Ukugxekwa kwenqubomgomo ye-Open Source Foundation mayelana ne-firmware

U-Ariadne Conill, umdali wesidlali somculo i-Audacious, umsunguli wephrothokholi ye-IRCv3, kanye nomholi weqembu lezokuphepha lase-Alpine Linux, igxeke inqubomgomo ye-Open Source Foundation mayelana ne-firmware kanye ne-microcode yobunikazi, kanye nemithetho yesinyathelo esithi "Hlonipha Inkululeko Yakho", esihlose ukuqinisekisa amadivayisi ahlangabezana nezidingo zobumfihlo kanye nenkululeko yomsebenzisi. Ngokusho kuka-Ariadna, inqubomgomo ye-Foundation ikhawulela abasebenzisi kwihadiwe esiphelelwe yisikhathi, ikhuthaza abakhiqizi abafuna isitifiketi sokwenza kube nzima kakhulu ukwakheka kwehadiwe yabo, ivimbela ukuthuthukiswa kwezindlela zamahhala esikhundleni se-firmware yobunikazi, futhi ivimbela ukusetshenziswa kwemikhuba efanele yokuphepha.

Inkinga ibangelwa ukuthi isitifiketi esithi "Hlonipha Inkululeko Yakho" singatholwa kuphela idivayisi lapho yonke isofthiwe enikeziwe kufanele ibe mahhala, kuhlanganise ne-firmware elayishwe kusetshenziswa i-CPU enkulu. Ngesikhathi esifanayo, i-firmware esetshenziswa kuma-processor angeziwe ashumekiwe ingahlala ivaliwe, uma ingasho izibuyekezo ngemuva kokuthi idivayisi iwela ezandleni zomthengi. Isibonelo, idivayisi kufanele ithunyelwe nge-BIOS yamahhala, kodwa i-microcode elayishwe i-chipset ku-CPU, i-firmware kumadivayisi e-I/O, kanye nokucushwa kokuxhumana kwangaphakathi kwe-FPGA kungase kuhlale kuvaliwe.

Kuvela isimo sokuthi uma i-firmware yobunikazi ilayishwa ngesikhathi sokuqaliswa yisistimu yokusebenza, okokusebenza akukwazi ukuthola isitifiketi esivela ku-Open Source Foundation, kodwa uma i-firmware ngezinjongo ezifanayo ilayishwa i-chip ehlukile, idivayisi ingaqinisekiswa. Le ndlela ibhekwa njengephutha, ngoba esimweni sokuqala i-firmware ibonakala, umsebenzisi ulawula ukulayishwa kwayo, uyazi ngakho, angakwazi ukuqhuba ukuhlolwa kokuphepha okuzimele, futhi angashintshwa kalula uma i-analogue yamahhala itholakala. Esimweni sesibili, i-firmware iyibhokisi elimnyama, okunzima ukuhlola futhi ukuba khona komsebenzisi okungenzeka angazi, ekholelwa ngamanga ukuthi yonke isofthiwe ingaphansi kokulawula kwakhe.

Njengesibonelo sokukhohlisa okuhloswe ekutholeni isitifiketi se-Respects Your Freedom, i-smartphone ye-Librem 5 inikezwa, abathuthukisi bayo, ukuze bathole futhi basebenzise izinjongo zokuthengisa uphawu lokuhambisana nezidingo ze-Free Software Foundation, basebenzise i- iphrosesa ehlukile ukuze uqalise okokusebenza futhi ulayishe i-firmware. Ngemva kokuphothulwa kwesigaba sokuqala, ukulawula kudluliselwe ku-CPU eyinhloko, futhi iphrosesa eyisizayo yavalwa. Ngenxa yalokho, isitifiketi sasingase sitholakale ngokusemthethweni, njengoba i-kernel ne-BIOS ayizange ilayishe ama-blobs kanambambili, kodwa ngaphandle kokwethula izinkinga ezingadingekile, akukho lutho olwaluzoshintsha. Kuyathakazelisa ukuthi ekugcineni zonke lezi zinkinga zaba yize futhi iPurism ayizange ikwazi ukuthola isitifiketi.

Izinkinga zokuphepha nokuzinza nazo zidalwe yizincomo ze-Free Software Foundation zokusebenzisa i-kernel. Linux I-firmware ye-Libre ne-Libreboot, esuliwe ama-blobs afakwe kwi-hardware. Ukulandela lezi zincomo kungaholela ezinkingeni ezahlukahlukene, futhi ukufihla izexwayiso mayelana nesidingo sokufaka izibuyekezo ze-firmware kungaholela ezinkingeni ezingakalungiswa kanye nezinkinga zokuphepha ezingaba khona (isibonelo, ngaphandle kokubuyekeza i-firmware, uhlelo luzohlala lusengozini yokuhlaselwa yi-Meltdown ne-Spectre). Ukukhubaza izibuyekezo ze-firmware kubhekwa njengokungenangqondo, uma kubhekwa ukuthi inguqulo efakiwe ye-firmware efanayo, equkethe ubuthakathaka kanye nezimbungulu ezingakalungiswa, ilayishwa ngesikhathi sokuqaliswa kwe-chip.

Esinye isikhalazo siphathelene nokungakwazi ukuthola isitifiketi se-Respect Your Freedom semishini yesimanje (imodeli entsha yamakhompuyutha aphathekayo aqinisekisiwe ihlehlela emuva ngo-2009). Ukunikezwa isitifiketi kwamadivayisi amasha kuphazanyiswa ubuchwepheshe obufana ne-Intel ME. Isibonelo, ikhompuyutha ephathekayo ye-Framework iza ne-firmware evulekile futhi igxile ekulawuleni okuphelele komsebenzisi, kodwa mancane amathuba okuthi i-Free Software Foundation iyincome ngenxa yokusebenzisa ama-Intel processors anobuchwepheshe be-Intel ME (ukuze ucime i-Intel Management Engine, wena ingasusa wonke amamojula e-Intel ME ku-firmware , engahlobene nokuqaliswa kokuqala kwe-CPU, futhi ivale isilawuli se-Intel ME esiyinhloko isebenzisa inketho engabhaliwe, isibonelo, eyenziwa yi-System76 kanye ne-Purism kuma-laptops abo).

Isibonelo futhi ilaptop ye-Novena, ethuthukiswe ngokuhambisana nemigomo ye-Open Hardware futhi ehlinzekwa ngamashayeli omthombo ovulekile kanye ne-firmware. Njengoba ukusebenza kwe-GPU ne-WiFi ku-Freescale i.MX 6 SoC bekudinga ama-blobs okulayisha, naphezu kweqiniso lokuthi bezingakalungiswa izinguqulo zamahhala zalawa mabhulophu asathuthukiswayo, ukuze kuqinisekiswe i-Novena, i-Open Source Foundation idinge ukuthi izingxenye zikhutshazwe ngomshini. Ukushintshwa kwamahhala kwagcina kudaliwe futhi kwenziwa kutholakale kubasebenzisi, kodwa ukuqinisekiswa bekuyovimbela abasebenzisi ukuthi basebenzise njengoba i-GPU ne-WiFi, ezazingenayo i-firmware yamahhala ngesikhathi sokuthola isitifiketi, bekuzodingeka ukuthi zikhutshazwe ngokomzimba uma zithunyelwa nge-Respect Your. Isitifiketi senkululeko. Ngenxa yalokho, umthuthukisi we-Novena wenqabile ukwenza isitifiketi se-Hlonipha Inkululeko Yakho, futhi abasebenzisi bathole idivayisi egcwele, hhayi idivayisi ehlutshiwe.

Source: opennet.ru

Thenga ukusingathwa okuthembekile kwamasayithi anokuvikelwa kwe-DDoS, amaseva e-VPS VDS 🔥 Thenga ukusingathwa kwewebhusayithi okuthembekile ngokuvikelwa kwe-DDoS, amaseva e-VPS VDS | ProHoster