All of lore.kernel.org
 help / color / mirror / Atom feed
From: Isaac Dupree <id@isaac.cedarswampstudios.org>
To: The development of GRUB 2 <grub-devel@gnu.org>
Subject: Re: grub-probe detects ext4 wronly as ext2
Date: Thu, 03 Jul 2008 10:21:49 -0400	[thread overview]
Message-ID: <486CE07D.9050307@isaac.cedarswampstudios.org> (raw)
In-Reply-To: <20080703140211.GA19341@thorin>

Robert Millan wrote:
> A more elegant solution (also may be interesting for security at some point)
> would be for update-grub to hash each file it generates access commands for
> and embed the sum in grub.cfg as a check parameter, like
> 
>   if verify_hash /file xxxxx ; then
>     do_something_with_file /file
>   fi
> 
> So, if we take for granted those two things:
> 
>   - That GRUB should never crash no matter what you feed to it.
>   - That update-grub instructs GRUB to verify file consistency via hashing.

also?,
     - That whenever someone wants to boot a new kernel (or whatever), 
they re-run update-grub.  Which definitely doesn't apply if they're 
interactively poking around with the GRUB commandline.  But it could be 
a safety check for some cases.

Would it ever make sense to *ask* the user whether to proceed, if the 
file is different? (they might have changed the file deliberately!) 
But, with that code you mentioned for grub.cfg, I suppose it can be 
adjusted to do that, if desired by whoever controls grub.cfg.

-Isaac



  reply	other threads:[~2008-07-03 14:22 UTC|newest]

Thread overview: 68+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2008-06-29 18:11 grub-probe detects ext4 wronly as ext2 Felix Zielcke
2008-06-29 18:46 ` Javier Martín
2008-06-29 19:17   ` Bean
2008-06-29 19:53     ` Javier Martín
2008-06-29 21:19       ` Robert Millan
2008-06-30  3:02         ` Javier Martín
2008-06-30  7:10           ` Felix Zielcke
2008-06-30 11:14           ` Isaac Dupree
2008-06-30 12:12             ` Javier Martín
2008-06-30 12:27               ` Bean
2008-06-30 12:43                 ` Javier Martín
2008-07-01 16:08                 ` Robert Millan
2008-07-01 16:25                   ` Pavel Roskin
2008-07-01 18:42                     ` Javier Martín
2008-07-01 19:01                       ` Pavel Roskin
2008-07-01 20:48                       ` Robert Millan
2008-07-01 23:05                         ` Javier Martín
2008-07-01 23:28                         ` Javier Martín
2008-07-02 14:22                           ` Robert Millan
2008-07-02 16:03                             ` Pavel Roskin
2008-07-02 19:32                             ` Javier Martín
2008-07-03 14:02                               ` Robert Millan
2008-07-03 14:21                                 ` Isaac Dupree [this message]
2008-07-03 17:07                                 ` Javier Martín
2008-07-04  0:08                                   ` Robert Millan
2008-07-04  1:20                                     ` Javier Martín
2008-08-05 17:23                                       ` Felix Zielcke
2008-08-06 10:36                                         ` Felix Zielcke
2008-08-11  0:35                                           ` Javier Martín
2008-08-11  7:56                                             ` Felix Zielcke
2008-07-04  1:32                                     ` Javier Martín
2008-07-04  6:49                                       ` Bean
2008-07-04  8:33                                         ` Felix Zielcke
2008-07-04 10:34                                         ` Javier Martín
2008-07-04 11:29                                           ` Bean
2008-07-04 12:00                                             ` Javier Martín
2008-07-04 14:09                                               ` Robert Millan
2008-07-04 14:33                                                 ` Javier Martín
2008-07-04 14:11                                               ` Bean
2008-07-04 14:34                                                 ` Javier Martín
2008-07-04 14:04                                           ` Robert Millan
2008-07-04 14:23                                             ` Robert Millan
2008-07-04 14:21                                       ` Robert Millan
2008-07-04 14:45                                         ` Javier Martín
2008-07-04 18:57                                           ` Robert Millan
2008-07-04 20:41                                             ` Javier Martín
2008-07-05 12:07                                               ` Robert Millan
2008-07-05 18:36                                                 ` Javier Martín
2008-07-16 15:09                                                   ` Javier Martín
2008-07-16 15:27                                                     ` Felix Zielcke
2008-07-16 16:38                                                       ` Javier Martín
2008-07-16 17:13                                                         ` Felix Zielcke
2008-07-16 17:21                                                           ` Felix Zielcke
2008-07-16 17:44                                                             ` Felix Zielcke
2008-07-16 19:07                                                               ` Javier Martín
2008-07-16 19:33                                                                 ` Felix Zielcke
2008-07-19 14:27                                                   ` Robert Millan
2008-08-11 14:14                                                     ` Javier Martín
2008-08-27 13:58                                                       ` Felix Zielcke
2008-08-30 11:17                                                       ` Robert Millan
2008-08-30 21:28                                                         ` Javier Martín
2008-09-24 17:05                                                           ` Javier Martín
2009-02-04  7:41                                                       ` Felix Zielcke
2009-02-04 13:08                                                         ` Javier Martín
2009-02-07 19:30                                                           ` Felix Zielcke
2009-02-07 23:54                                                             ` Javier Martín
2009-02-08  0:28                                                               ` Robert Millan
2008-07-01 16:03           ` Robert Millan

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=486CE07D.9050307@isaac.cedarswampstudios.org \
    --to=id@isaac.cedarswampstudios.org \
    --cc=grub-devel@gnu.org \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.