this post was submitted on 01 Aug 2026
1754 points (99.8% liked)
Technology
86849 readers
3806 users here now
This is a most excellent place for technology news and articles.
Our Rules
- Follow the lemmy.world rules.
- Only tech related news or articles.
- Be excellent to each other!
- Mod approved content bots can post up to 10 articles per day.
- Threads asking for personal tech support may be deleted.
- Politics threads may be removed.
- No memes allowed as posts, OK to post as comments.
- Only approved bots from the list below, this includes using AI responses and summaries. To ask if your bot can be added please contact a mod.
- Check for duplicates before posting, duplicates may be removed
- Accounts 7 days and younger will have their posts automatically removed.
Approved Bots
founded 3 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
view the rest of the comments
Who is the owner of that device? The Bank.
Who is the owner of that network? The Bank.
So they are the arbiter of trust in that area. They are free to exclude non-bank-owned devices.
I work in IT, and I'm fine with getting a company laptop for company work. I don't trust that laptop. I isolate it when I work at home. But the company trusts it, and that is fine.
Yes, and you seem to have missed the point.
They won’t trust your device no matter how secure you say it is. That’s my point. Just because you say a device is secure doesn’t mean it’s secure, and it doesn’t mean it gets treated as if it’s secure.
You seem to be missing my point. You are arguing against a point I did not make.
I'm not the owner of that laptop, I would just be a user. So with my argument I wouldn't have a right install my own keys on it. I don't need to trust that device. It isn't mine. It is the one of my employer in that case the bank.
So I never said that the bank should trust my personal laptop with their data.
However, if I am a customer of that bank, and they give me access to my account data from my private laptop or smartphone. Then they have no right to enforce someone else to put their root of trust on my device. I need to be able to trust my device to protect my data, so the root of trust needs to come from me. If I don't want to manage my device or if I don't trust myself to do so, I should be able to transfer my trust temporarily to some other third party, and pay them to do it for me.