Skip to content

Linux Kernel 7.2.5 - Firecracker Compatible

Choose a tag to compare

@github-actions github-actions released this 11 Sep 15:35
4187e75

Linux Kernel 7.2.5 - Firecracker Compatible

Overview

Pre-built Linux kernel 7.2.5 configured for AWS Firecracker microVMs.

Architectures

  • x86_64: Intel/AMD 64-bit processors
  • aarch64: ARM 64-bit processors (e.g., AWS Graviton)

Artifacts

  • vmlinux-7.2.5-x86_64.xz - Compressed kernel for x86_64
  • Image-7.2.5-aarch64.xz - Compressed kernel for aarch64
  • config-7.2.5-x86_64 - Kernel configuration for x86_64
  • config-7.2.5-aarch64 - Kernel configuration for aarch64
  • SHA256SUMS - Checksums of release artifacts
  • SHA256SUMS.asc - PGP signature of SHA256SUMS
  • signing-key.asc - Public key used to sign this release

Usage

  1. Download the appropriate kernel for your architecture
  2. Verify PGP signature (see Verification section below)
  3. Verify checksum: sha256sum -c SHA256SUMS --ignore-missing
  4. Decompress: xz -d vmlinux-7.2.5-x86_64.xz
  5. Use with Firecracker

Kernel Configuration

Based on Firecracker's official microvm-kernel configurations with essential features:

  • KVM guest support
  • VirtIO drivers (block, network, console, balloon)
  • Minimal footprint for fast boot times
  • Security hardening (SECCOMP, SELinux, Spectre/Meltdown mitigations)

Build Information

Verification

PGP Signature Verification (Recommended)

Verify the PGP signature on SHA256SUMS to ensure kernels haven't been tampered with.

Note: Each release includes the exact public key that signed it. This ensures old releases remain verifiable even after key rotation.

# Download and import the public key from this release
wget https://github.com/Work-Fort/Anvil/releases/download/v7.2.5/signing-key.asc
gpg --import signing-key.asc

# Download checksums and signature
wget https://github.com/Work-Fort/Anvil/releases/download/v7.2.5/SHA256SUMS
wget https://github.com/Work-Fort/Anvil/releases/download/v7.2.5/SHA256SUMS.asc

# Verify PGP signature
gpg --verify SHA256SUMS.asc SHA256SUMS

# If signature is good, verify kernel checksums
wget https://github.com/Work-Fort/Anvil/releases/download/v7.2.5/vmlinux-7.2.5-x86_64.xz
sha256sum -c SHA256SUMS --ignore-missing

Quick Verification (Checksums Only)

If you trust GitHub's infrastructure and don't need PGP verification:

# Download kernel and checksums
wget https://github.com/Work-Fort/Anvil/releases/download/v7.2.5/vmlinux-7.2.5-x86_64.xz
wget https://github.com/Work-Fort/Anvil/releases/download/v7.2.5/SHA256SUMS

# Verify
sha256sum -c SHA256SUMS --ignore-missing

See the main README for complete verification instructions including key fingerprint.


Built automatically by anvil