Skip to content

Support OSes with signed checksums (e.g. Debian, Ubuntu) #2163

Description

@PeonyThePeon

Is your feature request related to a problem? Please describe.

I'm proposing here just a minor convenience feature.

https://osresearch.net/InstallingOS/ says:

For certain OSes, Heads boot process supports standard OS ISO bootable media (where the USB drive contains the ISO installation media alongside of its detached signature) ...

The "certain OSes" list excludes Debian & Ubuntu: major distros popular with power users and casual users respectively.

Describe the solution you'd like

Instead of publishing (as Arch, PureOS, QubesOS, and Tails do) an ISO & a detached signature for it, Debian & Ubuntu publish:

  • an ISO
  • a checksum file for the ISO
  • a detached signature for the checksum file.

It would be great if Heads:

Describe alternatives you've considered
The alternative is for the user to manually verify the Debian or Ubuntu ISO - which they might not do, or might do incorrectly.

Heads verifying the OS installation ISO would increase assurance, reducing the risk of a user installing a corrupted or tampered OS.

Activity

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

No one assigned

    Type

    No type

    Projects

    No projects

      Milestone

      No milestone

      Relationships

      None yet

      Development

      No branches or pull requests

      Issue actions