Gentoo Logo
Gentoo Spaceship

Get Started
Gentoo Handbook
Installation Docs
Downloads

News
Security Announcements
Monthly Newsletter

Documentation
Gentoo Handbook
Documentation List
IBM dW/Intel article archive
Developer's Manual

Get Gentoo
Downloads
Mirrors

Community
Discussion Forums
IRC Channels
Mailing Lists
Report Issues
Planet (Blogs)
Online Package Database
Contact Us
Sponsors

Get Involved
Report Issues
Help Wanted
Discussion Forums
IRC Channels
Mailing Lists
Become a Developer
Offer Resources
Enhancement Proposals (GLEPs)
Source Repositories
Developer's Manual

Other
Developer List
Developer Map
Gentoo Stores
Projects

About
About Gentoo
Philosophy
Social Contract
Name and Logo Guidelines
Logos and themes
Screenshots



Trusted Gentoo
Posted on February 2, 2005 by Daniel Black

stick man

Trusted Gentoo was a concept brought out by realizing that Trusted Computing Group (TCG - formerly known as Trusted Computing Platform Alliance or TCPA) architecture can provide Gentoo with the ability to give our users a hardened platform and a choice of utilizing hardware. The way that TCG provides a hardened platform is by keeping cryptographic processing in hardware and cryptographic keys out of RAM and disks. It also allows keys to be provided to only user-specified programs.

Trusted Gentoo will give users the choice to set up their hardware to verify that their kernels are loaded on bootup and not some hacked ones that someone installed when they left their computers alone for the night. Trusted Gentoo will give users the ability to store their cryptographic keys (e.g. ssh keys, gnupg keys) in hardware to be released only to those applications the user wants the keys given to. The concept of installing remote trojans to steal crytographic keys and passwords is hard to imagine but not impossible in all setups. The use of TCG architecture will empower the user to deny providing keys to trojans.

There is no intent for Gentoo to use of the TCG architecture for any purpose other than what the user wants -- a secure, still-flexible operating system. Gentoo is about choice, and this is no exception. For a clarification of DRM and TCG, see this article by IBM.




Updated February 2, 2005

Donate to support our development efforts.

Support OSL
Gentoo Centric Hosting: vr.org
Tek Alchemy
SevenL.net
Global Netoptex Inc.
Bytemark
Online Kredit Index
Copyright 2001-2010 Gentoo Foundation, Inc. Questions, Comments? Contact us.