Hacker News new | ask | show | jobs
by pgeorgi 3777 days ago
It's much easier to add such a scheme to any platform than removing it when the vendor decided for you that this is what you want. If you want to lock the box down, put the firmware in flash, clip the ~WP pin, pour epoxy on it.

I guess the Raptor Eng folks aren't opposed to adding something more flexible to a later iteration (I'd propose securely measuring the firmware into some trusted external store in the style of TPM1.x and working from there), but for now the project is about helping undo the damage done to the ecosystem by providing an old-style "all open" platform again.