meta-digi/meta-digi-dey/recipes-core/trustfence
Tatiana Leon f510a438df trustfence-initramfs: do not boot non-encrypted rootfs if encryption is enabled
Allowing to boot a non-encrypted rootfs when encryption is enable is a security
hole: if an attacker can somehow write (offline) to the media, he could flash a
custom unencrypted rootfs and break into the system.

If the system is configured to use encryption, only encrypted rootfs will boot.
Trying to boot a non-encrypted rootfs will fail and power off the device.

https://jira.digi.com/browse/DEL-3829

Signed-off-by: Tatiana Leon <tatiana.leon@digi.com>
2017-03-14 19:19:33 +01:00
..
trustfence-initramfs trustfence-initramfs: do not boot non-encrypted rootfs if encryption is enabled 2017-03-14 19:19:33 +01:00
trustfence-initramfs.bb trustfence-initramfs: remove support for encrypted rootfs installation 2017-03-14 19:19:33 +01:00
trustfence-tool_2.0.bb trustfence-tool: install tool from tarball 2016-11-30 14:51:54 +01:00