|
From: Shaz <sha...@gm...> - 2010-07-07 13:26:02
|
On Wed, Jul 7, 2010 at 5:50 PM, chloé Fouquet <fou...@gm...>wrote: > Hi, > > Is there a function that verifies automatically that the measurement log is > right according to the integrity value of the PCR 10 ? (the function will > extend a pcr will all the measurements of the measurement log) > > The ima testsuite in LTP demonstrates the verification process. > What prevents me to create a measurement log of my choice and to extend a > PCR, whose value is initially 0, with these measures and perform a quote of > this PCR and then send this quote and the measurement log to a person who > want to authenticate me ? Like that I will be able to create any measurement > log even if it doesn't correspond to my computer configuration... > If the PCR is extended by a trusted subject and in a trusted environment then it has to be trusted! You will not be able to create such a log and extend it to some PCR for authentication purposes in the first place if the platform is trusted. > > Thanks > > Chloe > > > ------------------------------------------------------------------------------ > This SF.net email is sponsored by Sprint > What will you do first with EVO, the first 4G phone? > Visit sprint.com/first -- http://p.sf.net/sfu/sprint-com-first > _______________________________________________ > Linux-ima-user mailing list > Lin...@li... > https://lists.sourceforge.net/lists/listinfo/linux-ima-user > > -- Shaz |