• interdimensionalmeme@lemmy.ml
    link
    fedilink
    arrow-up
    49
    arrow-down
    3
    ·
    2 years ago

    I always just kill my TPM chip. It’s so obvious tpm will be used in the future for application offline DRM. They will executed encrypted operations under the TPM veil and decompilers will become unusable.

  • shapis@lemmy.ml
    link
    fedilink
    arrow-up
    28
    ·
    2 years ago

    Would love this. I’m still getting the ftpm stutters and there’s no way to disable it in my motherboards bios.

    • ipkpjersi@lemmy.ml
      link
      fedilink
      arrow-up
      8
      ·
      edit-2
      2 years ago

      Wow I’m surprised you can’t disable it. I can disable it on my desktop BIOS (Gigabyte X570S Pro AX) and my work laptop BIOS (Dell G15).

  • RoundSparrow@lemmy.ml
    link
    fedilink
    arrow-up
    11
    ·
    2 years ago

    the module can cause intermittent stuttering, depending on which Ryzen processor you’re using. It appeared when the fTPM was in use, it would access its flash storage via a serial interface, and when doing so, held up activity by the rest of the system.

    • sp00nix@lemmy.ml
      link
      fedilink
      arrow-up
      4
      ·
      2 years ago

      Could this be why I get stuttering in games after enabling TPM installing windows 11?

  • argv_minus_one@beehaw.org
    link
    fedilink
    English
    arrow-up
    7
    ·
    2 years ago

    “Maybe use it for the boot-time ‘gather entropy from different sources,’ but clearly it should not be used at runtime.”

    Good idea. Ask it during boot/insmod for some hardware-random bits to seed Linux’s usual software-only CSPRNG, then just use that.

    And even that might not be a great idea. I wouldn’t be surprised if the fTPM RNG is subtly not-entirely-random, at some alphabet agency’s behest. I remember there being a controversy over rdrand for this reason…

    • pingveno@lemmy.ml
      link
      fedilink
      English
      arrow-up
      2
      ·
      2 years ago

      The fix with any possible issues with rdrand is the same here. When entropy is gathered from many sources including hardware instructions, any nefarious plant in the chip is drowned out in a sea of noise.

    • MystikIncarnate@lemmy.ca
      link
      fedilink
      English
      arrow-up
      1
      ·
      2 years ago

      Well, it’s an fTPM, aka software, and AFAIK, no software can truly have a random RNG.

      So it might be very good pseudo random at best.

      • argv_minus_one@beehaw.org
        link
        fedilink
        English
        arrow-up
        1
        ·
        2 years ago

        It could be only mostly firmware, with a hardware RNG.

        If not, and it uses a CSPRNG, then I don’t see much point in using it at all. Linux already has its own CSPRNG.

  • The Doctor@beehaw.org
    link
    fedilink
    English
    arrow-up
    7
    ·
    2 years ago

    Yup. I’ve been wondering if that was the thing that’s made the v6.4 kernels so unstable on Ryzen machines.

  • rastilin@kbin.social
    link
    fedilink
    arrow-up
    4
    ·
    2 years ago

    TPM is basically never for your benefit. It’s becoming a requirement because Microsoft is going to one day say “you can only run apps installed from the Windows Store, because everything else is insecure” and lock down the software market. Valve knows this which is why they’re going so hard on the Steam Deck and Linux.

  • nomadjoanne@lemmy.world
    link
    fedilink
    arrow-up
    1
    ·
    2 years ago

    Oh I disabled that a while ago because their hardware random number generator always returned 0xfffff…

    Honesty, hardware random number generation seems sketchy. Something you’d expect government backdoors to be in.

  • FunkyMonkey@feddit.de
    link
    fedilink
    arrow-up
    1
    ·
    2 years ago

    I’ve had a weird system-wide stutter for months and the usual googling and troubleshooting didn’t help… omg. This might be it. Thank you Linus and thank you op.