-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

On Sat, Aug 06, 2016 at 11:49:09PM +0100, Stephen Moreno wrote:
> On 08/02/2016 09:55 PM, Marek Marczykowski-Górecki wrote:
> 
> >
> > I think it doesn't really matter from security point of view. Either
> > legacy or UEFI BIOS can contain bugs fatal to the system security.
> >
> > On the other hand, many UEFI BIOSes contains bugs affecting Qubes OS.
> > Legacy BIOSes also have bugs, but those are much older and already have
> > workarounds in Xen/Linux.
> > In addition, Anti Evil Maid (which can detect some firmware
> > modifications) isn't compatible with UEFI.
> > In short: choose legacy BIOS (or at least a BIOS with legacy boot mode),
> > for better Qubes OS support.
> >
> > - --
> > Best Regards,
> > Marek Marczykowski-Górecki
> > Invisible Things Lab
> >
> 
> Hi Marek,
> 
> Thanks for your reply.
> 
> After some further research it looks like my choice for an AM3 board is
> either:
> older 760G chipset with legacy BIOS but no IOMMU
> OR
> newer 970 chipset with IOMMU but also a UEFI BIOS
> 
> I would be really interested in your views regarding this choice. Which
> option would you go for?
> (I will need to use bluetooth with this system, in case that sways you
> towards a board with IOMMU.)

Yes, go for the one with IOMMU.

- -- 
Best Regards,
Marek Marczykowski-Górecki
Invisible Things Lab
A: Because it messes up the order in which people normally read text.
Q: Why is top-posting such a bad thing?
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2

iQEbBAEBCAAGBQJXpz6yAAoJENuP0xzK19csA5EH9R1GSFwWFPX9AGj1j4Oxk7ru
l54iIL9OvZwclfGbA3cYr9mKlzhaX9uFSLCTKokY5WZoXWse3sWSOCe419J8OAYK
fzG6oQm/O4NOsv+HpErJipmAjolhNED1jExzIYQUDBkPb1FTQPW3yoY7Dkf4hWEt
9dCwsObggwsvJCYpb0Xf8WF9HcWRvQp9ZVe5p2A8QtnU1NR/bf16ApgozQczv9D6
e1MoO6GMBQ/xijYksXQpExbpqHT02AAwab7kC3B8NrhNr0uB3PEhqpb/qmUzhhsA
8R7f2wWRpFlKfkOEkV6y9rl1cYQNPnDNUl/mCJs6sShUp1PBqlI36JwwHb4DDw==
=zg97
-----END PGP SIGNATURE-----

-- 
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to [email protected].
To post to this group, send email to [email protected].
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/20160807135912.GG32095%40mail-itl.
For more options, visit https://groups.google.com/d/optout.

Reply via email to