DM-Verity Rootfs Protection
Blockwise Hashtree
- Track: Image-based Linux and Secure Measured Boot devroom
- Room: H.1308 (Rolin)
- Day: Saturday
- Start: 11:00
- End: 11:20
- Video only: h1308_rolin
- Chat: Join the conversation!
Device-Mapper’s “verity” target provides transparent integrity checking of block devices using a cryptographic digest provided by the kernel crypto API. This target is read-only.
This presentation will illustrate how to integrate dm-verity with A/B booting as u-boot as used in project opencritis.org.
Speakers
Frank Rehberger |