[LEDE-DEV] automated signed firmware upgrades / hide a secret in image

Bastian Bittorf bb at npl.de
Wed Feb 22 04:51:34 PST 2017


* Yousong Zhou <yszhou4tech at gmail.com> [22.02.2017 13:19]:
> How about generating at build time a piece of c code whose output when
> run at the target board will be the source code itself (quine).  We
> can use the output content to seed the computation of signature.  The
> binary itself should be cross-compiled in a reproducible way so that
> integrity of the binary itself can be verified...

that is a *great* idea and I will go for it and implement...

bye, bastian



More information about the Lede-dev mailing list