Hacker Newsnew | past | comments | ask | show | jobs | submitlogin
Hash-Based Integrity Checking Proposed for Linux to Help with Reproducible Build (phoronix.com)
1 point by sandwichsphinx on Dec 26, 2024 | hide | past | favorite | 1 comment


I wish they'd take module integrity checking out completely. Only root can load modules anyway, and root isn't supposed to have any restrictions whatsoever, because if it does, then control over computers doesn't reside with their owners. And Secure Boot doesn't actually require it, contrary to popular belief, since Linux calls ExitBootServices, and once that gets called, Secure Boot doesn't mandate anything anymore.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: