@stetessi , please see my Qubes OS A reasonably secure operating system? - #25 by mike_banon post here to learn more about the coreboot-supported AMD-no-PSP alternatives to KGPE-D16 (although an “early 16h” AM1I-A lacks IOMMU and therefore won’t work for Qubes, fam15h A88XM-E / G505S have a working IOMMU and should be fine) as well as an important note about RAM configuration. Either A88XM-E + A10-6700 / A10-6800K or G505S + A10-5750M - will also be much cheaper than your KGPE-D16 build and won’t cost much for your experiments
@Insurgo please also check the above’s post, I’m happy to inform you that this week I got myself a pair of KGPE-D16 and now you are less lonely I agree that FSF should’ve invested more efforts (my personal grudge is they didn’t back the libreboot’ing of a G505S laptop which has been amoung the libreboot candidates list and simply dropped this list instead), but that should not stop us from further expanding the potential of this wonderful privacy-respecting machine
Speaking of 15h project, to me the most promising approach - which I implemented for my 15h / early 16h boards - was this restore_agesa.sh , which allowed me to have the almost-latest coreboot despite the “official dropping” and without any “forking”. I’ve never heard about this 15h community before, and wonder if anyone there heard about my work and considered using it instead of v4.11 as the base. Yes, my script is a bit outdated ATM, but I plan to update it soon and did some unpublished work a couple of months ago