跳到主要内容

TUF

TUF(The Update Framework,更新框架)用于帮助开发人员保护新的或现有的软件更新系统,这些系统通常被认为容易受到许多攻击。

The Update Framework (TUF) helps developers maintain the security of software update systems, providing protection even against attackers that compromise the repository or signing keys. TUF provides a flexible framework and specification that developers can adopt into any software update system.

更新框架 (TUF) 可帮助开发人员维护软件更新系统的安全性,甚至针对破坏存储库或签名密钥的攻击者提供保护。 TUF 提供了一个灵活的框架和规范,开发人员可以将其纳入任何软件更新系统。

TUF is hosted by the Linux Foundation as part of the Cloud Native Computing Foundation (CNCF) and is used in production by various tech companies and open source organizations. A variant of TUF called Uptane is widely used to secure over-the-air updates in automobiles.

TUF 由 Linux 基金会 作为 Cloud Native Computing Foundation (CNCF) 的一部分托管,并被 使用 生产中 由各种科技公司和开源组织提供。 一种名为 Uptane 的 TUF 变体被广泛用于保护汽车的无线更新。