Slashdot Mirror


Trusted Computing Group Formed

An anonymous reader writes "How does it come that the formation of the Trusted Computing Group goes unnoticed at /.? On Wednesday, heise had the story. At last, we will get `easily-accessible specifications for trusted computing standards that will ultimately let people work, conduct transactions, and use computing devices with a new level of confidence' ..."

32 of 107 comments (clear)

  1. 11 days late... by adamofgreyskull · · Score: 2, Funny


    And it's an extremely sick joke at that.

  2. Re:Great by chrisseaton · · Score: 3, Informative

    I hope that's mean't to be a joke, mate.

    Apple is buying the record company - not the other way round.

  3. From the About Us section of TCG's website by mikeophile · · Score: 5, Informative
    TCG Members

    Promoters
    * AMD
    * Hewlett-Packard
    * IBM
    * Intel Corporation
    * Microsoft

    Contributors
    * Atmel
    * Infineon
    * National Semiconductor
    * Nokia
    * Philips
    * Phoenix
    * Sony
    * STMicroelectronics
    * VeriSign, Inc.
    * Wave Systems

    Adopters
    List available shortly.

    ie, when there are any

    1. Re:From the About Us section of TCG's website by AftanGustur · · Score: 3, Interesting


      Ok, so we know that OS and hardware vendors have their representatives but where are the consumer representatives ?

      This looks to me like if UK farmers an beef distributors would create "Trusted Beef Group" without any consumer input ..

      --
      echo '[q]sa[ln0=aln80~Psnlbx]16isb572CCB9AE9DB03273snlbxq' |dc
  4. It's so obvious what they're doing... by Saint+Stephen · · Score: 3, Interesting

    "The PC isn't done until Linux won't run."

    This has damned ominous ovetones. You guys better watch out, or they're gonna take the ball away from you just like they snatched it away from Borland, Lotus, Novell, &c. &c.

    Ah, well, in fifteen years Gates & Balmer will retire and then the world can make some progress, until then bend over and smile!

    1. Re:It's so obvious what they're doing... by tijsvd · · Score: 2, Insightful
      Why would AMD, Intel, IBM, HP, Sony, Philips, etc. benefit from a PC that will run only Windows? As hardware manufacturers, they would benefit from the OS's being a commodity. A good, free OS will decrease PC cost and therefore increase PC demand.

      Your remark could be right if MS was the only company supporting the platform. Funny you name Lotus as an example. It is now owned by IBM, one of the supporters...

  5. Translation by watzinaneihm · · Score: 3, Informative

    Mandatory babelfish translation

    Or a zdnet article

    --
    .ACMD setaloiv siht gnidaeR
  6. Interesting quote by Anonymous Coward · · Score: 3, Informative
    related articles
    "Although TCG is being billed as the TCPA's successor, most of the TCPA's members had no idea of its imminent demise. The TCG sent out a mass e-mail message to all of the former group's members this morning at roughly the same time the press release announcing the TCG's formation went out."
    -- eWEEK: Trusted Computing Group Forms
  7. ominous technology by wadiwood · · Score: 3, Interesting

    This feels like linking the application to the hardware and perhaps the user so nobody else could possibly use it.

    I feel that might be good for some things, like my prescription drug might be better off in a container only I could open. I'm not sure I like the idea for software I buy. It is like saying if I buy a book, I can put it on my bookshelf in my house but if my brother tries to read it, or I try to take it on the bus, it will have blank pages.

    I suspect that the reason for most of this extra security is not concern for the user and their data, but some way of making extra profit by the manufacturers ie, if the authorised user is indisposed or incapacitated, then the hardware and software has to be re-purchased.

    I'd like to make things difficult for a thief, but for me that mostly means encrypting and backing up data, not rendering the hardware and software useless by anyone but me. How inconvenient. Every time I want to rebuild the hard drive, or install a new one or buy a new computer, I'd have to buy the apps all over again.

    I can see I'm going to get so very good at open source products.

    --

    -- it must be true, it's on the internet.
  8. Re:Great by Billly+Gates · · Score: 4, Interesting
    The shareholders of Universal will now be Steve Jobs boss. In todays sad greedy world they and not the CEO's run the companies. They can easily fire him if he does not cripple his own macs. Steve Jobs as a legal obligation as well to protect his now purchased record sales. If not then the shareholders need to fire him and replace him with someone else. Hmm Hilary Rosen is quiting the RIAA....

    Sony for example had a supperior IPOD clone but its shareholders and SONY entertainment sued them to prevent it from being launched. After all burning cd's= pirating in this world. These idiots will now own %50 of Apple.

    After all even only potential and not actuall loses in the single digits is enough for wall street to scream at and even fire upper managment.

    If you do not believe this look at Caldera before and after SCO was bought? They become SCO thanks to the shareholders and media executives.

    Its Microsoft or the RIAA. Take your pick on your new master. Mac or PC.

  9. Palladium gone, TCPA gone..enter TCG! by jkrise · · Score: 3, Interesting

    First it was the turn of Palladium to be rebranded as The-Next-Generation-Secure-Computing-Services or some such. And now TCPA has been replaced by TCC! So the original TCPA/Palladium FAQ will become invalid, all the Slashdot debates on evil Palladium will be ir-relevant.

    Is this a new strategy?
    1. Announce something evil. Give it a name.
    2. Educate consumers about what it does.
    3. Debate the pros and cons in fiery fora.
    4. Modify the name/acronymn a bit, and ram the same evil stuff!

    Seems to be working.

    --
    If you keep throwing chairs, one day you'll break windows....
    1. Re:Palladium gone, TCPA gone..enter TCG! by Cipster · · Score: 2, Interesting

      It's not a new strategy it's something that has been around for a long time and it's about the power of names and definitions.
      For other examples see:
      Freedom Fighters vs. Terrorists
      Inprisonment and torture vs. reeducation
      etc...

    2. Re:Palladium gone, TCPA gone..enter TCG! by Alsee · · Score: 3, Interesting

      I think the best way to counter this is to focus on the single central objectionable "feature" they all include. They ALL require that the owner of the machine is not permitted access to his own encryption keys. In plain english it means the owner is not permitted to know his own passwords.

      Every single objectionable feature of these systems rely on that one point. Trusted computing advocates have no defence against this argument. They may try to argue that keeping the keys secure protects you from malicious software. This argument is easy to demolish by designing the hardware to only reveal the encryption keys based on a hardware switch. Malicious software simply cannot touch a physical switch.

      -

      --
      - - You can't take something off the Internet! That's like trying to take pee out of a swimming pool.
  10. confidence for who and of what? by Anonymous Coward · · Score: 2, Interesting

    `easily-accessible specifications for trusted computing standards that will ultimately let people work, conduct transactions, and use computing devices with a new level of confidence' ..."

    Confidence for who and of what? Hardly for users.

    Confidence that users will have no freedom?
    Confidence that anything non TCG/TCPA and non DRM is locked out?
    Confidence that there will be TCG backdoors?
    Confidence for software & content providers?
    Confidence that your system can be wiped/accessed remotely at TCG's whim?

    New level of confidence FOR users? Yes, new in the sense of unprecedented low level of confidence that the system can be trusted.

    New level of confidence IN users? Yes, now they just lack the high voltage collar linked to the systems to dish out electrocution to all dissidents.

    Ah but what was i thinking, thats coming mainly from "God's own country" so that can be wrong, can it?

  11. Standards are good... by Thaidog · · Score: 3, Insightful

    ... but I trust nobody but myself... not my Mom not my Daddi... and certainly an orgainzation with all the loopholes that this will create... It's a great idea in theory... Standards are the most important thing that can possibly come of this...

    --

    ||| I still can't believe Parkay's not butter.

  12. Re:Great by Anonymous Coward · · Score: 4, Insightful

    Probably not. But there -are- ways it could get better.

    1) Don't buy the stuff. Old computer works? Keep it. Delay upgrading as long as possible. Visit the computer store occasionally for upgrades, but leave without buying anything if all they can offer you is hardware with DRM.

    2) Don't listen to, or watch the stuff. Yeah, it's hard not to go to a movie now and again, I know. It's fun to do (albeit expensive). But most of the money you hand over for your ticket goes directly into the pocket of the people that are doing this to you. Rent a movie. Listen to an old CD you've bought, tape things from the radio, but don't go out and buy those new CD's. -Especially- not the DRM protected ones.

    3) If you do go out to buy a CD, follow somewhat of a similar procedure to that of computer hardware. Bring your CD up to the counter. Tell them you have an old CD player, and all these protected CD's won't play in it. Tell them you've had to bring back about 10 CD's to various different stores because the protection on them was messing with your CD player, and if this one doesn't work you might as well just give up on buying them altogether. Whether it's true for you or not, it likely -is- true for the hundreds of people who really -can't- play these CD's, and at the same time, you'll be indirectly helping to protect your fair use rights.

    There's a number of ways you can let these people know that it's not going to work, that you're not going to put up with it, but you have to -do- something about it. This whole DRM movement that's sure to cost the computing industry billions before the end is about money..they want more of it. They don't want you to download MP3's or movies, they don't want you stealing software (not that either of those is necessarily right in the first place, but that's another argument entirely :>). They want you buying everything you want to watch, listen to or use. If they find out that by abusing their customers will result in no sales, you can bet the whole DRM train will be derailed before too long.

  13. To quote BlackAdder... by AtomicX · · Score: 2, Funny

    "I'd no sooner put my John Thomas in the hands of a lunatic with an axe than I would trust Microsoft with my data"

  14. The Right to Read by Anonymous Coward · · Score: 4, Interesting

    This article appeared in the February 1997 issue of Communications of the ACM (Volume 40, Number 2).

    (from "The Road To Tycho", a collection of articles about the antecedents of the Lunarian Revolution, published in Luna City in 2096)
    For Dan Halbert, the road to Tycho began in college--when Lissa Lenz asked to borrow his computer. Hers had broken down, and unless she could borrow another, she would fail her midterm project. There was no one she dared ask, except Dan.

    This put Dan in a dilemma. He had to help her--but if he lent her his computer, she might read his books. Aside from the fact that you could go to prison for many years for letting someone else read your books, the very idea shocked him at first. Like everyone, he had been taught since elementary school that sharing books was nasty and wrong--something that only pirates would do.

    And there wasn't much chance that the SPA--the Software Protection Authority--would fail to catch him. In his software class, Dan had learned that each book had a copyright monitor that reported when and where it was read, and by whom, to Central Licensing. (They used this information to catch reading pirates, but also to sell personal interest profiles to retailers.) The next time his computer was networked, Central Licensing would find out. He, as computer owner, would receive the harshest punishment--for not taking pains to prevent the crime.

    Of course, Lissa did not necessarily intend to read his books. She might want the computer only to write her midterm. But Dan knew she came from a middle-class family and could hardly afford the tuition, let alone her reading fees. Reading his books might be the only way she could graduate. He understood this situation; he himself had had to borrow to pay for all the research papers he read. (10% of those fees went to the researchers who wrote the papers; since Dan aimed for an academic career, he could hope that his own research papers, if frequently referenced, would bring in enough to repay this loan.)

    Later on, Dan would learn there was a time when anyone could go to the library and read journal articles, and even books, without having to pay. There were independent scholars who read thousands of pages without government library grants. But in the 1990s, both commercial and nonprofit journal publishers had begun charging fees for access. By 2047, libraries offering free public access to scholarly literature were a dim memory.

    There were ways, of course, to get around the SPA and Central Licensing. They were themselves illegal. Dan had had a classmate in software, Frank Martucci, who had obtained an illicit debugging tool, and used it to skip over the copyright monitor code when reading books. But he had told too many friends about it, and one of them turned him in to the SPA for a reward (students deep in debt were easily tempted into betrayal). In 2047, Frank was in prison, not for pirate reading, but for possessing a debugger.

    Dan would later learn that there was a time when anyone could have debugging tools. There were even free debugging tools available on CD or downloadable over the net. But ordinary users started using them to bypass copyright monitors, and eventually a judge ruled that this had become their principal use in actual practice. This meant they were illegal; the debuggers' developers were sent to prison.

    Programmers still needed debugging tools, of course, but debugger vendors in 2047 distributed numbered copies only, and only to officially licensed and bonded programmers. The debugger Dan used in software class was kept behind a special firewall so that it could be used only for class exercises.

    It was also possible to bypass the copyright monitors by installing a modified system kernel. Dan would eventually find out about the free kernels, even entire free operating systems, that had existed around the turn of the century. But not only were they illegal, like debuggers--you could not install one if you had one, without knowing your computer's

  15. TC is a self-fulfilling prophecy by Katravax · · Score: 4, Insightful

    It feels like we've been fed buggy apps for two decades, and now we're told the solution for unreliable software is restriction of our abilites and freedoms. It almost sounds like they've intentionally created the problem, having had the solution in mind the whole time. What happened to the concept of solving buggy apps by getting rid of the bugs in the code?

  16. Whats the problem about trusting the platform..... by hughk · · Score: 3, Interesting
    The problem with any system is that it can be compromised. If I do online banking and enter my access password, it may be captured in a number of different ways before it goes out to the bank. The problem is that the paassword can be discovered in a number of ways before the post goes via https to the bank's server.

    Even when my password hits the https client software, how do I know that the information is really being sent securely? I don't.

    The counter example used by the digital rights people is that when they send me a key to access controlled media, how can they be certain that I don't intercept the decoded bit stream?

    In the first case, it is reasonable to have a trusted platform because the user can choose to accept what software he runs. In particular it can allow me to differentiate between an allowable update and one that isn't.

    In the second, then then the owner/user of the system can not be permitted to have control. If the user is permitted to have full control then the platform must disclose to the access granter that the link between the media decryption engine and the output can no longer be trusted.

    One can argue that the first is reasonable but the second would prevent anyone from looking at digitally licensed media on an open computing platform such as Linux.

    In any case, this all supposes that the platform as installed, is indeed secure. It probably isn't. Even systems that implement a good security reference monitor can be compromised by poor configuration and software layers that cross security levels. For example, the original NT kernel is very good, but it has been slowly compromised by the surrounding software.

    It would be possible to make a dedicated system into a trusted platform, for example, an ATM. It is practically very difficult to implement a genera; purpose system in a trusted way.

    --
    See my journal, I write things there
  17. Actually... by inode_buddha · · Score: 4, Insightful

    I honestly don't think that trusted computing will be possible or extant until there are trusted humans.

    --
    C|N>K
  18. Trusted! by Anonymous Coward · · Score: 3, Insightful

    They need to get rid of the word 'trust' as it's misleading. If I was to set up to make a product that allowed the user full control of their system would that be 'untrusted' and if so by whom? By the morons pushing TCPA?

    The word they are looking for is 'RESTRICTED'! Just how much trust are we supposed to have in companies who collude to bring us a technology that has been deliberately given a misleading name?

  19. Emulation? by Anonymous Coward · · Score: 2, Interesting

    The TPM spec is open, right? So what if a program like Bochs just emulates the security chip?

  20. It's because ... by jc42 · · Score: 4, Insightful

    We all understand that "Trusted Computing" simply means whether or not Microsoft trusts us to run a program.

    --
    Those who do study history are doomed to stand helplessly by while everyone else repeats it.
    1. Re:It's because ... by CynicTheHedgehog · · Score: 3, Informative

      I would have just modded you down, but I'm tired of this kind of ignorance. There are multiple forms of trusted computing, some innocent, others questionable. Since 2000 IBM has offered an (optional) ESS (Electronic Security Subsystem) in their Thinkpads and Netvistas. All it is is an embedded smart card with a keypair and some crypto functions. It's a passive device...if you feal like encrypting something then you have a convenient mechanism with which to do it. Before that, in 1998, SISTex offered the Assure EC networking device that merely served as a secure interface between an IBM compatible workstation software, local resources, and the network.

      TCPA specifies a similar device (the Trusted Platform Module), only it also has a few registers used to store and report security integrity metrics as well. Again, a totally passive device. From what I gather, the idea is that the BIOS and/or OS will use these registers to store the version of software, virus checkers, etc. Another system can query these registers to see if you have what they're looking for in the way of security (I wouldn't want to accept E-mail from a server that, say, wasn't patched for Code Red).

      So there's a key stored in your TPM. Worried about privacy? Don't be. That key is never used except to sign other keys, alias IDs, that you use temporarily to conduct transactions. Like getting an alias for your credit card number when buying something online.

      All of these are passive devices that you, the operating system, or third party apps may or may not use. None of these technologies have functions that allow the conditional execution of code based on security metrics. That is an abuse that must be built into the OS, which can be done today in software.

      Then there's Palladium, which is *not* TCPA. It's not even based on the TCPA. It's similar, but it consists of both hardware and software components (Windows) and is potentially much more sinister. Palladium's only member is Microsoft, and I don't really trust that. But I don't have to, because there are now ubiquitous, open standards (TCPA) that will likely take favor.

      We need trusted computing. It's coming. You can help yourselves by at least being informed:

      "The Need for TCPA" (David Safford, IBM)

      "Clarifying Misinformation on the TCPA" (David Safford, IBM)

    2. Re:It's because ... by Alsee · · Score: 3, Informative

      I would have just modded you down, but I'm tired of this kind of ignorance...

      "The Need for TCPA" (David Safford, IBM) [ibm.com]

      "Clarifying Misinformation on the TCPA" (David Safford, IBM)


      I have read both of those documents by David Safford. They certianly do counter many false arguments against TCPA, but they do NOT in fact counter valid criticism of TCPA! His defence of TCPA completely fails. The last two paragraphs of my second E-mail exactly why.

      I actually had a brief E-mail correspondence with David Safford. He replied to my first E-mail, and failed to respond to my second E-mail. Here is the exchange:

      ----------

      ME: TCPA - simple solution to eliminating opposition

      I just finished reading "Why TCPA" and "TCPA Misinformation Rebuttal". There is a simple way to eliminate virtually all of the opposition to TCPA.

      None of the benefits of "Why TCPA" rely on security against the owner of the machine. The "TCPA Misinformation Rebuttal" claims that TCPA is not designed to to be secure against physical access. Every criticism of TCPA that I know of is based on fact that the owner of the machine is DENIED access to contents of the TCPA chip.

      The solution should be obvious, include a physical switch to enable access to the contents of the TCPA chip. Perhaps a button that needs to be held down during power-up. This gives the critics everything they want and it in no way interferes with the claimed purposes of TCPA - it's not supposed to be secure against physical access anyway!

      Any resistance to including such a switch can only be proof that the critics are right. Maybe I'm cynical, but I don't think the TCPA alliance will ever approve it. I believe the driving force behind TCPA is to make computers "secure" AGAINST their owners and so corporations can make PC's "trustworthy" tools against the "untrusted" owners.

      I'd love to be proven wrong. If TCPA comes with an "owner override switch" I'll be the first person to run out and buy it.

      ----------

      Savid Spafford's reply:

      It is not intended to be secure against owner authorized physical access (ie access from someone who knows the pin for a given TCPA protected key.) We certainly do want to defend against theft of a laptop. We don't want to had over your encrypted filesystem master key to someone who has stolen your machine.

      TCPA does have a TPM_TAKE_OWNERSHIP command, which, given physical access to the machine, resets the chip, deleting all user level keys.

      Thus the physical owner of the machine can take full control, but cannot see any secrets from any prior owner.

      dave safford

      ----------

      Me:
      Thanks for your reply.

      "We certainly do want to defend against theft of a laptop."

      Contradiction.
      Your TCPA Rebuttal said "TCPA chips have not been designed to resist local hardware attack". If it can protect a stolen laptop then tamper resistance is not "pure speculation", it's already here. It voids the claim "show[ing] that TCPA was not designed for DRM" and instead shows that TCPA "requires...you don't trust the owner".

      It is not intended to be secure against owner authorized physical access (ie access from someone who knows the pin for a given TCPA protected key.)

      Great! If you think my idea for a mere switch to enable access was too simplistic then feel free to require the owner to supply a PIN to enable the export of the unencrypted keys. Of course, the owner needs to be able to know the PIN and to hand it to the TPM at will. A repeat TAKE_OWNERSHIP would still wipe out old keys.

      And it can still be secure against thieves because they don't have the owner PIN.

      Your TCPA rebuttal was informative and dispelled some false criticisms, but it did not address the real source of the criticisms. Between your email and "Why TCPA" and the TCPA website I still haven't seen a single justification to deny an owner access to his keys. To

      --
      - - You can't take something off the Internet! That's like trying to take pee out of a swimming pool.
  21. Re:always something I didn't think of by Reziac · · Score: 2, Insightful

    Well, if you need your nitroglycerine or your glucose pill, you've got just a few minutes before it's too late. If a passerby is bright enough to recognise a problem, they're likely also bright enough to read the label on the pill bottle you're vainly clawing at.

    Let's take "only the registered user can access it" to an extreme: doors will no longer let anyone inside who isn't registered to that house. Great for preventing burglary, and never again will you have to worry about losing your keys -- your house will know you and let you in anyway, while keeping everyone else out. So your house is on fire but the doors won't let in the neighbour or fireman who's trying to rescue your kid. Or a burglar just puts a gun (hacked so anyone can use it, of course) to your head and tells you to open the door.

    As to acceleration limiters: the reason they're not done to enforce the speed limit (or even slightly above the limit) is that doing so is hideously dangerous. It means ANY time you're caught in a situation where you need to get out of some oncoming vehicle's way in a hurry, YOU CAN'T. And that situation happens a lot more often than you might think, especially on busy freeways.

    And finally, do you really want to live in a world where you're never, ever allowed to take risks? Because control over access and control over what risks (which includes doing anything new or different from the herd) you're allowed to take are flip sides of the same coin.

    --
    ~REZ~ #43301. Who'd fake being me anyway?
  22. Not Palladium (or is it?), maybe not GPLable by David+Leppik · · Score: 4, Insightful
    From the FAQ:
    Was TCG formed to specify Digital Rights Management technologies?
    No. The focus of TCG is on protecting user data and secrets (keys, passwords, certificates, etc.) from external software attack and theft. This greatly reduces the risk of identity and data theft. It is not TCG's intention to address DRM requirements. As a result, the specifications do not include provisions to prevent owner tampering.
    From my reading of the FAQ, TCG is taking the password protection some laptop BIOSes have and extending it to encryption services for the OS and applications. This allows the user (a.k.a. programs the human runs) to verify a person's identity, the computer's identity, and the computer's boot parameters. Thus, you might have your bank account information encrypted in a way which requires your password on your computer-- hard disk thieves are locked out.

    They keep saying this isn't DRM, but it's most of the building blocks you need for DRM. And most of the applications they mention are possible without hardware support via an encrypted filesystem. All you need for Palladium is an OS which refuses to boot without the right user, computer, and boot parameters.

    The other thing to note is that they keep stressing RAND (Reasonable And Non-Discriminatory) licenses. Non-discriminatory means every organization pays patent licenses on the same formula. If the formula doesn't contain provisions to allow for open source software, then open source software can't use the standard.

    1. Re:Not Palladium (or is it?), maybe not GPLable by Xtifr · · Score: 2, Interesting

      They keep saying this isn't DRM, but it's most of the building blocks you need for DRM.

      Quite true. On the other hand, this system does make it easy to implement what they are talking about (allowing the user to verify what's installed), whereas implementing reliable DRM is still going to be extremely difficult (given the ability to combine an emulator with a proxy to the encryption chip, which will provide the ability to examine all data going into or coming out of the chip).

      My guess (given the industry track record) is that the first few attempts to create DRM with this system will result in something that will fall pretty quickly to a determined and knowledgeable "attacker". And of course, none of this will plug the "analog hole". My guess is that we'll get a few rounds of attempted repression, which will fail, and eventually, they'll give up, rather than pouring more money into a "solution" that shows no signs of ever working. But I could be wrong - certainly I'm an optimist.

      The other thing to note is that they keep stressing RAND (Reasonable And Non-Discriminatory) licenses.

      That's a bigger issue in my eyes, at least in the short term. Of course, while it means no open source, it doesn't necessarily mean no licensed add-ons to open-source systems. Which is not a solution I like, but is better than nothing.

    2. Re:Not Palladium (or is it?), maybe not GPLable by Alsee · · Score: 4, Insightful

      Was TCG formed to specify Digital Rights Management technologies?
      No. The focus of TCG is on protecting user data and secrets (keys, passwords, certificates, etc.) from external software attack and theft.


      They are lying and I can prove it. This protection is based on concealing the encryption keys. There is absolutely NO justification for concealing these keys from the owner of the machine. Malicious software cannot press a physical button or switch. They could therefore allow the keys to be revealed based on a physical switch (perhaps requiring a password as well). Including such a switch preserves every single claimed benefit of the system.

      The ONLY justification for not allowing this is because the system IS IN FACT DESIGNED FOR THE PURPOSE OF DRM. If they allowed the owner of the machine to access his keys in this maner it would destroy the ability of the system to enforce DRM. It would destroy the ability for companies to enforce vendor/monopoly lock-in.

      -

      --
      - - You can't take something off the Internet! That's like trying to take pee out of a swimming pool.
  23. Re:Credit were Credit is due by nbvb · · Score: 2, Funny

    Which book is that, Dianetics?

  24. "Trusted" Computing Group... by hateddamntruth · · Score: 2, Insightful

    Only means what THEY can trust. It will surely have better security, but it is more in their interest than yours. Think of it this way: These corporations (Micro$oft in particular) are NOT on your side. Their only objective is to figure out ways to keep you trapped in their grasp, and, by so doing, capitalize on your dependence.

    I have a good idea where they are going with this whole "Trusted" Computing move. Things like open hardware standards and Free Software give you the freedom (MOST IMPORTANT WORD) to have excellent commodity products, as well as competition which acts in the best interest of the consumer by keeping manufacturers honest. The problem is that it diminishes the ability of a company like Micro$oft to control you. Their ONLY option would be to actually *compete* and *innovate*. Considering the incredible pace of Free Software development, they don't stand much of a chance to continue to reap the profits they have in the past. They know this VERY WELL.

    So, what do they do instead? Come up with the idea of Trusted Computing. Convince the public (the government especially) that Free/Open Software is somehow less secure (nice fat lie); Convince the government that Free Software is for terrorists (easy in this paranoid, self-righteous era); Convince the government to outlaw Free implementations and require proprietary ones provided by yours truly, Macro$haft.

    "He who has ears, let him hear". The encroachment of Big Brother is very real. Security for Big Brother; Paranoia for you; The Almighty Buck for them.

    They can never win unless we are ignorant enough to allow their FUD (fear, uncertainty, doubt) propaganda to become law. Be careful what you are made to believe. And be VERY careful WHAT and WHO you vote and pay for.

    hateddamntruth.