^ | 19:34 |
*** eMHa has quit IRC | 19:35 | |
*** qwazix has quit IRC | 19:40 | |
*** qwazix has joined #maemo | 19:43 | |
*** mickname_ is now known as mickname | 19:45 | |
* sixwheeledbeast is getting deja-vu | 19:53 | |
sixwheeledbeast | http://mg.pov.lt/maemo-irclog/%23maemo.2017-02-03.log.html | 19:53 |
sixwheeledbeast | I recall liking "Ostria" A warm southerly wind on the Bulgarian coast :) | 19:54 |
*** Kabouik_ has quit IRC | 19:56 | |
*** err0r3o3_ has joined #maemo | 20:04 | |
*** phlixi has joined #maemo | 20:05 | |
*** err0r3o3 has quit IRC | 20:08 | |
*** eMHa has joined #maemo | 20:13 | |
*** heroux has joined #maemo | 20:25 | |
*** err0r3o3_ has quit IRC | 20:37 | |
*** err0r3o3_ has joined #maemo | 20:53 | |
*** xy2_ has quit IRC | 20:53 | |
*** luke-jr has quit IRC | 20:56 | |
DocScrutinizer05 | https://www.armis.com/blueborne | 20:57 |
*** phlixi has quit IRC | 21:05 | |
*** xy2_ has joined #maemo | 21:11 | |
freemangordon | sixwheeledbeast: ah, I remember I told you there is no such word in Bulgarian, back then :) | 21:12 |
DocScrutinizer05 | freemangordon: ^^^ | 21:13 |
DocScrutinizer05 | please rate severety for maemo | 21:14 |
freemangordon | DocScrutinizer05: I'm reading through it | 21:14 |
DocScrutinizer05 | ta | 21:14 |
DocScrutinizer05 | stack overflow in bluetooth.ko? | 21:14 |
DocScrutinizer05 | they pitched it well for maximum publicity with minimum help for experts to actually investigate | 21:20 |
DocScrutinizer05 | at least a few random CVE are mentioned | 21:20 |
freemangordon | DocScrutinizer05: All Linux devices from version 3.3-rc1 (released in October 2011) are affected by the remote code execution vulnerability (CVE-2017-1000251). | 21:21 |
freemangordon | so this does not affect n900 | 21:22 |
freemangordon | the other one affects us, I guess | 21:22 |
DocScrutinizer05 | :-) at least | 21:22 |
freemangordon | All Linux devices running BlueZ are affected by the information leak vulnerability (CVE-2017-1000250). | 21:22 |
DocScrutinizer05 | please share URLs to genuine CVE database | 21:23 |
DocScrutinizer05 | I have a hard time finding it right now | 21:23 |
*** FalconSpy_ has joined #maemo | 21:23 | |
freemangordon | I don't have urls for those, I read what is on Armis Labs page | 21:24 |
DocScrutinizer05 | ooh | 21:24 |
freemangordon | googling leadds to some fedora and redhat pages | 21:24 |
DocScrutinizer05 | I fvrown at the latter one | 21:24 |
freemangordon | *leads | 21:24 |
DocScrutinizer05 | there are multiple massively different Bluez implementations | 21:24 |
freemangordon | https://bugzilla.redhat.com/show_bug.cgi?id=1490911 | 21:25 |
freemangordon | where is bluez upstream? | 21:25 |
DocScrutinizer05 | nfc | 21:25 |
DocScrutinizer05 | next to PA? | 21:26 |
*** phlixi has joined #maemo | 21:26 | |
freemangordon | https://git.kernel.org/pub/scm/bluetooth/bluez.git | 21:26 |
*** FalconSpy has quit IRC | 21:27 | |
sixwheeledbeast | https://nvd.nist.gov/vuln/detail/CVE-2017-1000250 | 21:32 |
*** luke-jr has joined #maemo | 21:34 | |
DocScrutinizer05 | sixwheeledbeast: ta | 21:35 |
sixwheeledbeast | np | 21:36 |
DocScrutinizer05 | https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-9445 I guess was the one I looked for | 21:36 |
DocScrutinizer05 | err, or nearby, anyway MITRE | 21:37 |
DocScrutinizer05 | https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-1000250 | 21:38 |
*** luke-jr has quit IRC | 21:43 | |
*** Kabouik_ has joined #maemo | 21:58 | |
DocScrutinizer05 | cf https://bugzilla.redhat.com/show_bug.cgi?id=1490911 | 21:58 |
DocScrutinizer05 | iips sorry | 21:58 |
*** LauRoman has quit IRC | 22:24 | |
*** LauRoman has joined #maemo | 22:33 | |
*** florian has joined #maemo | 23:01 | |
*** jkepler has quit IRC | 23:23 | |
*** jkepler has joined #maemo | 23:27 | |
*** rhn_mk1 has quit IRC | 23:41 | |
*** xorly has joined #maemo | 23:49 | |
*** rhn_mk1 has joined #maemo | 23:56 |
Generated by irclog2html.py 2.15.1 by Marius Gedminas - find it at mg.pov.lt!