this post was submitted on 18 Dec 2024
303 points (98.1% liked)

Technology

60004 readers
3117 users here now

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related content.
  3. Be excellent to each another!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, to ask if your bot can be added please contact us.
  9. Check for duplicates before posting, duplicates may be removed

Approved Bots


founded 2 years ago
MODERATORS
 

TP-link is reportedly being investigated over national security concerns linked to vulnerabilities in its very popular routers.

you are viewing a single comment's thread
view the rest of the comments
[–] [email protected] 34 points 1 day ago (2 children)

I'd personally hope they just force open sourcing their firmwares if they want to stay in the market. I really like my Omada stuff, ubiquiti is just a tough pill to swallow on price.

[–] tty5 9 points 1 day ago (2 children)

They (FCC) forced firmwares being signed so nobody can install their own on the off chance it unlocks TX power or frequencies not allowed by FCC.

[–] [email protected] 5 points 20 hours ago

They should undo this and just prosecute people who abuse the firmware

[–] [email protected] 13 points 1 day ago (1 children)

Can't say I've ever seen an example of signed firmware that didn't exist to further exploit the working class.

[–] [email protected] -1 points 19 hours ago (2 children)

You've never used Linux?

Signed firmware just means you can prove a given key was used to sign something. Most Linux distributions sign their packages so you know one of the trusted keys from the maintainers was used to sign the packages (and yes, this includes firmware), which prevents a man-in-the-middle from modifying packages.

The only problem I have with signed firmware is if there's no way to change the acceptable keys. Signing itself is an important security feature, its only problematic if the user can't upload their own signed packages.

[–] [email protected] 1 points 5 hours ago (1 children)

I don't think you know what firmware is.

[–] [email protected] 0 points 4 hours ago (1 children)

Maybe you don't. Here's a list of firmware packages in Debian. Signing for router packages follows the same logic as those Debian packages.

[–] [email protected] 1 points 4 hours ago

I rest my case.

[–] ms_lane 2 points 13 hours ago (1 children)

Requiring signed firmware is just a lock to keep poors out.

It's Never used for consumers benefit, not once, not ever.

[–] [email protected] 0 points 7 hours ago

Signed firmware doesn't cost anything, so I'm not sure what you mean by "keep the poors out." Signed firmware has a very valid use case for preventing supply chain attacks. The only time I have an issue with it if there's no way to make your own signed package or bypass the requirement.

[–] avieshek 2 points 1 day ago (1 children)

I honestly like the GL.iNet approach in terms of software which is kinda like Android.

[–] pirat 2 points 23 hours ago (1 children)

I recently bought their Flint 2 (GL-MT6000) based on multiple recommendations online when looking for a router that supports OpenWRT. That's preinstalled, with AdGuard Home and WireGuard VPN on top of it. I'm looking forward to set it up and play around with it.

What do you exactly mean when you describe their approach in software as Android-like? That it's easy to install services in OpenWRT?

[–] avieshek 2 points 9 hours ago

It’s OpenWRT as you said but with their own skin and added features instead of completely spinning it off from the ground just because one has a feature to add as an idea like the native AdGuard Home home you mentioned, this makes sure it’s either continually supported because of OpenWRT or anyone can install the vanilla OpenWRT if support is no longer carried by the manufacturer.