TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

New notarization requirements from macOS 10.14.5 onward

16 点作者 dwniydc2hkynuzh大约 6 年前

5 条评论

rgovostes大约 6 年前
The crowd here tends to interpret code signing requirements as nefarious steps down a slippery slope where Apple locks down macOS and applies draconian rules to deny us access to our own computers. The reality is a little more boring:<p>macOS has a growing malware problem. The initial solution to this was to introduce the Mac App Store in 2010, where users could acquire trusted apps that had been vetted by Apple.<p>But the Mac App Store wasn&#x27;t successful by many measures and users continued acquiring apps elsewhere, including the occasional malware. So in 2012, Apple introduced Developer ID, tying every app to a developer identity which is supposed to be verified through the Apple Developer membership application. This means malware cannot be released by a nameless entity, and that it can be revoked.<p>However, having recently cleared off a relative&#x27;s computer of something like 5 separate &quot;Adobe Flash updaters&quot; all signed by different, and apparently fake, developers, it seems that the $99 membership fee and identity verification was not enough to deter fraud and abuse in the program.<p>The logical next step to protect users is to give Apple more insight into what is being signed, so that they can be more proactive in detecting and blocking malware. Thus, notarization, which involves uploading a copy to Apple.<p>Apple&#x27;s software engineering org is populated by some of the developers of your favorite open source projects and indie apps. They&#x27;re not trying to destroy the platform that they love. In the past, they&#x27;ve given advanced users an escape hatch---option-click to run an unsigned app, Gatekeeper settings, System Integrity Protections settings---and I hope this doesn&#x27;t change in 10.15. But they are trying to balance this with the needs of 99% of users who just want their Mac to be protected from malware.
whizzkid大约 6 年前
&quot;Notarization is not App Review. The Apple notary service is an automated system that scans your software for malicious content, checks for code-signing issues, and returns the results to you quickly&quot;<p>If they truly mean this, and only check done is for malicious content then it does not sound that bad except the ~100$ developer account each year to be paid to Apple. Tim Cook needs to be aware of developers being one of the main legs when it comes to creating a happy user base. If he treats them as second class citizens, then making shareholders happy will not last long.
asaddhamani大约 6 年前
It seems like we keep losing more and more control over what we&#x27;re allowed to run on our own machines.
评论 #19632092 未加载
chewz大约 6 年前
I wonder how does it affect Hackintosh community?
评论 #19632046 未加载
评论 #19632132 未加载
vortico大约 6 年前
No problem, I&#x27;ll just add installation instructions to my software for users to disable notarization. Perhaps even an AppleScript, .pkg installer, or Terminal command to copy-paste to make the process easier.
评论 #19632134 未加载