• [$] Hash-based module integrity checking

    From LWN.net@1337:1/100 to All on Fri Mar 7 15:45:09 2025
    [$] Hash-based module integrity checking

    Date:
    Fri, 07 Mar 2025 15:44:04 +0000

    Description:
    On January 20, Thomas Weischuh shared a new patch set implementing an alternate method for checking the integrity of
    loadable kernel modules. This mechanism, which checks module integrity based
    on hashes computed at build time instead of using cryptographic signatures, could enable reproducible kernel builds in more contexts. Several distributions
    have already expressed interest in the patch set if Weischuh can get it
    into the kernel.

    ======================================================================
    Link to news story:
    https://lwn.net/Articles/1012946/


    --- Mystic BBS v1.12 A47 (Linux/64)
    * Origin: tqwNet UK HUB @ hub.uk.erb.pw (1337:1/100)