[SystemSafety] State of the art for "safe Linux"

Paul Sherwood paul.sherwood at codethink.co.uk
Mon Aug 5 14:22:55 CEST 2024


Hi Andrew
On 2024-08-05 13:07, andrew at andrewbanks.com wrote:
> I'd start with an easier question... what do you mean by Linux
> 
> It's a Kernel, plus a whole array of other features; but what would the 
> Software BoM for Linux actually show?  What is part of Linux, and what 
> are add-ons or apps?

It's a fair question. I was using Linux as shorthand, but in practice 
the BoM needs to show not just the kernel, but also the boot loader, 
drivers, modules and applications. Moreover the compiler, linker and all 
component libraries can affect the outcome. And if the build environment 
is not sufficiently well controlled, results might also be tainted by 
things on the servers, or on the developers' laptops!

br
Paul


More information about the systemsafety mailing list