Re: Integrity checking NANOBSD images

[ Available lists | Index of freebsd-security | Month of Jul 2006 | Week of 11 Jul 2006 | Raw email | View thread | Wrap long lines | Reply | Tag ]
From
Mike Tancsa <mike@sentex.net>
Date
11 Jul 2006 20:52:33
Subject
Re: Integrity checking NANOBSD images
Message-ID
6.2.3.4.0.20060711164431.04bd00f8@64.7.153.2

In reply to

[ Hide this part ]
At 04:34 PM 11/07/2006, Ruslan Ermilov wrote:
> > >
> > With respect to prepending a random salt to the image, can you expand
> > what you mean ?
> >
>It means that every time you want to checksum it, you send some
>random bits to be prepended to the image, then compute the
>checksum(s). You then do the same (with the same salt) on a
>trusted host and compare the results.

OK, but that implies I have a copy of the image locally. We do on
occasion make modifications to the config in the field, and sending
back a 512MB image over dialup would be difficult for this deployment.

---Mike



Elapsed time: 0.112 seconds