[Sugar-devel] erasing the journal and config

Michael Stone michael at laptop.org
Thu Aug 27 11:22:40 EDT 2009


> Luke Faraone wrote:
> James Cameron <quozl at laptop.org> wrote:
>
>> I've tested this method only on unlocked laptops.  For locked laptops
>> some similar method might be used.
>
> For locked laptops you would *need* to get a developer key, or have OLPC
> sign the file. The latter won't happen.

OFW's recently-added multi-key support:

   http://wiki.laptop.org/go/Firmware_security#Multiple-Key_Support

has been used by several deployments (including Uruguay and Paraguay) who might
be interested in producing a "wipe power".

A scheme similar to the activation lease generation scheme could also be used
to rate-limit how quickly such a power could be invoked.

Michael


More information about the Sugar-devel mailing list