Microsoft requiring Secure Boot for ARM devices, hamstringing Linux


As Windows 8 gets closer to reality, more details of Microsoft’s make-it-or-break-it effort to translate its desktop computing success to ARM-driven tablets are emerging. First, Microsoft revealed that ARM-based Windows 8 devices won”t be able to run legacy Windows software—it’ll be the Metro way, or the highway. Now, Microsoft’s Windows 8 hardware certification requirements reveal another restriction: Microsoft plans to require ARM-based Windows 8 devices use UEFI secure booting technology, dubbed Secure Boot. Although the requirement is likely intended to protect consumers from firmware attacks and prevent so-called jailbreaks of ARM-based Windows 8 tablets, it will also make it difficult or impossible for owners to use the hardware with non-Windows operating systems, like Linux.

In addition to requiring Windows 8 devices ship with Secure Boot enabled, Microsoft includes an explicit requirement that non-ARM systems to implement a way for a physically-present user to select between “Custom” and “Standard” modes in the Secure Boot setup—that means users of Intel-based Windows 8 systems will be able to modify the Secure Boot signature databases (perhaps installing keys for alternative operating systems) as well as turn off Secure Mode altogether. However, on ARM systems Microsoft is explicitly forbidding device makers to enable Custom Mode—if they do so, they will not qualify for the Windows 8 logo, and won’t be able to ship with Windows 8 pre-installed.

The requirement creates a dilemma for Linux distributions. If users can enable Custom Mode, the can disable Secure Boot and install any operating system they like—it wouldn’t be for the faint-of-heart, but it wouldn’t be any more difficult than what many Linux fans go through to get Linux running on current PCs. However, without the ability to disable Secure Boot, Linux distributions may not have many options. Creators of Linux distributions could conceivably provide signed versions of their operating systems, but going so would likely require a non-GPL bootloader.

The UEFI technology is not part of Windows 8; rather, the technology enables firmware to carry out its own security policies and verify components of an operating system are legitimate before loading the OS. Microsoft’s goal with prohibiting Custom Mode or the disabling of Secure Boot on ARM devices is likely stems from concerns for user security: users of Windows 8 ARM devices wouldn’t need to worry about portions of the operating system being swapped out for home-brew or malware versions. In that way, Windows 8 ARM devices would be a lot like Apple’s iPad and some Android devices, which have their bootloaders locked down to prevent owners from installing modified or alternative operating systems.

The requirement is potentially another sign of the gulf Microsoft seems to be creating between Windows 8 on ARM—with its consumer-friendly, Metro-only capabilities—and the version of Windows 8 for Intel-based devices, which will offer all Windows 8’s new capabilities along with support for legacy Windows software and a traditional desktop.

Microsoft has not yet responded on the record to requests for comment on Secure Boot requirements.


Here’s how to watch AMD reveal its new Ryzen chips at Computex

AMD will hold a pre-Computex keynote May 27 to announce its new line of 3rd-generation Ryzen processors and accompanying Radeon Navi graphics cards. Here's how to watch the keynote live wherever you are in the world.

These external drives have speed, durability, and storage space to spare

Whether you want an external storage drive that is fast, portable, or comes with a ton of storage, these are the best external hard drives available today. They all come with great features and competitive pricing.

The 2019 ThinkPad lineup is robust. Here's how to pick the right one for you

Be it the X series, the T series, E series, it can be tough to find the best Lenovo laptop that is right for you. To help, we'll break down all the options available to make your choice a more informed one.

Should you buy a MacBook Pro or a Razer Blade Stealth? We'll help you decide

Laptop head to heads are a great way to see which one might be the right one for you. Our latest sees the Razer Blade Stealth (2019) vs. MacBook Pro in a fight to see which one deserves to be your next laptop.

AMD's latest Navi graphics cards are incoming. Here's what to expect

AMD's Navi graphics cards could be available as soon as July 2019 — as long as it's not delayed by stock problems. Billed as a successor to Polaris, Navi promises to deliver better performance to consoles like Sony's PlayStation 5.

Ryzen 3000 chips will pack a punch, and could launch as early as July

AMD's upcoming Ryzen 3000 generation of CPUs could be the most powerful processors we've ever seen, with higher core counts, greater clock speeds, and competitive pricing. Here's what we know so far.
Emerging Tech

Awesome Tech You Can’t Buy Yet: Tricked-out e-scooters and bike lights that lock

Check out our roundup of the best new crowdfunding projects and product announcements that hit the web this week. You may not be able to buy this stuff yet, but it's fun to gawk!

Want to watch Netflix in bed or browse the web? We have a tablet for everyone

There’s so much choice when shopping for a new tablet that it can be hard to pick the right one. From iPads to Android, these are our picks for the best tablets you can buy right now whatever your budget.

The best Amazon Prime Day 2019 deals: Everything you need to know

Amazon Prime Day 2019 is still a few months off, but it's never too early to start preparing. We've been taking a look at the best discounts from previous Prime Days to give you our predictions of what to expect this year.

Microsoft might finally embrace USB-C on next-gen Surface Pro 7

USB-C could finally come to Microsoft's Surface Pro tablet. According to a Microsoft patent filing, the port was shown in an illustration, suggesting that the company is working to support this feature in the future.

Here’s how to watch the Nvidia Computex 2019 press conference

Here’s everything you need to know about Nvidia’s upcoming press conference at Computex 2019 in Taipei, Taiwan; including what to expect during the press conference and how and when to watch it.

Best Memorial Day sales 2019: Amazon, Best Buy, and Walmart deals

If you're looking to save big on some shiny new stuff for Memorial Day 2019, we've gathered everything you need to know into one place. Find out where to save the most money before the summer hits its stride.

Intel’s Computex 2019 keynote: Here’s how to watch and what to expect

Intel is scheduled to give its Industry Opening Keynote at Computex on Tuesday, May 28, where it will likely fully unveil its first 10th generation chips and further outline its Project Athena initiative. Here's how to watch it.

Dell drops huge savings on XPS and Alienware gaming laptops for Memorial Day

We've seen a lot of different Memorial Day sales come down the pipeline this week, but some of the best so far have been from Dell. With big discounts on XPS and Alienware gaming laptops, now is a great time to pick up a new computer for…