3 ms·
You're missing the point (as are the moderators, apparently): trust is a factor only when it comes to proprietary software. If you have to "trust Apple" to deal
by Digital-Citizen 8y ago
You're missing the point (as are the moderators, apparently): trust is a factor only when it comes to proprietary software. If you have to "trust Apple" to deal with Apple software, then you've lost any reason to trust them as they've already shown that they ought not be trusted -- both in principle (by distributing proprietary software) and in specific examples as per https://www.gnu.org/proprietary/malware-apple.html https://www.gnu.org/proprietary/malware-apple.html (only some of which aren't Apple's fault but merely run on Apple-made OSes, and some of which include bad business practices by Apple). Buying into claims ought not be needed and isn't needed except for proprietary software where such trust is apparently often misplaced. You can't tell if "the T2 chip is perfectly secure for this use case" because you don't know what runs on it. Apple claims a lot of things and one had good reason to believe Apple wouldn't, for instance, leave a remotely-exploitable vulnerability in iTunes unfixed for years after being notified about that vulnerability while governments exploited that vulnerability. But according to http://www.telegraph.co.uk/technology/apple/8912714/Apple-iTunes-flaw-allowed-government-spying-for-3-years.html http://www.telegraph.co.uk/technology/apple/8912714/Apple-iT... that's what Apple did.
If Apple distributed free software trusting Apple wouldn't enter into the discussion. We could inspect what Apple distributed, we'd be allowed to change what we don't like about the software Apple distributed to us, and we could distribute improved versions of that software to help others. No need to buy into uninspectable code we're not allowed to change or distribute further.
And the answer to the question you didn't answer which the original poster asked -- do you need a chip to do this task -- remains "no". Purism's hardware is proof by existence. With Purism's hardware switch there's no software involved to accomplish this feature and they (as far as I know) distribute a free software distro called "PureOS" (a GNU/Linux system) which also happens to have earned an FSF-approved distro entry.