[coreboot] Does the 62xx Series Opteron work *securely* without microcode?

Taiidan at gmx.com Taiidan at gmx.com
Thu Jan 26 02:27:38 CET 2017


On 01/25/2017 01:35 PM, ron minnich wrote:
> Tim and Aaron are right. If you have a machine with microcode updates, you
> should load the updates. I have never understood the objections to
> microcode blobs. If you accept the microcode that's on the machine already,
> then objecting to the microcode blob is creating a distinction without a
> difference.
>
> ron
Thanks for the input guys (and yeah I meant microcode updates)

I suppose this reasoning makes sense, although still though I like the 
idea of something working out of the box with no day one patches (with 
63xx opteron, if for whatever reason updates aren't applied it is game over)

I wonder if OEM's bother with meaningful security when they fab the 
chips to make sure they aren't messed around with...



More information about the coreboot mailing list