Trusted execution (TE) includes a group of features which can verify the integrity of files in an OS like Linux. It can thus block any attempts to execute malicious code that is not part of the trusted database. Hence, developments for Linux OS are needed such that

  • Hashed signature for following types of files can be generated for Linux OS any time
    • Kernels and kernel extensions
    • All setuid root programs, All setgid root programs
    • Any program exclusively run by root or by a member of the system group
    • Any program that may alter system configuration files
    • Important configuration files
  • Existing LOADER of Linux OS shall be modified such that it consults Hash signature database every time before loading any process in memory for execution
  • Any change in Hash signature database shall be effective only after reboot of OS.

