YoVDO

Tying EVM into LSM Policy for Enhanced Linux Security

Offered By: Linux Foundation via YouTube

Tags

Linux Security Courses System Security Courses

Course Description

Overview

Save Big on Coursera Plus. 7,000+ courses at $160 off. Limited Time Only!
Explore the integration of Extended Verification Module (EVM) with Linux Security Module (LSM) policy in this 34-minute conference talk by Matthew Garrett from Google. Delve into the challenges of securing developer machines and learn how EVM can enhance file integrity verification. Discover the potential of combining EVM with other Linux security mechanisms to grant privileges based on application metadata and signature validity. Examine the complexities of implementing this approach, including considerations for interpreted languages and performance optimization. Gain insights from Garrett's expertise in desktop Linux security as he presents solutions and discusses future possibilities for improving system integrity and security.

Syllabus

Intro
How do you secure a fleet of developer machines?
Integrity Measurement Architecture (IMA)
Taking IMA further - Extended Validation Module
EVM wasn't ideally suited for what we wanted
How do we tie these together?
What does it look like?
But what about interpreted languages?
We can add more complexity
But hashing is slow
Summary


Taught by

Linux Foundation

Tags

Related Courses

Enterprise System Management and Security
University of Colorado System via Coursera
Ethical Hacking
Indian Institute of Technology, Kharagpur via Swayam
PHP: Complete Login and Registration System with PHP & MYSQL
Udemy
Learn Ethical Hacking From Scratch 2024
Udemy
Serie Windows Server Update Services (WSUS)
Udemy