Proposal to use Windows Side-by-side Assemblies for KFW distribution

Jeffrey Altman jaltman at secure-endpoints.com
Mon Jul 28 19:20:22 EDT 2008


Tom Yu wrote:
> What are the consequences of not digitally signing the packages?
>
If the binaries are not signed, then when the loader attempts to resolve 
the
imports by loading the libraries specified by the application manifest, 
it will
reject the libraries.   Signatures are used to ensure that the libraries 
being
loaded are in fact the ones that the application developer built the 
application
against.

Jeffrey Altman

-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/x-pkcs7-signature
Size: 3355 bytes
Desc: S/MIME Cryptographic Signature
Url : http://mailman.mit.edu/pipermail/kfwdev/attachments/20080728/2c1be546/attachment.bin


More information about the kfwdev mailing list