• KindredAffiliate@lemmy.world
      link
      fedilink
      English
      arrow-up
      46
      ·
      1 year ago

      It’s an open source bios. There are only builds for a certain few laptops and it involves opening it up and flashing the bios chip

      • KindredAffiliate@lemmy.world
        link
        fedilink
        English
        arrow-up
        29
        ·
        1 year ago

        If you want to disable Intel Management Engine, the always-on backdoor built into every Intel CPU and/or want as much software as possible on your machine to be FOSS

        Also it boots much faster than most stock bios.

          • mimichuu_@lemm.ee
            link
            fedilink
            English
            arrow-up
            6
            ·
            1 year ago

            Not that I know of, AMD is also soon going to make their own FOSS bios with OpenSIL so they’re generally the better option if you’re a privacy/libre software junkie.

            • pitajellybug@lemmy.world
              link
              fedilink
              English
              arrow-up
              3
              ·
              1 year ago

              As far as I know, OpenSIL stands for Open Silicon Initialization Library, and handles only the hardware initialisation part of the boot process. It may still require loading binary blobs like the Platform Security Processor (PSP), which is AMD’s version of Intel Management Engine

              • mimichuu_@lemm.ee
                link
                fedilink
                English
                arrow-up
                5
                ·
                1 year ago

                PSP is not the same thing as IME. Not even close. PSP doesn’t even have network access, much less remote computer control like the IME. Still proprietary, but if OpenSIL allows you to turn it off then we might actually be able to run a fully 100% libre modern desktop computer which is honestly pretty awesome.

                • spez@sh.itjust.works
                  link
                  fedilink
                  English
                  arrow-up
                  2
                  ·
                  1 year ago

                  Things like these and the overall general improvements to linux on a daily basis get me excited for a time when I could buy a Framework laptop with coreboot running linux without issues. Also no backdoors for big brother.

                  • mimichuu_@lemm.ee
                    link
                    fedilink
                    arrow-up
                    1
                    ·
                    1 year ago

                    Coreboot doesn’t disable the IME by the way. It just gets rid of some of it’s functionality blobs and sends a signal to it telling it to please disable itself. No one knows if that signal actually works. Only Intel themselves can actually fully remove it from a processor, like they did with the processors they sold to the NSA.