... | @@ -41,6 +41,7 @@ Effort: **mostly done**** |
... | @@ -41,6 +41,7 @@ Effort: **mostly done**** |
|
Effort: **1-2 months****
|
|
Effort: **1-2 months****
|
|
These processes are not well documented, so the effort is not predictable. The goal would be to establish a trust chain from recovery through system boot.
|
|
These processes are not well documented, so the effort is not predictable. The goal would be to establish a trust chain from recovery through system boot.
|
|
- eliminates the ability to flash alternate firmware. Image flashing is restricted to firmware images that are signed/generated by platform builds.
|
|
- eliminates the ability to flash alternate firmware. Image flashing is restricted to firmware images that are signed/generated by platform builds.
|
|
|
|
- eliminates a DIY hacker's ability to disassemble the sitehub and repurpose the Tinkerboad S for private use or resale.
|
|
|
|
|
|
### Full Disk Encryption
|
|
### Full Disk Encryption
|
|
Effort: **1-2 weeks****
|
|
Effort: **1-2 weeks****
|
... | | ... | |