Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

>What other keys should they pre-install?

4/5 biggest linux distros. BSD, maybe? Does that seem unreasonable? Would you complain if these keys were added?

>Let's face it, most motherboards will run Windows, so it makes sense to ship Microsoft's keys (also they have to do that to get certified by Windows). Do you really expect OEMs to go hunting down keys from Red Hat, SuSE and Canonical?

Gosh, no. That sounds super hard. Three whole public keys?

>What about all the other little distros?

Give the end user an easy way to add their keys and I'm happy.

>And the CA model will definitely not work

You seem to be missing the point. This IS the CA model.



> Would you complain if these keys were added?

Basically, yeah - it'd remove much of the legal incentive for Microsoft to sign other operating systems, and it'd fuck over the smaller distributions as a result.

I don't think anybody's happy with Microsoft being the effective industry CA here (Microsoft certainly aren't), but nobody else has shown any real interest in taking responsibility for doing it.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: