Re: Integrity checking NANOBSD images

看板FB_security作者時間19年前 (2006/07/12 05:23), 編輯推噓0(000)
留言0則, 0人參與, 最新討論串14/15 (看更多)
> >A switch like on those 1.44'' floppy discs would be good... > >But then software/OS updates would require physical access to the box... > > For this app, the problem is that there might indeed be physical > tampering with the box despite some reasonable efforts to lock it up. If the box is subject to tampering and not in a tamper-proof container, then it may be impossible to know whether or not the device has been tampered with or modified. seems to me that it would be possible to replace the device with one that emulates its behavior or rather intercepts connections (using the same ssh keys copied from the device) and relays the data on to the device, relaying responses back to you, all the while copying the cleartext data stream to another device. perhaps, you might consider setting it up so that if the box is opened the flash is zapped. > > _______________________________________________ > freebsd-security@freebsd.org mailing list > http://lists.freebsd.org/mailman/listinfo/freebsd-security > To unsubscribe, send any mail to "freebsd-security-unsubscribe@freebsd.org" > _______________________________________________ freebsd-security@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-security To unsubscribe, send any mail to "freebsd-security-unsubscribe@freebsd.org"
文章代碼(AID): #14j1RZ00 (FB_security)
討論串 (同標題文章)
文章代碼(AID): #14j1RZ00 (FB_security)