stable

fsverity-utils-1.3-3.el8

FEDORA-EPEL-2021-0b0bbc62f1 created by filbranden 3 years ago for Fedora EPEL 8

This is fsverity, a userspace utility for fs-verity. fs-verity is a Linux kernel feature that does transparent on-demand integrity/authenticity verification of the contents of read-only files, using a hidden Merkle tree (hash tree) associated with the file. The mechanism is similar to dm-verity, but implemented at the file level rather than at the block device level. The fsverity utility allows you to set up fs-verity protected files.

This is the initial release for EPEL 8.

This update has been submitted for testing by filbranden.

3 years ago

This update's test gating status has been changed to 'ignored'.

3 years ago

This update's test gating status has been changed to 'waiting'.

3 years ago

This update's test gating status has been changed to 'ignored'.

3 years ago

filbranden edited this update.

3 years ago

filbranden edited this update.

3 years ago

This update has been pushed to testing.

3 years ago
User Icon dcavalca commented & provided feedback 3 years ago
karma

+1 on behalf of Boris Burkov who tested this on CentOS Stream 8:

# we're on btrfs with my hacked kernel
# uname -r
5.6.13-0_fbk8_rc1_borisb_verity_4795_g3f0648dee154
# < /proc/mounts grep btrfs
/dev/sda3 / btrfs rw,relatime,ssd,discard=async,space_cache=v2,subvolid=5,subvol=/ 0 0

# write a small file
# dd if=/dev/zero of=foo bs=4K count=100
100+0 records in
100+0 records out
409600 bytes (410 kB, 400 KiB) copied, 0.000484109 s, 846 MB/s

# enable verity on the file and sync
# fsverity enable foo
# sync

# reads succeed (saw verity logs in dmesg)
# sha256sum foo
d58201a30b35a60612306667b083ca4dfaf9efa107386fff36188e42c34c3c19  foo

# writes fail
# echo 3 > foo
-bash: foo: Operation not permitted

# get the root hash with the util, matches what's in the kernel logs
# fsverity measure foo
sha256:9211aa293030a8a37405e005453d245004b8a87f5aae6856f84cff421e233140 foo
BZ#1892483 fsverity-utils is missing in EPEL8

This update can be pushed to stable now if the maintainer wishes

3 years ago

This update has been submitted for stable by bodhi.

3 years ago

This update has been pushed to stable.

3 years ago

Please login to add feedback.

Metadata
Type
newpackage
Severity
low
Karma
1
Signed
Content Type
RPM
Test Gating
Autopush Settings
Unstable by Karma
-3
Stable by Karma
2
Stable by Time
14 days
Dates
submitted
3 years ago
in testing
3 years ago
in stable
3 years ago
modified
3 years ago
BZ#1892483 fsverity-utils is missing in EPEL8
0
1

Automated Test Results