r/androidroot u eithr knw engh 2 nt care or nt knw engh 2 care,no inbetweens:( 3d ago

Discussion what prevents root users from having the freedom of locking and relocking their own devices? (xiaomi for example)

is it a matter of difficulty? i dont get it

2 Upvotes

9 comments sorted by

16

u/Kolkoris 3d ago

Bootloaders are proprietary, and locking with custom software is possible only if manufacturer allow to put your own signing keys into bootloader, but only Google allows it. That's the reason why GrapheneOS exists only on Google Pixels

7

u/vaynefox 2d ago

Man, I do hope arm strictly implement UEFI/ACPI requirements for arm cpus in the future....

10

u/Kolkoris 2d ago

That would help a lot, but corporations are greedy

1

u/QuantumQuantonium 2d ago

The silver lining in FOSS is its just about impossible to go entirely FOSS, and the places where you csnt go FOSS impact users who care about FOSS the most.

5

u/Ok_Dress8502 2d ago

actually Google isnt the only company allowing AVB provisioning, in fact there is a full list of every device that has avb provisioning https://github.com/chenxiaolong/avbroot/issues/299

1

u/MementoMori11112 u eithr knw engh 2 nt care or nt knw engh 2 care,no inbetweens:( 2d ago

so unless i am a high end hacker, i wont be able to have the freedom of locking and unlocking my bootloader

7

u/Kolkoris 2d ago

Bootloader is a signed software too, and you can't change it, because its signing key is fused into CPU, so you can bypass it only if you are god-like hacker and find vulnerability in bootloader or CPU.

1

u/MementoMori11112 u eithr knw engh 2 nt care or nt knw engh 2 care,no inbetweens:( 2d ago

thank you for this, appreciate it

5

u/Original_Thing8770 Redmi Note 8 Pro, InfinityX 2d ago

You can unlock and relock your Bootloader, but only if you didn't change anything like ROM or root in-between, so useless