Announcement

Collapse
No announcement yet.

Linux Lock-Down Kernel Patches Get Revived, Seeking Mainline Inclusion

Collapse
X
 
  • Filter
  • Time
  • Show
Clear All
new posts

  • Linux Lock-Down Kernel Patches Get Revived, Seeking Mainline Inclusion

    Phoronix: Linux Lock-Down Kernel Patches Get Revived, Seeking Mainline Inclusion

    An effort ongoing for a few years now has been the CONFIG_LOCK_DOWN_KERNEL patches to prevent user-space from being able to modify the kernel image with blocking the ability to load unsigned kernel modules, no writing to /dev/mem, restricting PCI BAR and MSR access, ACPI restrictions, and more. Some Linux distributions are are already carrying this work in some form and enabling it with UEFI SecureBoot, but it hasn't been mainlined although could soon change...

    Phoronix, Linux Hardware Reviews, Linux hardware benchmarks, Linux server benchmarks, Linux benchmarking, Desktop Linux, Linux performance, Open Source graphics, Linux How To, Ubuntu benchmarks, Ubuntu hardware, Phoronix Test Suite

  • #2
    Typo:

    Originally posted by phoronix View Post
    Some Linux distributions are are already carrying this work

    Comment


    • #3
      Didn't Linus shot down these patches few years ago (something deep throat something)? These guys will never give up will they

      Comment

      Working...
      X