From Fedora Project Wiki

< Features

Revision as of 07:15, 30 May 2011 by Gwei3 (talk | contribs) (Created page with '= Trusted Boot = == Summary == Add installer support for Trusted Boot (tboot). == Owner == * Name: Gang Wei * Email: gang.wei@intel.com == Current status == * ...')
(diff) ← Older revision | Latest revision (diff) | Newer revision → (diff)

Trusted Boot

Summary

Add installer support for Trusted Boot (tboot).

Owner

Current status

  • Targeted release: Fedora 16
  • Last updated: 2011-05-30
  • Percentage of completion: 0%

Detailed Description

This would include:

  1. UI to choose TXT/tboot support
  2. The underlying support to install the package and modify the bootloader cfg.

Benefit to Fedora

Fedora will be capable to do trusted launch with tboot support. It will meet the increase needs for platform security.

Scope

Required steps are:

  1. UI to choose TXT/tboot support during installation.
  2. Scripts to install the tboot package and modify the bootloader cfg.

How To Test

  • It requires platforms supporting Intel TXT.
  • If selected during system installation UI, make sure the tboot package is installed and the bootloader config is changed to boot tboot as kernel and linux as module.

User Experience

User will find the tboot packge easier to install and use.

Dependencies

none

Contingency Plan

None necessary, revert to previous release behaviour.

Documentation

Release Notes

  • Trusted Boot (tboot) is an open source, pre- kernel/VMM module that uses Intel(R) Trusted Execution Technology (Intel(R) TXT) to perform a measured and verified launch of an OS kernel/VMM.

Comments and Discussion