maemo.org - Talk

maemo.org - Talk (https://talk.maemo.org/index.php)
-   MeeGo / Harmattan (https://talk.maemo.org/forumdisplay.php?f=45)
-   -   Maemo 6 Platform Security (https://talk.maemo.org/showthread.php?t=43627)

corsac 2010-02-10 22:15

Re: Maemo 6 Platform Security
 
Quote:

Originally Posted by wmarone (Post 519887)
Just remember: it's "security," but not for you.

I'm interested on the security platform as a security researcher, not only for my own usage. So I'm more interested about what can be done to secure usage in both private and business uses.

Interested in how “hardened” the device is (stuff like address randomization, W^X, etc.)

qgil 2010-02-11 06:47

Re: Maemo 6 Platform Security
 
FOSDEM'10: Maemo 6 platform security
http://lwn.net/SubscriberLink/373780/1b98fb582ab0249c/

(LWN subscriber-only content - let me pay this off with a little advertisement below)

Quote:

Welcome to LWN.net

The following subscription-only content has been made available to you by an LWN subscriber. Thousands of subscribers depend on LWN for the best news from the Linux and free software communities. If you enjoy this article, please consider accepting the trial offer on the right. Thank you for visiting LWN.net!

corsac 2010-02-11 06:51

Re: Maemo 6 Platform Security
 
Thanks! (fortunately for me, since I'm a Debian developer, I have a LWN account)

benny1967 2010-02-11 07:30

Re: Maemo 6 Platform Security
 
thx for the link; i have to admit i was worried about the restrictions management in M6, but this one paragraph makes me happy:

Quote:

Users can also switch between the open and closed modes (e.g. between a 'community' kernel and Nokia's kernel), so that after working in the open mode, users can return to the DRM-protected mode to play some music. If the application doesn't use the protected storage but just stores its data as plain files in the file system, like most non-commercial applications will do, those files are accessible in both modes. Switching modes requires rebooting the device, though, because the checks for the integrity of the software are done by the boot loader.
previous documentation had made it clear users could switch from one mode to another. this is the first time i read users can switch back and forth and that unrestricted files will be available in both modes. (another possibility would have been that once you un-DRMed your device, you couldn't get back to "comes with music"-mode... or that your own non-DRMed photos aren't accessible in open mode when you shot them in restricted mode. all of that doesn't seem to be the case.)

the article is interesting for end users like me, too, not only for developers.

pelago 2010-02-11 09:55

Re: Maemo 6 Platform Security
 
Does the N900 have the "hardware enabler: the ARM TrustZone security extension to the ARM Cortex-A8 processor" mentioned in that LWN.net article?

corsac 2010-02-11 10:59

Re: Maemo 6 Platform Security
 
Quote:

Originally Posted by pelago (Post 520858)
Does the N900 have the "hardware enabler: the ARM TrustZone security extension to the ARM Cortex-A8 processor" mentioned in that LWN.net article?

Yes. Well, at least it should, though I didn't check by myself.

Elena Reshetova 2010-02-11 17:11

Re: Maemo 6 Platform Security
 
Hi,

Sorry for the delay. I uploaded the presentation here:

http://www.slideshare.net/reshetov/m...ecurity-fosdem

The video of the presentation should be soon available on FOSDEM site.

corsac 2010-02-11 17:15

Re: Maemo 6 Platform Security
 
Thank you very much :)

mannakiosk 2010-02-12 11:29

Re: Maemo 6 Platform Security
 
there are videos from fosdem 10 up now at http://video.fosdem.org/

Elena Reshetovas talk "Maemo 6 Platform Security": http://video.fosdem.org/2010/maintracks/maemo.xvid.avi

uljanow 2010-02-12 12:01

Re: Maemo 6 Platform Security
 
Talking about user restrictions of a future release of Maemo might not be the best move especially if you use marketing terms as PC-like and OpenSource.

Good luck dealing with GPLv3.


All times are GMT. The time now is 13:02.

vBulletin® Version 3.8.8