• Whostosay@sh.itjust.works
      link
      fedilink
      arrow-up
      16
      ·
      edit-2
      4 days ago

      J4k3, hope youre doing alright dude.

      Got a question you may be able to help me with. I have never changed my secure boot key on my motherboard after switching from windows. Do I need to worry about anything? If I don’t, what’s the pros and cons and what not.

      I remember reading that there’s some sort of potential issues with keys from windows if you’re a Linux user a few months back.

      • Turret3857@infosec.pub
        link
        fedilink
        English
        arrow-up
        18
        ·
        4 days ago

        not j4k3 but my understanding is that the default keys are expiring soon and need to be rotated, and the rotation is up to your Mobo OEM to push out (?). I am not entirely sure that is correct, but I think it is.

        Pros and cons of your own key: Pros: its your key, so youre responsible for your security

        Cons: its your key, so youre responsible for your security

        • Whostosay@sh.itjust.works
          link
          fedilink
          arrow-up
          8
          ·
          4 days ago

          That was my understanding as well,

          I got a good chuckle out of the pros and cons list lol, ty for that.

          I’ll have to look into self owned boot keys now.

          Thanks for chiming in

      • √𝛂𝛋𝛆@piefed.world
        link
        fedilink
        English
        arrow-up
        11
        ·
        4 days ago

        You can generate your own keys. Here are two PDF links I copied just now from a post I made 2 years ago here. I don’t keep these white listed, so I did not check them for connecting. The first is the official UEFI overview. The second is a great guide from the US government detailing exactly how to set the keys. If that link doesn’t work, pull out the document number from the link and search for it. Gentoo and Arch have guides on this. Fedora has the most advanced pre Linux init system in my opinion.

        https://uefi.org/sites/default/files/resources/UEFI_Secure_Boot_in_Modern_Computer_Security_Solutions_2019.pdf

        https://media.defense.gov/2020/Sep/15/2002497594/-1/-1/0/CTR-UEFI-Secure-Boot-Customization-UOO168873-20.PDF

        If you have secure boot enabled, and you are using the shim from fedora or ubuntu, then yes you need to worry about it if you want to dual boot with w11.

      • lorentz@feddit.it
        link
        fedilink
        arrow-up
        7
        ·
        4 days ago

        I remember reading a post on mastodon where it was explained that no mother board validates the secure boot keys expiration dates otherwise it wouldn’t boot the first time the BIOS battery gets empty and the internal clock gets reset. The post was written well and was citing some sources. But I didn’t try to verify these assertions.

        • Pika@sh.itjust.works
          link
          fedilink
          English
          arrow-up
          1
          ·
          2 days ago

          even if it did, its not like any existing motherboard requires internet to boot, you can just change the MB clock to be prior to the expiration and theoretically it should boot regardless of restrictions.

  • Eiri@lemmy.ca
    link
    fedilink
    arrow-up
    43
    arrow-down
    9
    ·
    4 days ago

    One day, Linux will be ready for a no-headaches gaming PC. Genuinely looking forward to it.

    • infinitesunrise@slrpnk.net
      link
      fedilink
      English
      arrow-up
      24
      arrow-down
      1
      ·
      4 days ago

      Everyone will have a different experience based on their hardware, distro, and game preferences; But for me Linux has been a far less headache-inducing gaming platform than Windows literally for years at this point.

      • answersplease77@lemmy.world
        link
        fedilink
        arrow-up
        3
        arrow-down
        1
        ·
        edit-2
        3 days ago

        I have a gaming PC which I planned to setup a linux distro on for almost 2 years now. I just need to find the time to choose which distro, then debloat it, get the wifi, speakers, keyboard working, then install the required Nividia drivers, then optimize it and study wether OC its bios is worth it or no, then test optimal settings and compatibility, then compare my benchmark FPS results to similar ones on the internet, then open Steam and fucking game on brother lets go!

    • RedSnt 👓♂️🖥️@feddit.dk
      link
      fedilink
      arrow-up
      20
      arrow-down
      1
      ·
      edit-2
      4 days ago

      I had this mindset for about 2 decades, from when I first played around in OpenSUSE and Compiz back in 2005 up to 2024 when I finally switched because of Windows 10 being put out to pasture by Microsoft. But since I’m now in my early 40s and no longer play competitive games as I used to 15 years ago, I’ve had zero problems with Linux and gaming.

      So I totally understand your mindset as I too once thought the same.
      Problem with waiting is of course that developers don’t favor linux due to lack of people on linux playing game, so it’s a vicious circle:

      1. not playing on linux because it’s not well supported by games
      2. game devs not making games for linux because not enough players are there.

      I hope you enjoy linux when you’re ready.

  • ByteJunk@lemmy.world
    link
    fedilink
    arrow-up
    34
    arrow-down
    1
    ·
    edit-2
    3 days ago

    Can someone enlighten me as to what is M$ doing this time?

    I had to install windows the other day on my kids laptop, and had to skip like 10 screens of Microsoft ads and then disable OneDrive, but saw nothing about Dropbox.

    Edit: my household has been using Mint for a few years now, the m$ enshitification was just too much for us. I only had to install windows on my kids school laptop because they won’t accept anything else…

    • Turret3857@infosec.pub
      link
      fedilink
      English
      arrow-up
      15
      ·
      edit-2
      4 days ago

      No idea but here’s some tools you should look into

      BloatyNosy

      privacy.sexy

      Windows Spy Blocker

      and this one isnt a tool but more of a tip. When installing Win11, set the region to English (world). This will prevent bloat from being installed by default, then use the OOBE\bypassnro command at the M$ account screen to skip signing up for a M$ account.

      • Itdidnttrickledown@lemmy.world
        link
        fedilink
        arrow-up
        9
        ·
        4 days ago

        OOBE\bypassnro no longer works on shipped computers. You have to have a old installer of 11 to use it. There are other ways. Mines a bit more hands on but I end up with a machine with a single local account. Those that tell you install linux and its fixed don’t really live in the real world. As much as I would like to never have to touch windows its not going anywhere soon.

        • Turret3857@infosec.pub
          link
          fedilink
          English
          arrow-up
          1
          ·
          edit-2
          4 days ago

          I just used it like 3 weeks ago on a win11 Iso from M$s website. Are you positive that got changed?

          also; Ive been daily driving linux for 5 years with mostly no issues. i only touch windows when requested by other people :P

      • lime!@feddit.nu
        link
        fedilink
        arrow-up
        6
        arrow-down
        1
        ·
        4 days ago

        you can also break out of the installer like in windows 10, and the entire os is loaded in the background so it’s possible to open edge and download another os to a usb drive within the installer. very handy.

          • lime!@feddit.nu
            link
            fedilink
            arrow-up
            2
            ·
            3 days ago

            shift+f10 starts the command prompt and from there you can start edge and explorer

      • Cabbanis@lemmy.eco.br
        link
        fedilink
        arrow-up
        4
        arrow-down
        1
        ·
        4 days ago

        You should be going for linux mint. It’s also good fo playing. I’m playing Silent Hill f on mine.

        • Turret3857@infosec.pub
          link
          fedilink
          English
          arrow-up
          1
          ·
          4 days ago

          They said it was their kids laptop so I’m going under the assumption that they need lockdown browser or something for school. I use fedora.

    • rumba@lemmy.zip
      link
      fedilink
      English
      arrow-up
      4
      ·
      4 days ago

      In this particular case, it’s not windows since they started pushing one drive.

      It’s probably the PC manufacturer being paid by Dropbox to install it with system utilities.

    • Zozano@aussie.zone
      link
      fedilink
      English
      arrow-up
      7
      arrow-down
      1
      ·
      4 days ago

      In the unfortunate event that you CANT uninstall Windows, at least replace it with AtlasOS.

      Basically, it reinstalls Windows but rips virtually everything which makes Windows a piece of shit. You’ll get better performance, no telemetry, and next to no bloatware.

      Learn Linux anyway.

        • Zozano@aussie.zone
          link
          fedilink
          English
          arrow-up
          1
          ·
          edit-2
          3 days ago

          Depends on how you want to chop it up, it’s not a ‘scam’ because its not a paid product.

          Not-as-advertised? Depends on how you’re using it.

          It strips out a bunch of security features like Defender. If you’re not prone to opening random .exe files, then you’ll probably be fine.

          Some users didn’t get the performance boost they were expecting, while others did (I certainly noticed a difference).

          Driver support? Some people had issues, though I suspect they didn’t RTFM. The AtlasOS instructions explicitly instruct the user to do all updates, including optional and drivers, prior to AtlasOS overwrites.

      • Obi@sopuli.xyz
        link
        fedilink
        arrow-up
        3
        ·
        4 days ago

        Wow this sounds too good to be true as someone that needs to keep windows for my work apps. What’s the catch and why haven’t I heard of it before?

        • Zozano@aussie.zone
          link
          fedilink
          English
          arrow-up
          2
          ·
          4 days ago

          There’s not ‘catch’ other than having to reinstall windows.

          Another ‘catch’ might be that it strips out shit like one drive and the Microsoft Store.

          If you needed those, then you’d need to reinstall them with workarounds.

        • Codilingus@sh.itjust.works
          link
          fedilink
          arrow-up
          1
          ·
          4 days ago

          Just get W11 Enterprise IoT LTSC from massgrave.dev. It’s an official Windows and not some tool to worry about trust.

  • RedSnt 👓♂️🖥️@feddit.dk
    link
    fedilink
    arrow-up
    6
    ·
    4 days ago

    All I use dropbox for these days is synchronizing various extensions to it as a cloud backup service. Like Violentmonkey (userscripts) and Stylus (userstyles, like for making lemmy look nicer) to mention the two that come to mind.