No video

Securing Embedded Linux Systems with TPM 2.0 - Philip Tricca, Intel

  Рет қаралды 28,887

The Linux Foundation

The Linux Foundation

Күн бұрын

Securing Embedded Linux Systems with TPM 2.0 - Philip Tricca, Intel
Despite the myriad technologies available for the task, securing Linux systems (embedded or otherwise) is not much easier today than it was 10 years ago. Where many security talks at ELC have given surveys of the various components, and architectures for securing embedded Linux systems this talk is a deep dive into enabling and using the new trusted platform module 2.0 (TPM2) to achieve specific security goals.
This talk will have 3 major thrusts: Firstly we will discuss a threat model that describes the security goals we wish to achieve as well as the threats to these goals that we're able to mitigate with the TPM. Second, we describe the Intel TPM2 software stack (TSS) and the various possible configurations appropriate for Linux systems from embedded up to servers. Finally we discuss implementations of our mitigations using the meta-measured Open Embedded layer.
About Philip Tricca
Philip is a platform architect in Intel's platform security division working to enable use of the Trusted Platform Module (TPM) and SGX in open source. Recently Phil has taken over maintainership of Intel's implementation of the TPM2 software stack and has been obsessing over system integrity and measurement architectures for years. In his spare time he maintains the meta-measured Open Embedded meta layer where he brings together the various integrity measurement components from TPM2 patches to Grub2 all the way up to the userspace infrastructure. Additionally he's a periodic contributor to meta-selinux and the OpenXT project.

Пікірлер
How to Avoid Writing Device Drivers for Embedded Linux - Chris Simmonds, 2net
41:19
ПРОВЕРИЛ АРБУЗЫ #shorts
00:34
Паша Осадчий
Рет қаралды 7 МЛН
No empty
00:35
Mamasoboliha
Рет қаралды 10 МЛН
A teacher captured the cutest moment at the nursery #shorts
00:33
Fabiosa Stories
Рет қаралды 55 МЛН
Jumping off balcony pulls her tooth! 🫣🦷
01:00
Justin Flom
Рет қаралды 28 МЛН
Towards Measured Boot Out of the Box by Matthew Garrett, CoreOS
39:12
The Linux Foundation
Рет қаралды 3,2 М.
The moment we stopped understanding AI [AlexNet]
17:38
Welch Labs
Рет қаралды 853 М.
TPM (Trusted Platform Module) - Computerphile
13:11
Computerphile
Рет қаралды 221 М.
Firmware security, why it matters and how you can have it
45:11
linux.conf.au
Рет қаралды 29 М.
UEFI Secure Boot in U-Boot - Grant Likely, Arm
38:08
The Linux Foundation
Рет қаралды 7 М.
Device Tree for Dummies! - Thomas Petazzoni, Free Electrons
1:12:41
The Linux Foundation
Рет қаралды 106 М.
Applications of TPM 2.0
51:00
DevConf
Рет қаралды 2,8 М.
ПРОВЕРИЛ АРБУЗЫ #shorts
00:34
Паша Осадчий
Рет қаралды 7 МЛН