Proposals

dm-verity: a device mapper target for integrity checking of block devices

Session information has not yet been published for this event.

*

One Line Summary

The verity target provides transparent integrity checking of block devices using a cryptographic digest.

Abstract

dm-verity is part of ChromeOS’s verified boot path. It is used to verify the integrity of the root filesystem on boot. The root filesystem is mounted on a dm-verity partition which transparently verifies echo block with a bootloader verified hash passed into the kernel at boot.

Tags

device-mapper

Speaker