logoalt Hacker News

jmclnxtoday at 7:03 PM5 repliesview on HN

So LP is or has left Microsoft ?

>We are building cryptographically verifiable integrity into Linux systems

I wonder what that means ? It could be a good thing, but I tend to think it could be a privacy nightmare depending on who controls the keys.


Replies

advisedwangtoday at 7:09 PM

The events includes a conference title "Remote Attestation of Imutable Operating Systems built on systemd", which is a bit of a clue.

show 1 reply
poetteringtoday at 7:08 PM

Yes, I have.

dTaltoday at 7:20 PM

Verifiable to who? Some remote third party that isn't me? The hell would I want that?

show 2 replies
touisteurtoday at 7:27 PM

rust-vmm-based environment that verifies/authenticates an image before running ? Immutable VM (no FS, root dropper after setting up network, no or curated device), 'micro'-vm based on systemd ? vmm captures running kernel code/memory mapping before handing off to userland, checks periodically it hasn't changed ? Anything else on the state of the art of immutable/integrity-checking of VMs?

mikkupikkutoday at 7:06 PM

Sounds like kernel mode DRM or some similarly unwanted bullshit.

show 2 replies