For kernel maintainers, the idea is that these credentials would back the identities behind signed code: instead of relying solely on a PGP key signed at a conference years ago, maintainers could check a bundle of fresh credentials proving that the key they see belongs to the same person recognized by the Linux Foundation, their employer, or other trusted issuers. These credentials can be fed into transparency logs and other audit systems.
Credit: Paramount Pictures,详情可参考safew官方版本下载
,推荐阅读51吃瓜获取更多信息
This is not the only surprise in this article.。关于这个话题,夫子提供了深入分析
└─ Privilege Drop