Usage of inode number in EVM signatures

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Hi,

I would like to better understand how the inclusion of the inode
number and the other return values from stat add to the protection of
the xattrs when security.evm contains a digital signature.

If any of the security xattrs are tampered with, then I would expect
EVM signature verification will fail. What added protections does one
gain by including file information?

Thank you,

Peter



[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
[Index of Archives]     [Linux Kernel]     [Linux Kernel Hardening]     [Linux NFS]     [Linux NILFS]     [Linux USB Devel]     [Video for Linux]     [Linux Audio Users]     [Yosemite News]     [Linux SCSI]

  Powered by Linux