User:Mstone/Rainflow
Jump to navigation
Jump to search
Carrying on the tradition of naming software via puns, I'll lay down some thoughts here about software for, among other things, answering the question:
- Should we run program X deisolated?
Background
<trac>5657</trac> asked for a way to automatically update Terminal that is not subject to spoofing.
One natural approach this is activity signing. However, as experience with X.509 has shown, the devil is truly in the details.
To date, we have seen several attempts to discover appropriate details:
- [1]
- User:Mstone/Commentaries/Bundles_1
- runtime build customization thread and <trac>6432</trac>
- http://lists.laptop.org/pipermail/security/2007-December/000341.html
- horizontal distribution thread
Consequently, here's an attempt at details.