| 17 Jul 2021 |
Robin | I think GrapheneOS with robotnix and a supported device is the best way to have a locked bootloader with custom keys. | 22:34:22 |
| 18 Jul 2021 |
cde | https://hub.libranet.de/wiki/and-priv-sec/wiki/verified-boot | 00:13:09 |
| 19 Jul 2021 |
jack | grapheneos-2021.07.16.19 built and tested on redfin! | 18:53:06 |
| 18 Jul 2021 |
cde | That gives a good overview of the whole bootloader locking situation | 00:13:28 |
danielrf | Pushed grapheneos-2021.07.16.19 tag. Briefly tested working on sunfish and crosshatch. | 07:17:12 |
| 20 Jul 2021 |
| Andrea Pascal joined the room. | 03:36:56 |
| 21 Jul 2021 |
danielrf | Pushed grapheneos-2021.07.19.18 tag. Tested working on crosshatch. | 02:34:59 |
jack | Works on redfin! | 22:46:44 |
| 23 Jul 2021 |
| Room Avatar Renderer. | 23:25:16 |
| 24 Jul 2021 |
jaen | Thanks for the reponses re: locking. So from what I understand this basically means "well, you could try locking the bootloader, but you will still probably have the same kind of issues like with unlocked bootloader/root, because SafetyNet doesn't care about supporting custom roms and if it perchance works, no guarantee it will keep to", is that a correct understanding? | 11:47:11 |
cde | you can't just relock the bootloader on any device, and also can't just do it on any rom - it has to be built to support that. | 13:10:24 |
samueldr | relocking the bootloader without enrolling custom keys generally means the OEM's keys are used, and the custom ROM won't be signed with those keys, so it won't boot | 19:18:03 |
samueldr | and as can be observed, few devices allow enrolling custom keys | 19:18:25 |
samueldr | and even then, "locked / unlocked" is probably not what safetynet asks for about the device | 19:18:53 |
samueldr | (really it's all of a blackbox that's not trivial) | 19:19:15 |
| 28 Jul 2021 |
danielrf | Ok. Tagged and pushed `grapheneos-2021.07.26.20`. Tested working on `crosshatch` | 19:03:28 |
danielrf | This is the first time I've done an update while away from my main workstation. Luckily it went fairly smoothly! | 19:04:52 |
| 29 Jul 2021 |
hmenke | Has anybody tried out the new sandboxed Google Play services on GrapheneOS yet? https://grapheneos.org/usage#sandboxed-play-services | 11:06:05 |