Sukar manufofin Gidauniyar Buɗewa game da firmware

Ariadne Conill, mahaliccin Audacious music player, mai fara IRCv3 protocol, kuma shugabar ƙungiyar tsaro ta Alpine Linux, sun soki manufofin Gidauniyar Open Source kan firmware da microcode na mallakar kamfani, da kuma ƙa'idodin shirin "Respect Your Freedom", wanda ke da nufin tabbatar da na'urori waɗanda suka cika buƙatun sirrin mai amfani da 'yanci. A cewar Ariadna, manufar Gidauniyar ta iyakance masu amfani da kayan aiki na zamani, tana ƙarfafa masana'antun da ke neman takardar shaida su ƙara rikitarwa a tsarin kayan aikinsu, tana hana haɓaka madadin kyauta ga firmware na mallakar kamfani, kuma tana hana amfani da ingantattun hanyoyin tsaro.

Matsalar ta samo asali ne saboda cewa takardar shaidar "Mutunta 'Yancin ku" ba za a iya samun ta kawai ta hanyar na'urar da duk software da aka kawo ba dole ne su kasance kyauta, ciki har da firmware da aka loda ta amfani da babban CPU. A lokaci guda, firmware da aka yi amfani da shi akan ƙarin na'urori masu haɗawa na iya kasancewa a rufe, idan ba su nuna ɗaukakawa ba bayan na'urar ta fada hannun mabukaci. Misali, dole ne na'urar ta jigilar da BIOS kyauta, amma microcode da aka ɗora wa kwakwalwar kwamfuta zuwa CPU, firmware zuwa na'urorin I/O, da daidaitawar haɗin FPGA na ciki na iya kasancewa a rufe.

Wani yanayi ya taso cewa idan an ɗora kayan firmware a lokacin farawa ta tsarin aiki, kayan aikin ba za su iya karɓar takaddun shaida daga Open Source Foundation ba, amma idan firmware don dalilai iri ɗaya an ɗora shi ta wani guntu daban, na'urar za a iya tabbatar da ita. Ana ɗaukar wannan hanyar a matsayin mara kyau, tunda a farkon yanayin firmware yana bayyane, mai amfani yana sarrafa lodinsa, ya san game da shi, yana iya gudanar da binciken tsaro mai zaman kansa, kuma ana iya maye gurbinsa cikin sauƙi idan ana samun analog na kyauta. A cikin akwati na biyu, firmware shine akwatin baƙar fata, wanda ke da wuyar dubawa kuma mai yiwuwa mai amfani ba zai sani ba, yana yin imani da cewa duk software yana ƙarƙashin ikonsa.

A matsayin misali na magudi da nufin samun takardar shaidar Mutuncin ku, an ba da wayar hannu ta Librem 5, wanda masu haɓakawa, don samuwa da amfani da su don tallace-tallace, alamar yarda da buƙatun Gidauniyar Software na Kyauta, sun yi amfani da raba na'ura mai sarrafawa don fara kayan aiki da ɗaukar firmware. Bayan kammala matakin farawa, an canja wurin sarrafawa zuwa babban CPU, kuma an kashe na'ura mai ba da taimako. A sakamakon haka, ana iya samun takardar shaidar a hukumance, tun da kernel da BIOS ba su ɗora nauyin binaryar blobs ba, amma ban da gabatar da matsalolin da ba dole ba, babu abin da zai canza. Abin sha'awa, a ƙarshe duk waɗannan rikice-rikice sun kasance a banza kuma Purism bai taɓa samun takardar shaida ba.

Shawarwarin Gidauniyar Free Software Foundation game da amfani da kernel suma suna haifar da matsalolin tsaro da kwanciyar hankali. Linux Firmware na Libre da Libreboot, wanda aka share daga ɓoyayyun ɓoyayyun da aka ɗora a cikin kayan aikin. Bin waɗannan shawarwari na iya haifar da matsaloli daban-daban, kuma ɓoye gargaɗin game da buƙatar shigar da sabuntawar firmware na iya haifar da kurakurai marasa gyara da kuma matsalolin tsaro masu yuwuwa (misali, ba tare da sabunta firmware ɗin ba, tsarin zai ci gaba da fuskantar hare-haren Meltdown da Spectre). Ana ɗaukar kashe sabuntawar firmware a matsayin abin ban mamaki, ganin cewa an ɗora sigar da aka saka ta firmware ɗin iri ɗaya, wanda ke ɗauke da rauni da kwari marasa gyara, yayin fara guntu.

Wani korafi ya shafi rashin samun takardar shedar girmama 'yancin ku don kayan aikin zamani (sabon samfurin kwamfyutocin da aka tabbatar tun daga 2009). Takaddun shaida na sabbin na'urori yana fuskantar cikas ta hanyar fasaha kamar Intel ME. Misali, kwamfutar tafi-da-gidanka ta Framework tana zuwa tare da buɗaɗɗen firmware kuma tana mai da hankali kan cikakkiyar kulawar mai amfani, amma da wuya Gidauniyar Software ta Kyauta ta taɓa ba da shawararsa saboda amfani da na'urori masu sarrafa Intel tare da fasahar Intel ME (don kashe Injin Gudanar da Intel, ku. zai iya cire duk Intel ME modules daga firmware, ba da alaƙa da farkon farawa na CPU ba, kuma ya kashe babban mai sarrafa Intel ME ta amfani da zaɓi mara izini, wanda, alal misali, System76 da Purism ke yi a cikin kwamfyutocin su).

Misali kuma ita ce kwamfutar tafi-da-gidanka ta Novena, wacce aka ƙera ta bisa ƙa'idodin Buɗe Hardware kuma ana kawota tare da direbobi masu buɗewa da firmware. Tun lokacin da GPU da WiFi ke aiki a cikin Freescale i.MX 6 SoC suna buƙatar ɗaukar nauyi, duk da cewa har yanzu ba a riga an shirya nau'ikan waɗannan ɓangarorin ba a cikin haɓakawa, don tabbatar da Novena, Open Source Foundation ya buƙaci waɗannan abubuwan da aka gyara za a kashe su ta hanyar injiniya. An ƙirƙiri masu maye gurbin kyauta kuma an samar da su ga masu amfani, amma takaddun shaida zai hana masu amfani amfani da su tunda GPU da WiFi, waɗanda ba su da firmware kyauta a lokacin takaddun shaida, dole ne su kasance naƙasasshe ta jiki idan an jigilar su tare da mutunta ku. Takardun 'yanci . Sakamakon haka, mai haɓaka Novena ya ƙi amincewa da takardar shaidar mutunta 'Yancin ku, kuma masu amfani sun sami cikakken aiki, ba na'urar da aka tsiri ba.

source: budenet.ru

Sayi amintaccen masauki don shafuka tare da kariyar DDoS, sabar VPS VDS 🔥 Sayi ingantaccen masaukin yanar gizo tare da kariyar DDoS, sabar VPS VDS | ProHoster