Notes from Security lab (Wednesday, June 24th, 2020)

Security lab:

Question: It looks like Apple Silicon will be incorporating Secure Enclave into the new System on a Chip (SOC) architecture. Does Secure Enclave on SOC work like Secure Enclave does today on the separate T2 chip?

Answer: Yes, Secure Enclave will work the same. You shouldn't be able to tell the difference.


Question: Will FileVault on Apple Silicon work like it does today on an Intel Mac equipped with a T2 chip? In particular, will FileVault be instantly on / instantly off like it is on an Intel Mac equipped with a T2 chips?

Answer: No changes, Apple Silicon FileVault will work like it does today with T2 Macs.

Question: Will Gatekeeper apply to installer packages downloaded via curl from the command line, where non-signed or notarized packages would be blocked? Or would Big Sur continue to use the same behavior as macOS Catalina, where non-signed or notarized packages are not blocked?

Answer: No expected changes with how quarantine works. Curl will not start attaching quarantine metadata. The same behavior we see today on Catalina will apply to Big Sur.
Notes from Security lab (Wednesday, June 24th, 2020)
 
 
Q