On Mon, Aug 25, 2014 at 1:24 PM, David Hendricks dhendrix@google.com wrote:
After glancing thru this PSP (Platitude Spewing Presentation), it looks more like they are grafting the security model of ARM-based SoCs onto x86 where a masked ROM loads the next stage.
A couple kind of nice things they mention:
- "Isolated on-chip ROM and SRAM" - So this may be somewhat more constrained
than the multi-megabyte blobs for MEs?
- "Secure Boot does not require the system ROM image to be signed"
Not so nice: "Access to system memory / resources". Ugh.
well, we all know how well that's worked fro the ME.
so, another insecure x86 platform. Great.
ron