• nutsack@lemmy.dbzer0.com
      link
      fedilink
      English
      arrow-up
      8
      ·
      edit-2
      23 hours ago

      when major websites start doing this weird browser or os based signature verification, tails isn’t going to work very well on them anymore. using the internet without your signature will probably be about as fun as it is to browse with tor right now

    • partofthevoice@lemmy.zip
      link
      fedilink
      English
      arrow-up
      14
      ·
      1 day ago

      It’s a solution that seems so divorced from reality… I don’t quite understand how the expectation is reasonable, unless the goal is to force complaints to surface from the OS developers so that they can refine future versions of the law with more accuracy.

      Because Linux distributions can be created free-willy. Just check out Linux From Scratch, Gentoo, etc. Same with live boot from USB, same with stripped down server distros like Alpine — you have the same issue.

      Linux isn’t a product in the same way that other products can be regulated. It would make more sense if they defined clearly who this law actually targets, being something that is actually enforceable; something like this:

      • Any general-purpose computing device sold to consumers that includes an operating system capable of executing third-party applications…
      • All systems built after <xyz> date must include a MINIX subos that reproduces this API…
      • All browsers with GUI must support integration with the API, if they also want to support viewing of sensitive content
      • All porn distributors must validate age range via the API exposed via the browser, or refuse serving content

      That at least makes some sense. In a way, it only targets PC distributors and porn distributors. The end user could still do whatever they want, but porn distributors may not serve content to them without the functionality described.

      • LedgeDrop@lemmy.zip
        link
        fedilink
        English
        arrow-up
        14
        arrow-down
        1
        ·
        1 day ago

        Because Linux distributions can be created free-willy. Just check out Linux From Scratch, Gentoo, etc. Same with live boot from USB, same with stripped down server distros like Alpine — you have the same issue.

        I don’t want to be “that person”, but here’s how it could play out…

        The “free-willy” distros would not fulfill the “trust” requirements needed to pass the “certification process”. You can still use them, but think of it like running custom firmware on your cellphone: you’re not going to be able to access your bank, but somethings will still work.

        Larger distros (Red Hat, Ubuntu, etc) would pay to pass the “certification process”, but this would come by making certain concessions:

        1. The kernel would not be allowed to be tainted. Which means you can only use official kernel modules provided by your vendor (no self-compiling)
        2. Certain kernel modules would needed to be removed (or nerfed). For example the Fuse filesystem.
        3. You could probably keep root access or at least a nerfed version of it.

        Then with theses concessions, your PC world be deemed “reliable” to perform the necessary age verification and have this confirmation passed through your browser to your favor porn site.

        • one_old_coder@piefed.social
          link
          fedilink
          English
          arrow-up
          2
          ·
          edit-2
          1 hour ago

          you’re not going to be able to access your bank

          You would need to create yet another version of HTTP to handle that (a few years) and banks would have to handle it globally (at least 5 years from my own experience). It will never happen like that. Banks are the slowest companies to handle that kind of modification.

        • mghackerlady@leminal.space
          link
          fedilink
          English
          arrow-up
          1
          ·
          6 hours ago

          It’s like M$ secure boot on steroids. Speaking of which, we really ought to have our entire computing ecosystem less dependant on the wills of like 10 companies

        • partofthevoice@lemmy.zip
          link
          fedilink
          English
          arrow-up
          22
          ·
          1 day ago

          Damn, that sounds like gunk. I’ve been so exciting about the day and age when phones reach the same level of customizability as a PC. Little did I know, they want to phoneify the PCs instead.