Re: [PATCH v5 00/21] EVM

From: Mimi Zohar
Date: Thu May 19 2011 - 21:07:17 EST


On Fri, 2011-05-20 at 10:51 +1000, James Morris wrote:
> On Wed, 18 May 2011, Mimi Zohar wrote:
>
> > > Once we have a better understanding of what the feature does and why it
> > > does it and how it interfaces with the user, we can start looking at
> > > the implementation.
> >
> > Much appreciated!
>
> What is the status of potential users of the feature?
>
> I recall that MeeGo were planning to use EVM, but they've since changed
> their security plans. Do they still plan to use it? Are any other users
> committing to use EVM?
>
> Also -- this was raised some time back, but I can't find the discussion --
> what does IMA/EVM provide over disk encryption as a protection against
> offline attacks?
>
> - James

Dave Safford's whitepaper discusses this.
http://downloads.sf.net/project/linux-ima/linux-ima/Integrity_overview.pdf

Mimi


Mimi

--
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/