On Sun, Mar 31, 2019 at 03:24:58PM +0000, Cord wrote: > Hi, > I'd like to run pkg_check but from a live usb stick. This because I want to > run a trusted kernel. > Maybe I just need to mount the root, mount the other slices and chroot > /bin/ksh ? > Also¹, is there a way to download all the installed pkg and check the signs > from them ? > Also² , how can I check the kernel integrity ? > thank you.
What you're asking for is highly underspecified. You would have to explain your trust model in detail, and what you intend to store away for later checking. A "trusted kernel" won't protect you from a fishy userland in any way...

