Re: Removing RTC from Theft-Deterrence

2010-07-07 Thread C. Scott Ananian
On Wed, Jul 7, 2010 at 6:54 PM, John Watlington wrote: > > On Jul 7, 2010, at 5:07 PM, James Cameron wrote: > >> On Wed, Jul 07, 2010 at 04:57:19PM -0400, C. Scott Ananian wrote: >>> Unfortunately, the software changes required are to EC code, which is >>> difficult for outside contributors to wor

Re: Removing RTC from Theft-Deterrence

2010-07-07 Thread John Watlington
On Jul 7, 2010, at 5:07 PM, James Cameron wrote: > On Wed, Jul 07, 2010 at 04:57:19PM -0400, C. Scott Ananian wrote: >> Unfortunately, the software changes required are to EC code, which is >> difficult for outside contributors to work on. > > Yeah, that would be good to change. Have you forgot

Re: Removing RTC from Theft-Deterrence

2010-07-07 Thread James Cameron
On Wed, Jul 07, 2010 at 04:57:19PM -0400, C. Scott Ananian wrote: > Unfortunately, the software changes required are to EC code, which is > difficult for outside contributors to work on. Yeah, that would be good to change. -- James Cameron http://quozl.linux.org.au/ _

Re: Removing RTC from Theft-Deterrence

2010-07-07 Thread C. Scott Ananian
On Wed, Jul 7, 2010 at 4:01 PM, C. Scott Ananian wrote: >  * Updating exactly every hour is vulnerable to an attacker who > arranges to remove the battery from the machine exactly 55 minutes > after power on, every time.  This is still quite awkward, but to avoid > even this attack, the EC can pse

Re: Removing RTC from Theft-Deterrence

2010-07-07 Thread C. Scott Ananian
On Wed, Jul 7, 2010 at 4:48 PM, John Watlington wrote: > On Jul 7, 2010, at 4:01 PM, C. Scott Ananian wrote: > >> Since "RTC security" is being discussed again, I'm going to repost two >> relevant proposals from "the good old days".  First: on making >> theft-deterrence a "feature"; then technical

Re: Removing RTC from Theft-Deterrence

2010-07-07 Thread John Watlington
On Jul 7, 2010, at 4:01 PM, C. Scott Ananian wrote: > Since "RTC security" is being discussed again, I'm going to repost two > relevant proposals from "the good old days". First: on making > theft-deterrence a "feature"; then technical details of a $0.16 change > to remove RTC dependence from th

Removing RTC from Theft-Deterrence

2010-07-07 Thread C. Scott Ananian
Since "RTC security" is being discussed again, I'm going to repost two relevant proposals from "the good old days". First: on making theft-deterrence a "feature"; then technical details of a $0.16 change to remove RTC dependence from the theft-deterrence feature. Unfortunately, the specific circui