• 0 Posts
  • 10 Comments
Joined 2 years ago
cake
Cake day: November 28th, 2022

help-circle



  • I work with SoC suppliers, including Qualcomm and can confirm; you need to sign an NDA to get a highly patched old orphaned kernel, often with drivers that are provided only as precompiled binaries, preventing you updating the kernel yourself.

    If you want that source code, you need to also pay a lot of money yearly to be a Qualcomm partner and even then you still might not have access to the sources for all the binaries you use. Even when you do get the sources, don’t expect them to be updated for new kernel compatibility; you’ve gotta do that yourself.

    Many other manufacturers do this as well, but few are as bad. The environment is getting better, but it seems to be a feature that many large manufacturers feel they can live without.



  • Typically no, the top two PCIE x16 slots are normally directly to the CPU, though when both are plugged in they will drop down to both being x8 connectivity.

    Any PCIE x4 or X1 are off the chipset, as well as some IO, and any third or fourth x16 slots.

    So yes, motherboards typically do implement more IO connectivity than can be used simultaneously, though they will try to avoid disabling USB ports or dropping their speed since regular customers will not understand why.


  • The difficulty is that a VPN isn’t just a product like ProtonVPN, it’s a huge family of software and protocols.

    You can block vpn.protonvpn.com, but since most operating systems come with VPN functionality out of the box, you’d have to start listening to all traffic (not just DNS lookups) and blocking ALL packets that might be VPN traffic without causing regular disruption to non-vpn traffic.

    TL;DR: it’s easy to prevent unmotivated users from downloading a VPN app. It’s practically impossible to block a motivated user from using a VPN, and they’re the users you particularly care about.


  • They made a smart call that has probably increased the long term privacy of their users.

    People were using port forwarding to host illegal shit, and governments were getting pissed off about it. Mullvad has been able to prove in court that they don’t keep logs, but that’s not a perfect deterrent; a properly motivated government, perhaps if somebody is using Mullvad to host CSAM, might attempt to legally force Mullvad to put logging in and add anti-canary clauses.

    Preventing port forwarding keeps customers as consumers rather than hosters, and avoids this issue.



  • I’m currently running GrapheneOS on my Pixel 3XL, have been for about a year. Overall the experience has been solid, a few bugs here and there but it’s hard to say if they’ve been GrapheneOS issues or Android issues.

    One heads up is that GrapheneOS only officially supports a modern subsection of Pixel phones, so if you intend to keep yours for ages (or to buy second hand) it may have some rough edges in a few years.