All of lore.kernel.org
 help / color / mirror / Atom feed
* Working Group for Secure Boot
@ 2021-03-11 18:34 Bob Eshleman
  2021-03-12  8:05 ` Jan Beulich
                   ` (6 more replies)
  0 siblings, 7 replies; 17+ messages in thread
From: Bob Eshleman @ 2021-03-11 18:34 UTC (permalink / raw)
  To: Xen-devel; +Cc: Andrew Cooper, George Dunlap, piotr.krol, Olivier Lambert

Hey all,

We would like to start a working group for secure boot support in Xen
to coordinate the various interested parties and set out a plan for
the feature and its implications for the whole Xen system.

The end goal is a full implementation that restricts the interfaces
dom0 has to affect Xen, akin to Linux's lockdown LSM.  This implicates
important parts of the ABI (e.g., /dev/xen/privcmd/) and so will
require input from the greater community.

I'm not familiar with how working groups function in the Xen project,
so this email also opens the floor for suggestions as to how this might
be managed.

We'd love to hear from anyone interested in such a group and how the
community as a whole feels about such an effort.

Best regards.

---

Bobby Eshleman
SE at Vates SAS


^ permalink raw reply	[flat|nested] 17+ messages in thread

end of thread, other threads:[~2021-03-22 18:25 UTC | newest]

Thread overview: 17+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2021-03-11 18:34 Working Group for Secure Boot Bob Eshleman
2021-03-12  8:05 ` Jan Beulich
2021-03-12 15:12 ` Andrew Cooper
2021-03-12 15:24 ` Marek Marczykowski-Górecki
2021-03-12 16:24   ` Trammell Hudson
2021-03-12 15:40 ` Daniel P. Smith
2021-03-12 17:06 ` Andrew Cooper
2021-03-12 19:06 ` Bob Eshleman
2021-03-12 20:46   ` Roman Shaposhnik
2021-03-16 19:42   ` Bob Eshleman
2021-03-16 20:07     ` Roman Shaposhnik
2021-03-16 20:53       ` Bob Eshleman
2021-03-16 21:21     ` Christopher Clark
2021-03-16 21:39     ` Andrew Cooper
2021-03-16 22:03     ` Marek Marczykowski-Górecki
2021-03-22 18:25     ` Bob Eshleman
2021-03-13  8:38 ` Roger Pau Monné

This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.