Developers vPub 0xD
Welcome to the Dasharo User Group meeting, where we'll begin with an opening talk that outlines today's agenda, sets the stage for insightful discussions, and welcomes new and returning members to our growing community.
The "Dasharo Community Status" presentation provides numerical data on community activity, including pull requests and upstreaming efforts. It updates Dasharo issues and Matrix space growth and progress, expresses gratitude to active contributors, and highlights the community's vision for future development and governance.
The presentation outlines Dasharo's comprehensive roadmap, spanning various hardware platforms and integration milestones. It covers the transition from OST2 to Dasharo Support Packages, the community support process, and detailed plans for emulation, network appliances, laptops, desktops, and servers. Highlighting shifts in release dates, new initiatives, and strategic alignment with business goals, the roadmap reflects Dasharo's commitment to security, compatibility, and innovation in firmware development.
"Shameless Plug: New Products in 3mdeb Shop" is more than just an advertisement. It reflects our evolution and demonstrates our unwavering commitment to transparency and the open-source ethos. This presentation is a historical marker for future generations, showcasing our journey through innovation, challenges, and successes. Join us as we explore the products that highlight our progress and dedication to improving the trustworthiness of every device. Something of our offering may be valuable, eye-opening, or so pathetic that you could not resist sending improvement feedback.
Showing off DTS status and changes done in 2024 Q3 and Q4, presenting new supported hardware added, and latest user-side experience changes. Introducing and discussing plans and ideas for improvements in use and developing experience. Introducing DTS test coverage for fine-grained verification of security and stability.
This presentation on Dasharo OS Firmware Validation (OSFV) provides a concise update on the current status and future plans. Highlights include contribution statistics, recent improvements, and announcements of supported hardware. Further plans include but are not limited to, further improvements in the repository structure, and improving the repeatability and reliability of tests.
Final thoughts about DUG and pointers where Dasharo Developers vPub will happen.
In this talk, we dive deep into parsing and comparing AMD firmware images with their specific challenges: they may have different sizes, come from different OEMs, target different mainboards, and support various ranges and variants of processors. I have extended and built a CLI on top of System76 / Jeremy Soller's romulan library that will eventually also be integrated in Fiedka.
Q&A session during which all attendees can ask questions regarding the talk/demo/discussion.
Open Discussion signifies a platform where developers, technology enthusiasts, and experts freely share insights, challenges, and innovations related to open-source firmware and technology in a relaxed and informal setting. This format promotes the exchange of diverse perspectives, encourages collaborative problem-solving, and nurtures a community spirit among participants. It enables attendees to delve into technical details, share experiences, and explore new ideas without the constraints of formal presentations, fostering a dynamic environment for learning and networking.
How do you check if your computer can run coreboot? If you have a modern x86 mcchine, the biggest roadblock you may encounter is silicon RoT technology like Intel Boot Guard or AMD PSB. There are tools for checking Intel Boot Guard, but for a long time there hadn't been a publicly available tool for checking AMD PSB. That's why I wrote psb_status, a small script to do just that,.
Q&A session during which all attendees can ask questions regarding the talk/demo/discussion.
Open Discussion signifies a platform where developers, technology enthusiasts, and experts freely share insights, challenges, and innovations related to open-source firmware and technology in a relaxed and informal setting. This format promotes the exchange of diverse perspectives, encourages collaborative problem-solving, and nurtures a community spirit among participants. It enables attendees to delve into technical details, share experiences, and explore new ideas without the constraints of formal presentations, fostering a dynamic environment for learning and networking.
What can we get with modern x86 clients, workstations, and server CPUs? Is there any hope in non-x86 confidential computing now?
This discussion panel aims to shift the focus to local environments, particularly homelabs and workstations that operate intranet-only services without external access. Remote VM-to-VM attacks and VM escapes are out of scope. We will explore the practical applications and benefits of Confidential Computing features such as SEV (Secure Encrypted Virtualization), TSME (Transparent Secure Memory Encryption), TME (Total Memory Encryption), TME-MK (TME with Memory Keys), SGX (Software Guard Extensions), and TDX (Trust Domain Extensions).
A container-native, full-source bootstrapped, reproducible, and multi-signed toolchain to build all the things https://stagex.tools
Q&A session during which all attendees can ask questions regarding the talk/demo/discussion.
Open Discussion signifies a platform where developers, technology enthusiasts, and experts freely share insights, challenges, and innovations related to open-source firmware and technology in a relaxed and informal setting. This format promotes the exchange of diverse perspectives, encourages collaborative problem-solving, and nurtures a community spirit among participants. It enables attendees to delve into technical details, share experiences, and explore new ideas without the constraints of formal presentations, fostering a dynamic environment for learning and networking.