Practical Filesystem Security for Embedded Systems
05-19, 17:55–18:25 (UTC), Kirkstone

Beside of many different filesystems, Linux offers these days various methods to have confidentiality and integrity at the storage layer. The goal of this talk is giving an overview of these methods and how to use them with Yocto. Filesystems in focus are ext4, f2fs and ubifs.


Linux offers plenty of security features for filesystems these days, in this talk you'll get an overview of most of those features and how to use them with Yocto.
After this talk you'll be able to select a suitable filesystem plus encryption and/or authentication scheme for your next embedded Linux project.
Additionally you'll gain knowledge how to store key material on your board.

See also: slides (401.5 KB)

Richard Weinberger is a long term contributor to various open source projects, in the Linux project he maintains UBIFS, UserModeLinux and the MTD subsystem.
At day he runs a small contracting company, sigma star gmbh, which provides software consulting services with focus on security and Linux.