Explains software trust mechanisms comprising secure boot, trusted software boot processes, secure iPXE server operations, and provides procedures to verify router secure boot status for comprehensive software integrity.
Software trust is a trustworthy systems component that
-
verifies Cisco-signed boot artifacts
-
authenticates network boot sources, and
-
prevents untrusted software from reaching runtime.
The second component in implementing a trustworthy system is to enable trust in software.
In Cisco IOS XR7, trust in the software is enabled through:
-
Secure Boot
-
Secure iPXE