How to make use of FS-verity correctly

Privacy Guides page mentions that Fedora is going to introduce FS-Verity soon. Do you know any guildelines about how to set it up correctly in order to get some security benefits from it?

Probably wont be many/any until its actually implemented and people can easily test it imo.

Seems to be available in F37 (gonna be released this week)

Oh really? I’m running 37 beta right now

So it seems you can enable it Changes/FsVerityRPM - Fedora Project Wiki

I’m wondering how to ensure that the kernel really checks it, and how to ensure you boot the right kernel

1 Like