Quantcast
Channel: Raspberry Pi Forums
Viewing all articles
Browse latest Browse all 4919

Advanced users • Re: Raspberry Pi 5 continues to boot from SD card

$
0
0
Probably the only certain way is to fill the sockets with epoxy and put the Pi into a sealed case.

Anything that can be done in software can be undone in software.

What are you actually trying to achieve?
Two things:
1. I am trying to make it hard(er) for someone with physical access to these devices to be tempted to take them and use them privately.
2. For a bad-actor with physical access to be unable to insert an SD card or USB MSD to copy software and config on or off.

I know I can always use an HSM like the Zymkey 4i but trying to see if there are ways that I can make it hard(er) for these use cases to obviate the cost, development effort, and maintenance of yet another piece of hardware and associated software and config.
A custom OS that disables all things you don't wasn't, plus signed boot so only the OS you have signed will run.

Statistics: Posted by jamesh — Thu Mar 14, 2024 6:54 am



Viewing all articles
Browse latest Browse all 4919

Trending Articles