public inbox for linux-kernel@vger.kernel.org
 help / color / mirror / Atom feed
* RE: [ANNOUNCE] Release Digsig 1.5: kernel module for run-timeauthentication of binaries
@ 2006-04-24 16:27 Makan Pourzandi (QB/EMC)
  2006-04-24 16:47 ` Arjan van de Ven
  0 siblings, 1 reply; 25+ messages in thread
From: Makan Pourzandi (QB/EMC) @ 2006-04-24 16:27 UTC (permalink / raw)
  To: Arjan van de Ven
  Cc: linux-kernel, linux-security-module, Serue Hallyen,
	Axelle Apvrille, disec-devel

Hi Arjan, 

I hope I correctly understood your question, DigSig uses LSM hooks to
check the digital signature before loading it, then as long as your elf
loader uses kernel system calls, it's covered by DigSig. 

Regards 
Makan 


> -----Original Message-----
> From: linux-security-module-owner@vger.kernel.org 
> [mailto:linux-security-module-owner@vger.kernel.org] On 
> Behalf Of Arjan van de Ven
> Sent: April 23, 2006 8:19 AM
> To: Makan Pourzandi (QB/EMC)
> Cc: linux-kernel@vger.kernel.org; 
> linux-security-module@vger.kernel.org; Serue Hallyen; Axelle 
> Apvrille; 'disec-devel@lists.sourceforge.net'
> Subject: Re: [ANNOUNCE] Release Digsig 1.5: kernel module for 
> run-timeauthentication of binaries
> 
> On Fri, 2006-04-21 at 09:56 +0000, Makan Pourzandi wrote:
> > Hi,
> > 
> > Digsig development team would like to announce the release 
> 1.5 of digsig.
> > 
> > This kernel module helps system administrators control 
> Executable and 
> > Linkable Format (ELF) binary execution and library loading based on 
> > the presence of a valid digital signature.  The main 
> functionality is 
> > to help system administrators distinguish applications 
> he/she trusts 
> > (and therefore signs) from viruses, worms (and other 
> nuisances). It is 
> > based on the Linux Security Module hooks.
> 
> does this also prevent people writing their own elf loader in 
> a bit of perl and just mmap the code ?
> 
> 
> -
> To unsubscribe from this list: send the line "unsubscribe 
> linux-security-module" in the body of a message to 
> majordomo@vger.kernel.org More majordomo info at  
> http://vger.kernel.org/majordomo-info.html
> 

^ permalink raw reply	[flat|nested] 25+ messages in thread

end of thread, other threads:[~2006-04-28 20:48 UTC | newest]

Thread overview: 25+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2006-04-24 16:27 [ANNOUNCE] Release Digsig 1.5: kernel module for run-timeauthentication of binaries Makan Pourzandi (QB/EMC)
2006-04-24 16:47 ` Arjan van de Ven
2006-04-24 20:32   ` Nix
2006-04-24 20:45     ` Arjan van de Ven
2006-04-24 23:35       ` Nix
2006-04-25  6:30         ` Arjan van de Ven
2006-04-25  7:16           ` Nix
2006-04-25 16:11             ` Axelle Apvrille
2006-04-25 16:56               ` Arjan van de Ven
2006-04-25 18:57                 ` Nix
2006-04-25 19:37                   ` Arjan van de Ven
2006-04-25 19:52                     ` Valdis.Kletnieks
2006-04-26  4:43                       ` Kyle Moffett
2006-04-25 19:01               ` Chris Boot
2006-04-25 19:09                 ` Valdis.Kletnieks
2006-04-25 20:00                 ` Serge E. Hallyn
2006-04-28 15:33               ` Ulrich Drepper
2006-04-28 16:09                 ` Serge E. Hallyn
2006-04-28 16:11                   ` Arjan van de Ven
2006-04-28 16:29                     ` Serge E. Hallyn
2006-04-28 17:53                       ` Arjan van de Ven
2006-04-28 20:48                       ` Michael Tokarev
2006-04-28 18:16                   ` Christoph Hellwig
2006-04-28 19:22                     ` Serge E. Hallyn
2006-04-25 13:00           ` Geert Uytterhoeven

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox