Network Security and Cryptography |
Foundation of Computer Science USA |
NSC - Number 4 |
December 2011 |
Authors: M. Tariq Banday |
49959ca5-a00c-4365-8592-3c7a1bfe5e4f |
M. Tariq Banday . Ensuring Authentication and Integrity of Open Source Software using Digital Signature. Network Security and Cryptography. NSC, 4 (December 2011), 11-14.
A group of programmers participate in the development of Open Source Software and its source code is publically made available for review, reporting, fixing bugs and enhancing its functionalities. The Open Source Software, its patches and new releases are made available to users through multiple hosts on the Internet and by distribution on media like on CD’s and DVD’s. A hacker may modify the software and incorporate virus, spyware, adware or other similar routines into it that may lead to manifold of security breaches. It is thus essential to ensure authenticity and integrity of the Open Source Software before compiling and installing it to avoid falling prey to any such possible security breach. This paper discusses methods for attaining authentication and integrity of Open Source Software for the purpose of its distribution.