03-12-2021, 05:48 AM
(02-20-2021, 02:06 PM)wibble Wrote: It doesn't have 1-3 so far as I know, and I think verified boot would need a different cpu if I understand the boot process correctly. See https://linux-sunxi.org/BROM#A64
4 - my cursory understanding is that the cellular is pretty well isolated, with most connection being via USB, and not having memory access. WiFi connects via SDIO so might have DMA. I don't know about IOMMU on the A64. Schematics and A64 docs are in the wiki so you can dig deeper if you know what you're looking for.
5. I don't know what's been done on that front.
Sounds like we have to choose between security & control still
GrapheneOS: security
Pine64 / purism: you actually have access to your own equipment (which the GOS dev seems to think is impossible to have while maintaining security)
However, if #1-5 are fulfilled by a FOSS phone, then I would make the switch considering we cannot know what is hidden in Google's firmware (despite secure boot making it impossible to modify).