Menu

Show posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

Show posts Menu

Messages - consuli

#1
First all, I am glad, the opnsense forum does address the Meltdown/ Spectre topic !  I've experienced, this not the case in other more commercial orientated forums.  So, thank you twice for this!

Further it is promising, that patches are on the way.

Although I am pretty aware, it is not the opnsense teams fault, that there are no Meltdown/ Spectre patches for the moment (as this is in charge of the OpenBSD developers), this fact however does not not solve my current problem with an unpatched OPNsense firewall.

So what do you recommend for an unpatched OPNsense firewall in an elevated threatened research environment for the moment? Precautionary shut down?

Thanks
Consuli
#2
Hello!

I've bought a preconfigured OPNSense Firewall on Ebay.

This Firewall is based on an embedded computing mainboard and an embedded AMD processor, which is at least vulnerable for Spectre Version 1 (illegal execution by mistrained branch prediction circuit).

In which way is my OPNSense Firewall compromised by its CPU's vulnerability, in my case the Spectre Version 1 vulnerability?

Consuli