[NTLUG:Discuss] Security: Signed Kernel Modules

Jack Snodgrass jack+ntlug at mylinuxguy.net
Wed Jul 24 18:52:09 CDT 2002


Does anyone know anything about using signed modules? Normally, 
if you allow the use of modules, any one that hacks in can 
upload a module and insmod it. This can give them all sorts
of access to your machine if they know what they are doing. 

TiVo uses ( or can use ) some sort of 'signed modules' that 
will only load if it is compiled with a key that matches 
the kernel. This would add some sort of secuirity to your 
box. 

Does anyone know if anything ( besides TiVo ) does this? 

Thanks - jack 









More information about the Discuss mailing list