this post was submitted on 27 Nov 2024
255 points (95.7% liked)
Technology
60101 readers
2295 users here now
This is a most excellent place for technology news and articles.
Our Rules
- Follow the lemmy.world rules.
- Only tech related content.
- Be excellent to each another!
- Mod approved content bots can post up to 10 articles per day.
- Threads asking for personal tech support may be deleted.
- Politics threads may be removed.
- No memes allowed as posts, OK to post as comments.
- Only approved bots from the list below, to ask if your bot can be added please contact us.
- Check for duplicates before posting, duplicates may be removed
Approved Bots
founded 2 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
view the rest of the comments
BIOS was always a micro computer... it's just more standardized now.
And especially things like IPMI (which is essentially a company-sanctioned backdoor to any intel server) which has a full on webserver with an unknown number of threat vectors, things like this really fall flat for security.
Just because threats are found for UEFI (an open standard), it means nothing in grand scheme of things, just that it is more observed and more easily dissected for nefariousness.
I meant BIOS is way more limited in scope than UEFI and that's a good thing.
Although since the limitation was most likely due to hardware of the day, i don't know how would a modern BIOS look like.
Probably like UEFI
If you're looking at Intel, you might be thinking IME/vPro
IPMI (such as iDRAC on Dell) runs off-processor on a different section of the motherboard typically and is installed on AMD servers as well.
Off topic but IPMI is such a handy feature. I've got an old x99 board with it, and man being able to remotely power cycle a frozen machine is missed. Even being able to change UEFI settings without having to drag out a monitor and keyboard.
I have five Dell servers in the rack, and another two Dells and three x9? (Atom C2758 8-core if memory serves) Supermicros on the shelf.
I think only one or two of the Dells came with iDRAC Enterprise and all the Supermicros had full licensing. It's absolutely beautiful (once you get done fighting the software updates to purge the Java gremlins).
My three R730s were upgraded to Enterprise as soon as I had budget and a spare line item to do so. Power on/off is great and console+ISO is peak. I love this.