Securing TPM Secrets with TXT and Kernel Signatures - Paul Moore, Cisco

  Рет қаралды 1,209

The Linux Foundation

The Linux Foundation

Күн бұрын

Securing TPM Secrets with TXT and Kernel Signatures - Paul Moore, Cisco
Forum 1
Speakers: Paul Moore
This presentation will discuss a work in progress to secure data in the TPM2’s NVRAM using Intel’s TXT and extensions to tboot to support kernel signature verification. The ultimate goal being the ability to restrict access to TPM2 stored data to only those kernels which have been signed by an authorized entity while being robust in the face of kernel upgrades and downgrades.
The talk will discuss the design, and current progress, in the context of existing solutions using traditional TXT and UEFI Secure Boot; explaining why these solutions fall short either in terms of protection or usability.

Пікірлер
LSM Stacking - What You Can Do Now and What's Next - Casey Schaufler, Intel
29:30
Linux & TPMs
43:41
All Systems Go!
Рет қаралды 1,7 М.
SLIDE #shortssprintbrasil
0:31
Natan por Aí
Рет қаралды 49 МЛН
ВЛОГ ДИАНА В ТУРЦИИ
1:31:22
Lady Diana VLOG
Рет қаралды 1,2 МЛН
Ful Video ☝🏻☝🏻☝🏻
1:01
Arkeolog
Рет қаралды 14 МЛН
Stanford Seminar - Intel Software Guard Extensions
1:17:35
Stanford Online
Рет қаралды 27 М.
Secure Boot Overview
30:48
Microchip Developer Help
Рет қаралды 20 М.
Problems You will Encounter on Linux (and How to Solve Them)
23:01
Rob Braxman Tech
Рет қаралды 177 М.
Inside the V3 Nazi Super Gun
19:52
Blue Paw Print
Рет қаралды 2,2 МЛН
THE UNTOLD STORY: How the PIX Firewall and NAT Saved the Internet
21:50
The Serial Port
Рет қаралды 425 М.
AT&T Archives: The UNIX Operating System
27:27
AT&T Tech Channel
Рет қаралды 2 МЛН
36C3 -  Intel Management Engine deep dive
1:00:08
media.ccc.de
Рет қаралды 52 М.
UEFI Linux Secure Boot Kernel Signing and Verification demo
32:08
Sameer Pasha
Рет қаралды 38 М.