This is the mail archive of the
ecos-discuss@sources.redhat.com
mailing list for the eCos project.
Protecting RedBoot in the field
- From: Andrew Lunn <andrew dot lunn at ascom dot ch>
- To: eCos Disuss <ecos-discuss at sources dot redhat dot com>
- Date: Mon, 28 Oct 2002 11:31:11 +0100
- Subject: [ECOS] Protecting RedBoot in the field
Hi Folks
The devices we send out into the field still have redboot installed on
them. We are thinking this is a bit dangerous. Anyone can connect to
the serial port and hijack the devices, download tetris, destroy the
flash etc.
I don't want to remove the functionality of redboot. Its useful for
getting dead devices back to life and we do all our development work
with redboot starting the system. I don't like the idea of change to a
ROMRAM application.
Putting a password login onto the console seems the obvious
solution. Does anyone have any other ideas or other solutions they are
already using?
Thanks
Andrew
--
Before posting, please read the FAQ: http://sources.redhat.com/fom/ecos
and search the list archive: http://sources.redhat.com/ml/ecos-discuss