DM-Verity Rootfs Protection
Blockwise Hashtree
- Track: Image-based Linux and Secure Measured Boot devroom
 - Room: H.1308 (Rolin)
 - Day: Saturday
 - Start: 11:00
 - End: 11:20
 - Video only: h1308_rolin
 - Chat: Join the conversation!
 
Device-Mapper’s “verity” target provides transparent integrity checking of block devices using a cryptographic digest provided by the kernel crypto API. This target is read-only.
This presentation will illustrate how to integrate dm-verity with A/B booting as u-boot as used in project opencritis.org.
Speakers
| Frank Rehberger |