Installation guide
FreeIPMI
FreeIPMI is now included in this update as a T echnology Preview. FreeIPMI is a collection of
Intelligent Platform Management IPMI system software. It provides in-band and out-of-band
software, along with a development library conforming to the Intelligent Platform Management
Interface (IPMI v1.5 and v2.0) standards.
For more information about FreeIPMI, refer to http://www.gnu.org/software/freeipmi/
TrouSerS and tpm-tools
TrouSerS and tpm -tools are included in this release to enable use of Trusted Platform
Module (T PM) hardware.T PM hardware features include (among others):
Creation, storage, and use of RSA keys securely (without being exposed in memory)
Verification of a platform's software state using cryptographic hashes
TrouSerS is an implementation of the T rusted Computing Group's Software Stack (T SS)
specification. You can use T rouSerS to write applications that make use of TPM hardware.
tpm-tools is a suite of tools used to manage and utilize TPM hardware.
For more information about T rouSerS, refer to http://trousers.sourceforge.net/.
eCrypt fs
eCrypt fs is a stacked cryptographic file system for Linux. It mounts on individual directories in
existing mounted lower file systems such as EXT3; there is no need to change existing
partitions or file systems in order to start using eCryptfs.
With this release, eCryptfs has been re-based to upstream version 56, which provides several
bug fixes and enhancements. In addition, this update provides a graphical program to help
configure eCryptfs (ecryptfs-mount-helper-gui).
This update also changes the syntax of certain eCryptfs mount options. If you choose to
update to this version of eCrypt fs, you should update any affected mount scripts and
/etc/fstab entries. For information about these changes, refer to m an ecryptfs.
The following caveats apply to this release of eCryptfs:
Note that the eCrypt fs file system will only work properly if the encrypted file system is
mounted once over the underlying directory of the same name. For example:
mount -t ecryptfs /mnt/secret /mnt/secret
The secured portion of the file system should not be exposed, i.e. it should not be mounted
to other mount points, bind mounts, and the like.
eCrypt fs mounts on networked file systems (e.g. NFS, Samba) will not work properly.
This version of the eCryptfs kernel driver requires updated userspace, which is provided
by ecryptfs-utils-56-4.el5 or newer.
For more information about eCryptfs, refer to http://ecryptfs.sf.net. You can also refer to
http://ecryptfs.sourceforge.net/README and http://ecryptfs.sourceforge.net/ecryptfs-faq.html for
basic setup information.
Stateless Linux
Red Hat Enterprise Linux 5 5.3 Release Notes
30