logoalt Hacker News

charcircuittoday at 5:48 AM3 repliesview on HN

Attestation isn't against being able to do whatever you want with your own device. It just means that if you want other people to trust your custom device you need to get them to trust your signing key.


Replies

dns_snektoday at 6:54 AM

Pray tell, how might you get them to trust your signing key? Do you just email Mr. Pichai and ask nicely, is that enough?

show 1 reply
RandomGerm4ntoday at 9:16 AM

The intention behind it doesn't matter at all. In the end, it just means that only a few major operating systems are allowed, and the market is divided up among the established manufacturers. Anyone new to the market faces a major problem right off the bat, and trying to build something yourself doesn't work either.

foltiktoday at 6:53 AM

Not sure if you’re being deliberately obtuse, but a signing key means nothing by itself. What exactly do you think is being attested TO?

Thats right: that the user can’t do what they want with their own device. Obviously your key wouldn’t be trusted if they could.

There is no other conceivable purpose that attestation could serve.

show 2 replies