Get the latest tech news

Linux 6.12 Landing Integrity Policy Enforcement "IPE" Module


Merged as part of the Linux Security Modules (LSM) updates for the Linux 6.12 kernel is the new Integrity Policy Enforcement (IPE) module that has been years in the making

Integrity Policy Enforcement relies on immutable security properties of the system component and is engineered for fixed-function systems like network firewall devices, IoT platforms, etc, that are only ever running certain application-targeted code. This Integrity Policy Enforcement isn't intended just for general PC or server use with software from a myriad of sources/vendors. With Integrity Policy Enforcement, administrators can restrict execution of binaries to only those that come from an integrity-protected storage device, like a DM-VERITY using file-system.

Get the Android app

Or read this on Phoronix

Read more on:

Photo of Linux

Linux

Photo of Module

Module

Photo of ipe

ipe

Related news:

News photo

Btrfs Sees Minor Performance Optimizations With Linux 6.12

News photo

Device Memory TCP Included With The Networking Changes For Linux 6.12

News photo

ARM / RISC-V / LoongArch KVM Updates Submitted For Linux 6.12