|
From: Hal F. <hal...@gm...> - 2009-01-07 22:49:16
|
>> From: Hal Finney [mailto:hal...@gm...] >> Sent: Tuesday, January 06, 2009 7:26 PM >> >> There is one aspect of tboot security which I always wondered about. >> Maybe someone could reassure me that it is OK. >> >> Shouldn't the MLE check to see that the page tables are/were set up >> correctly? On Tue, Jan 6, 2009 at 11:25 PM, Cihula, Joseph <jos...@in...> wrote: > > This has been on my todo list for a while now but I haven't gotten to it yet (it *is* covered in the MLE Developers Manual, however). Now that I just finished a few patches (and one more to come that requires Xen support), I should be able to knock this out pretty soon. I would like to see a document which lists known security flaws like this in tboot. It might help to reduce claims that "Intel TXT is broken" and the like. Do you know of other security loopholes which are planned for closure in future versions? Hal |