securelaunch

package
v0.9.0 Latest Latest
Warning

This package is not in the latest version of its module.

Go to latest
Published: Jul 29, 2022 License: BSD-3-Clause Imports: 8 Imported by: 48

Documentation

Overview

Package securelaunch takes integrity measurements before launching the target system.

Index

Constants

This section is empty.

Variables

View Source
var Debug = func(string, ...interface{}) {}

Debug enables verbose logs if kernel cmd line has uroot.uinitargs=-d flag set. kernel cmdline is checked in sluinit.

View Source
var StorageBlkDevices block.BlockDevices

StorageBlkDevices helps securelaunch pkg mount devices.

Functions

func AddToPersistQueue

func AddToPersistQueue(desc string, data []byte, location string, defFile string) error

AddToPersistQueue enqueues an action item to persistData slice so that it can be deferred to the last step of sluinit.

func ClearPersistQueue

func ClearPersistQueue() error

ClearPersistQueue persists any pending data/logs to disk

func GetBlkInfo

func GetBlkInfo() error

GetBlkInfo gets information on all block devices and stores it in the global variable 'StorageBlkDevices'. If it is called more than once, the subsequent calls just return.

In debug mode, it also prints names and UUIDs for all devices.

func GetMountedFilePath

func GetMountedFilePath(inputVal string, flags uintptr) (string, error)

GetMountedFilePath returns the file path corresponding to the given <device_identifier>:<path>. <device_identifier> is a Linux block device identifier (e.g, sda or UUID).

func GetStorageDevice

func GetStorageDevice(input string) (*block.BlockDev, error)

GetStorageDevice parses input of type UUID:/tmp/foo or sda2:/tmp/foo, and returns any matching devices.

func MountDevice

func MountDevice(device *block.BlockDev, flags uintptr) (string, error)

MountDevice looks up mountCache map. if no entry is found, it mounts a device and updates cache, otherwise returns mountPath.

func UnmountAll

func UnmountAll()

UnmountAll unmounts all mounted devices from the file heirarchy.

func WriteToFile

func WriteToFile(data []byte, dst, defFileName string) (string, error)

WriteToFile writes a byte slice to a file on an already mounted disk and returns the file path written to.

Types

This section is empty.

Directories

Path Synopsis
Package eventlog parses kernel event logs and saves the parsed data on a file on disk.
Package eventlog parses kernel event logs and saves the parsed data on a file on disk.
Package launcher boots the target kernel.
Package launcher boots the target kernel.
Package measurement provides different collectors to hash files, disks, dmi info and cpuid info.
Package measurement provides different collectors to hash files, disks, dmi info and cpuid info.
Package policy locates and parses a JSON policy file.
Package policy locates and parses a JSON policy file.
Package tpm reads and extends pcrs with measurements.
Package tpm reads and extends pcrs with measurements.

Jump to

Keyboard shortcuts

? : This menu
/ : Search site
f or F : Jump to
y or Y : Canonical URL