[tor-bugs] #6008 [Company]: Improve software assurance

Tor Bug Tracker & Wiki torproject-admin at torproject.org
Thu May 31 01:22:13 UTC 2012


#6008: Improve software assurance
---------------------+------------------------------------------------------
 Reporter:  phobos   |          Owner:  phobos                     
     Type:  project  |         Status:  new                        
 Priority:  normal   |      Milestone:  Sponsor Z: November 1, 2013
Component:  Company  |        Version:                             
 Keywords:           |         Parent:                             
   Points:           |   Actualpoints:                             
---------------------+------------------------------------------------------
 Improving software assurance through repeatable builds across all
 operating systems and verifiable build system security. Without getting
 into endless black holes (see http://cm.bell-labs.com/who/ken/trust.html),
 we should be able to document how our software was built and others should
 be able to repeat the exact same steps and build the exact same binaries.
 The binaries should be verifiable through some hash algorithm or forensic
 analysis of the resulting binaries.

 This goes towards improving our build integrity and build security once
 others can independently verify the binaries.

-- 
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/6008>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online


More information about the tor-bugs mailing list