|
Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com |
From: Alan Barrett (apb_at_cequrux.com)
Date: Mon Oct 14 2002 - 11:10:44 CDT
On Sat, 12 Oct 2002, Brett Lymn wrote:
> <firstly, please CC me on any replies, thanks>
OK.
> Some of you may be aware that myself and others have been
> working on an idea I have had for some time. Basically the idea is to
> provide the ability of the kernel to verify an executable has not been
> modified before it is allowed to be executed.
Of the three names you have mentioned (fingerprinted/signed/hashed
exec), I like "fingerprinted exec" best. The term "signed exec" conveys
the (false) impression that there's some kind of public/private key
pair involved. The term "hashed exec" raises the question of whether
the hashing is done for some kind of perfomance (rather than security)
reason. The term "fingerprinted exec" carries the implication that the
fingerprinting has some security purpose, but does not imply that there
are any signatures.
--apb (Alan Barrett)
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]