[tor-bugs] #6008 [Company]: Improve software assurance
Tor Bug Tracker & Wiki
torproject-admin at torproject.org
Thu May 31 01:22:13 UTC 2012
#6008: Improve software assurance
---------------------+------------------------------------------------------
Reporter: phobos | Owner: phobos
Type: project | Status: new
Priority: normal | Milestone: Sponsor Z: November 1, 2013
Component: Company | Version:
Keywords: | Parent:
Points: | Actualpoints:
---------------------+------------------------------------------------------
Improving software assurance through repeatable builds across all
operating systems and verifiable build system security. Without getting
into endless black holes (see http://cm.bell-labs.com/who/ken/trust.html),
we should be able to document how our software was built and others should
be able to repeat the exact same steps and build the exact same binaries.
The binaries should be verifiable through some hash algorithm or forensic
analysis of the resulting binaries.
This goes towards improving our build integrity and build security once
others can independently verify the binaries.
--
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/6008>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online
More information about the tor-bugs
mailing list