Groups | Search | Server Info | Keyboard shortcuts | Login | Register [http] [https] [nntp] [nntps]
Groups > linux.kernel > #1457264
| From | Pavel Machek <pavel@ucw.cz> |
|---|---|
| Newsgroups | linux.kernel |
| Subject | Re: [PATCH v5 0/8] Replay Protected Memory Block (RPMB) subsystem |
| Date | 2016-08-05 22:10 +0200 |
| Message-ID | <s2TBn-3Q8-7@gated-at.bofh.it> (permalink) |
| References | <rWnkS-2Af-19@gated-at.bofh.it> |
| Organization | linux.* mail to news gateway |
Hi! > Few storage technologies such is EMMC, UFS, and NVMe support RPMB > hardware partition with common protocol and frame layout. > The RPMB partition cannot be accessed via standard block layer, but by a > set of specific commands: WRITE, READ, GET_WRITE_COUNTER, and > PROGRAM_KEY. > Such a partition provides authenticated and replay protected access, > hence suitable as a secure storage. ...and that is suitable from locking devices from their owners, as Nokia N9 (aka brick, because Microsoft turned off support servers) teached me recently. So I have to ask -- what are non-evil uses for this? There were "secure extensions" mentioned before, but my understanding is that it currently has severe limitations making it unsuitable for mainline kernel. (IOW you can't event test the functionality if you are not Intel). Pavel -- (english) http://www.livejournal.com/~pavelmachek (cesky, pictures) http://atrey.karlin.mff.cuni.cz/~pavel/picture/horses/blog.html
Back to linux.kernel | Previous | Next | Find similar | Unroll thread
Re: [PATCH v5 0/8] Replay Protected Memory Block (RPMB) subsystem Pavel Machek <pavel@ucw.cz> - 2016-08-05 22:10 +0200
csiph-web