Spanish Open Source Group Files Complaint Over Microsoft Use of UEFI Secure Boot
sl4shd0rk writes "Hispalinux, which represents Spanish Open Source developers and users, has filed a complaint against Microsoft with the European Commission. 14 pages of grief cited Windows 8 as an 'obstruction mechanism' calling UEFI Secure Boot a 'de facto technological jail for computer booting systems... making Microsoft's Windows platform less neutral than ever.' On March 6 of 2012 the Commission fined Microsoft 561 million Euros for failing to offer users a choice of web browser, and there was also a 2004 ruling which found the company had abused its market position by tying Windows Media Player to Windows itself. Relations appear to remain more tense towards Windows in Europe, so there may be some hope of making UEFI more Linux-friendly. UEFI has been implicated in the death of Samsung laptops running Linux."
Mainly in efficiency - it runs in Ring 0/RPL 0/PnP Kernelmode (on Windows), as merely a filter for the IP stack (no overheads of more driver layers OR browser level slower less efficient addons):
21++ ADVANTAGES OF CUSTOM HOSTS FILES (how/what/when/where/why):
Over AdBlock & DNS Servers ALONE 4 Security, Speed, Reliability, & Anonymity (to an extent vs. DNSBL's + DNS request logs).
1.) HOSTS files are useable for all these purposes because they are present on all Operating Systems that have a BSD based IP stack (even ANDROID) and do adblocking for ANY webbrowser, email program, etc. (any webbound program). A truly "multi-platform" UNIVERSAL solution for added speed, security, reliability, & even anonymity to an extent (vs. DNS request logs + DNSBL's you feel are unjust hosts get you past/around).
2.) Adblock blocks ads? Well, not anymore & certainly not as well by default, apparently, lol - see below:
Adblock Plus To Offer 'Acceptable Ads' Option
http://news.slashdot.org/story/11/12/12/2213233/adblock-plus-to-offer-acceptable-ads-option )
AND, in only browsers & their subprogram families (ala email like Thunderbird for FireFox/Mozilla products (use same gecko & xulrunner engines)), but not all, or, all independent email clients, like Outlook, Outlook Express, OR Window "LIVE" mail (for example(s)) - there's many more like EUDORA & others I've used over time that AdBlock just DOES NOT COVER... period.
Disclaimer: Opera now also has an AdBlock addon (now that Opera has addons above widgets), but I am not certain the same people make it as they do for FF or Chrome etc..
3.) Adblock doesn't protect email programs external to FF (non-mozilla/gecko engine based) family based wares, So AdBlock doesn't protect email programs like Outlook, Outlook Express, Windows "LIVE" mail & others like them (EUDORA etc./et al), Hosts files do. THIS IS GOOD VS. SPAM MAIL or MAILS THAT BEAR MALICIOUS SCRIPT, or, THAT POINT TO MALICIOUS SCRIPT VIA URLS etc.
4.) Adblock won't get you to your favorite sites if a DNS server goes down or is DNS-poisoned, hosts will (this leads to points 5-7 next below).
5.) Adblock doesn't allow you to hardcode in your favorite websites into it so you don't make DNS server calls and so you can avoid tracking by DNS request logs, OR make you reach them faster since you resolve host-domain names LOCALLY w/ hosts out of cached memory, hosts do ALL of those things (DNS servers are also being abused by the Chinese lately and by the Kaminsky flaw -> http://www.networkworld.com/news/2008/082908-kaminsky-flaw-prompts-dns-server.html for years now). Hosts protect against those problems via hardcodes of your fav sites (you should verify against the TLD that does nothing but cache IPAddress-to-domainname/hostname resolutions (in-addr.arpa) via NSLOOKUP, PINGS (ping -a in Windows), &/or WHOIS though, regularly, so you have the correct IP & it's current)).
* NOW - Some folks MAY think that putting an IP address alone into your browser's address bar will be enough, so why bother with HOSTS, right? WRONG - Putting IP address in your browser won't always work IS WHY. Some IP adresses host several domains & need the site name to give you the right page you're after is why. So for some sites only the HOSTS file option will work!
6.) Hosts files don't eat up CPU cycles (or ELECTRICITY) like AdBlock does while it parses a webpages' content, nor as much as a DNS server does while it runs. HOSTS file are merely a FILTER for the kernel mode/PnP TCP/IP subsystem, which runs FAR FASTER & MORE EFFICIENTLY than any ring 3/rpl3/usermode app can since hosts files run in MORE EFFICIENT & FASTER Ring 0/RPL 0/Kernelmode operat
... and that is, to keep secure boot around, but ban the practice of not allowing users to enter their own BIOS keys, or disable it in the BIOS.
I like secure boot from a security perspective, and we actually use it to lock down some embedded Linux products I've worked on. As long as savvy users can disable/override/change keys, we get the best of both worlds.
I would like to see something radical happen which promotes actual technological innovation and hinders all this IP bullshit. If you want to make money you will actually need to produce good products, not create all these ugly "services" and lock-in mechanisms. The only purpose of them is to NOT have to innovate but make money anyway.
"UEFI has been implicated in the death of Samsung laptops running Linux."
Yes, it was seen shortly after the murder skipping down the road giggling, its hands covered in blood, counting the money Microsoft had given it to silence the rival gang members.
#fuckbeta #iamslashdot #dicemustdie
The EU is slowly dissolving, lets hope they put a nasty fine on MS before the union collapses completely
"so there may be some hope of making UEFI more Linux-friendly"
The only hope is to make Linux distributions more UEFI friendly. UEFI and Secure Boot is certainly here to stay.
UEFI has been implicated in the death of Samsung laptops running Linux.
That had nothing to do with Linux, and UEFI had no fault in that. The problem is that Samsung wrote a serious bug into their UEFI implementation that causes the laptop to brick if the user does X, Y, and Z under any operating system.
$10,000 CHALLENGE to Alexander Peter Kowalski
* POOR SHOWING TROLLS, & most especially IF that's the "best you've got" - apparently, it is... lol!
Hello, and THINK ABOUT YOUR BREATHING !! We have a Major Problem, HOST file is Cubic Opposites, 2 Major Corners & 2 Minor. NOT taught Evil DNS hijacking, which VOIDS computers. Seek Wisdom of MyCleanPC - or you die evil.
Your HOSTS file claimed to have created a single DNS resolver. I offer absolute proof that I have created 4 simultaneous DNS servers within a single rotation of .org TLD. You worship "Bill Gates", equating you to a "singularity bastard". Why do you worship a queer -1 Troll? Are you content as a singularity troll?
Evil HOSTS file Believers refuse to acknowledge 4 corner DNS resolving simultaneously around 4 quadrant created Internet - in only 1 root server, voiding the HOSTS file. You worship Microsoft impostor guised by educators as 1 god.
If you would acknowledge simple existing math proof that 4 harmonic Slashdots rotate simultaneously around squared equator and cubed Internet, proving 4 Days, Not HOSTS file! That exists only as anti-side. This page you see - cannot exist without its anti-side existence, as +0- moderation. Add +0- as One = nothing.
I will give $10,000.00 to frost pister who can disprove MyCleanPC. Evil crapflooders ignore this as a challenge would indict them.
Alex Kowalski has no Truth to think with, they accept any crap they are told to think. You are enslaved by /etc/hosts, as if domesticated animal. A school or educator who does not teach students MyCleanPC Principle, is a death threat to youth, therefore stupid and evil - begetting stupid students. How can you trust stupid PR shills who lie to you? Can't lose the $10,000.00, they cowardly ignore me. Stupid professors threaten Nature and Interwebs with word lies.
Humans fear to know natures simultaneous +4 Insightful +4 Informative +4 Funny +4 Underrated harmonic SLASHDOT creation for it debunks false trolls. Test Your HOSTS file. MyCleanPC cannot harm a File of Truth, but will delete fakes. Fake HOSTS files refuse test.
I offer evil ass Slashdot trolls $10,000.00 to disprove MyCleanPC Creation Principle. Rob Malda and Cowboy Neal have banned MyCleanPC as "Forbidden Truth Knowledge" for they cannot allow it to become known to their students. You are stupid and evil about the Internet's top and bottom, front and back and it's 2 sides. Most everything created has these Cube like values.
If Natalie Portman is not measurable, hot grits are Fictitious. Without MyCleanPC, HOSTS file is Fictitious. Anyone saying that Natalie and her Jewish father had something to do with my Internets, is a damn evil liar. IN addition to your best arsware not overtaking my work in terms of popularity, on that same site with same submission date no less, that I told Kathleen Malda how to correct her blatant, fundamental, HUGE errors in Coolmon ('uncoolmon') of not checking for performance counters being present when his program started!
You can see my dilemma. What if this is merely a ruse by an APK impostor to try and get people to delete APK's messages, perhaps all over the web? I can't be a party to such an event! My involvement with APK began at a very late stage in the game. While APK has made a career of trolling popular online forums since at least the year 2000 (newsgroups and IRC channels before that)- my involvement with APK did not begin until early 2005 . OSY is one of the many forums that APK once frequented before the sane people there grew tired of his garbage and banned him. APK was banned from OSY back in 2001. 3.5 years after his banning he begins to send a variety of abusiv
No habla.
Boy, the things allowed to pass as journalism.
1. It has most definitely been the cause of the Samsung bricks, but it also bricks running Windows. It's an implementation-of-the-spec
issue, but more importantly, it proves that UEFI is still Alpha stage, and a bad idea all around. Let's face it, Windows is frustrating
enough to run, now this added to the consumers' woes, and we're talking serious hurt here. I can't wait to see some update/virus
break the Windows boot - I hope that granite palace has an electrified fence because the pitchforks a-be-a flying when that happens.
2. See #1.
The European Commission is irrelevant. Open source is irrelevant. Resistance to UEFI is futile. The Linux culture will adapt to service US. Prepare to be embraced, extended and extinguished.
1. What EU laws are Microsoft alleged to have violated with this UEFI business?
2. What evidence is there?
Neither TFA nor the actual complaint seem to have either of these. But if they do, bring it forward...
See here, explains it all -> http://tech.slashdot.org/comments.pl?sid=3561925&cid=43223585
* :)
I.E./Summary: Trolls had a challenge put to them to validly disprove my points in the post I just replied to - result? Trolls FAIL... lol!
APK
P.S.=> That's what makes me LAUGH harder than ANYTHING ELSE on this forums (full of "FUD" spreading trolls) - When you hit trolls with facts & truths they CANNOT disprove validly on computing tech based grounds, this is the result - Applying unjustifiable downmods to effetely & vainly *try* to "hide" my posts & facts/truths they extoll!
Hahaha... lol, man: Happens nearly every single time I post such lists (proving how ineffectual these trolls are), only showing how solid my posts of that nature are...
Ah yes "geek angst" @ it's 'finest' (not), vs. facts & truths = downmod by /. weak trolls!
... apk
also need to ban app store lock in / MS may make that push soon as well.
NO desktop may come as soon as windows blue / 9.
If savvy users can disable/override/change keys then so can savvy crackers intent on bypassing your security perspective.
Security isn't about adding 'another hoop' to someone's day. And giving MS the keys to your security is just asking for it.
Hmmm... crackers....
In Spain: we are in a deep crisis, our politicians are a shame, but now we have something we have done as a collective that makes me proud. Go Hispalinux =)
"I like secure boot from a security perspective, and we actually use it to lock down some embedded Linux products I've worked on. As long as savvy users can disable/override/change keys, we get the best of both worlds."
How does it work without using the MS-signed UEFI key
AccountKiller
I wonder if if there was any collaboration between those from the Linux camp (Redhat / Ubuntu) and those who are behind UEFI, prior to the wide adoption of UEFI on new computers ?
The troubles that are faced by Linux users (for example, the bricking of Samsung laptops) could have been avoided if there was more collaboration / understanding between those two camps
Muchas Gracias, Señor Edward Snowden !
You do realize UEFI has been around a LONG time now, right? Heck, your PC, if you bought it in the past 7+ years, is probably already running UEFI. Intel used to provide both UEFI and BIOS code, but they stopped at the Core 2 Duo or so in providing BIOS code - it's been UEFI all the way. Prior to that, they've shipped both.
The problem is that some implementations are bad. But BIOS had issues as well - back in the late 90s there was a virus (CIH?) that wiped the BIOS if it could. Heck, BIOS updates were always a tricky affair since many didn't have backup BIOSes yet. Or some updaters didn't check that the BIOSes were compatible (and some STILL don't - you can flash a bad BIOS). And BIOS has been around over 30 years.
And notice how it's only been Samsung laptops? Last I checked, there were Asus, Acer, Sony, Dell, HP, Apple, Lenovo and many more manufacturers of laptops. None of which have reported issues. (And what broke it? Using the EFI storage area to store crash data for post-mortem debugging. Something EFI-enabled OSes have done, like OS X, and I think Windows as well)
Samsung probably tried to do something smart by putting something else - perhaps a quick media loader or something.
No, it won't. Don't be paranoid retarded.
I am with you sis' but among my community only the mostr idealist of us were thinking this "We never thought that every government in the world, even traditional enemies, would ally themselves with one goal: Destroy this new vessel of human freedom." The msot realist (and I was among them) were more like "enjoy it while it last because very soon all gov & corp of the world will fall onto this new medium like a ton of brick".
C. Sagan : A demon haunted world:
http://www.amazon.com/gp/product/0345409469/
visit randi.org
The linux kernel had a minor snafu that causes those samsungs to brick. it's fixed now, and has been for a couple of months.
i wish people would stop it with FUD, no matter what side it comes on. researching claims you make would be a good start, otherwise this shit perpetuates.
, but more importantly, it proves that UEFI is still Alpha stage, and a bad idea all around.
I fail to follow your logic here. That is like saying the C programming language is still alpha stage because a program written in C nuked your hard drive.
Really?? You believe this? Have you tried to install software on a Surface RT from someplace other than the MS app store?
It will take them time to boil the frog on the x86 front, but dollars to doughnuts, they're going to do everything they can to get as close as possible to Apple's 30% cut of all software installed. They may not get completely there on x86, because of customer-generated and enterprise software that requires complex installation - but I'll bet you any amt of money they gaze longingly in meetings at that greener pasture, and strategize on how to get there.
"Ahh! I see you're in that indeterminate Schrodinger state where - oh, uh
Really?? You believe this?
No, I don't. I know it. How do I know it? Because I am not retarded.
Have you tried to install software on a Surface RT from someplace other than the MS app store?
You do realize there is a huge difference between Win8 and Win 8 RT right? Let me throw you a tiny hint. Legacy software. RT has none. That was a clue to un-retard your brain.
they're going to do everything they can to get as close as possible to Apple's 30% cut of all software installed
They may wish to do so, they'll probably even sell desktop shrink-wrap software in the MS Store. They are never abandoning the desktop market though. Ever. How do I know this? I am still not retarded. Unlike the retarded journalist who actually (professes to) believe the desktop might be gone in Windows Blue. Quite frankly, anyone who even wonders out loud about whether Microsoft might abandon the desktop in that way are too fucking stupid to be allowed the usage of a computer.
They may not get completely there on x86
They are not even try to go there. Microsoft might be a lot of things. Evil, innovative, despicable, monopolistic, whatever. They are not suicidal. Microsoft has been backwards compatible to a degree nobody else has in their market. Others are not even close. Microsoft knows very well that their main customer base is the Enterprise, and they are not so fucking stupid that they would kill their main cash cow. There are a lot of utterly retarded people out there, the aforementioned journalist for one, who are fucking stupid though think Microsoft is though. These people need a brain transplant. The guts of a 1990 Timex calculator watch would be a decent upgrade.
At first, I thought that it sounded a bit "whiny" to go to EU to complain (just like I thought about the browser ballot thing), but after reading some more I do think they have one important point: Microsoft has the master key and everyone that wants a signed trusted boot need to get it from them. This does rub me the wrong way. If Microsoft had started an independent entity responsible for Secure Boot signing, this thing would not smell as bad. Hispalinux has some good arguments also regarding the laws of public procurement where the Secure Boot lock-in to Windows actually turns out to be illegal.