Ensuring Authentication and Integrity of Open Source Software using Digital Signature

Mohammad Tariq Banday · 2011

A group of programmers participate in the development of Open Source Software and its source code is publically made available for review, reporting, fixing bugs and enhancing its functionalities. The Open Source Software, its patches and new releases are made available to users through multiple hosts on the Internet and by distribution on media like on CD‟s and DVD‟s. A hacker may modify the software and incorporate virus, spyware, adware or other similar routines into it that may lead to manifold of security breaches. It is thus essential to ensure authenticity and integrity of the Open Source Software before compiling and installing it to avoid falling prey to any such possible security breach. This paper discussesmethods for attaining authentication and integrity of Open Source Software for the purpose of its distribution. General Terms Open Source Software, Software Distribution, Cryptography, PKI, Authentication, Free Software, PAIN.

Read the paper · More papers on PaperTik