Acknowledge special USB drives

This commit is contained in:
Andrew David Wong 2019-01-19 17:27:37 -06:00
parent b4216553da
commit 2507fe1255
No known key found for this signature in database
GPG Key ID: 8CE137352A019A17

View File

@ -75,6 +75,10 @@ Cons:
untrusted ISO to dom0 in order to burn it to disc, which leaves only the untrusted ISO to dom0 in order to burn it to disc, which leaves only the
other two options.) other two options.)
Considering the pros and cons of each, perhaps a USB drive with non-rewritable
(or at least cryptographically-signed) firmware and a physical write-protect
switch might be the option.
[verify]: /security/verifying-signatures/ [verify]: /security/verifying-signatures/
[classic problem]: https://www.ece.cmu.edu/~ganger/712.fall02/papers/p761-thompson.pdf [classic problem]: https://www.ece.cmu.edu/~ganger/712.fall02/papers/p761-thompson.pdf