Hacker News
new
|
past
|
comments
|
ask
|
show
|
jobs
|
submit
login
jimsi
on Sept 23, 2021
|
parent
|
context
|
favorite
| on:
Authenticated Boot and Disk Encryption on Linux
https://github.com/xmikos/cryptboot/blob/master/README.md
Foxboron
on Sept 23, 2021
[–]
I don't think a 5 year old project linked without context is appropriate when talking about modern boot chain security.
It doesn't even support stubs so it fails at the first threat scenario described in this post.
selfhoster11
on Sept 23, 2021
|
parent
[–]
I disagree. UEFI boot security is not that recent, and it hasn't changed so much as to render earliest approaches less secure.
Foxboron
on Sept 23, 2021
|
root
|
parent
[–]
It is less secure. The initramfs is not signed, along with the microcode.
Guidelines
|
FAQ
|
Lists
|
API
|
Security
|
Legal
|
Apply to YC
|
Contact
Search: