[$] Building secure images with NixOS
Date:
Wed, 06 Nov 2024 16:35:20 +0000
Description:
Image-based Linux distributions have seen increasing popularity, recently. They
promise reliability and security, but pose packaging problems for
existing distributions. Ryan Lahfa and Niklas Sturm spoke about the work that NixOS has done to enable an image-based workflow at this year's All Systems Go! conference in Berlin.
Unfortunately, LWN was not able to cover the conference for scheduling reasons,
but the videos of the event are available for anyone interested in watching the
talks.
Lahfa and Sturm explained that it is currently possible to create a NixOS system that
cryptographically verifies the kernel, initrd, and Nix store on boot although doing so still has some rough edges. Making an image-based NixOS installation is
similarly possible.
======================================================================
Link to news story:
https://lwn.net/Articles/996329/
--- Mystic BBS v1.12 A47 (Linux/64)
* Origin: tqwNet UK HUB @ hub.uk.erb.pw (1337:1/100)