[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Message-ID: <af591616-ac80-c862-6822-d11addeabb91@linux.microsoft.com>
Date: Thu, 31 Oct 2019 08:27:47 -0700
From: Lakshmi Ramasubramanian <nramas@...ux.microsoft.com>
To: Sasha Levin <sashal@...nel.org>
Cc: zohar@...ux.ibm.com, dhowells@...hat.com,
matthewgarrett@...gle.com, jamorris@...ux.microsoft.com,
linux-kernel@...r.kernel.org, linux-integrity@...r.kernel.org,
linux-security-module@...r.kernel.org, keyrings@...r.kernel.org,
prsriva@...ux.microsoft.com
Subject: Re: [PATCH v3 1/9] KEYS: Defined an IMA hook to measure keys on key
create or update
On 10/31/19 2:10 AM, Sasha Levin wrote:
Hi Sasha,
> On Wed, Oct 30, 2019 at 06:19:02PM -0700, Lakshmi Ramasubramanian wrote:
>> Asymmetric keys used for verifying file signatures or certificates
>> are currently not included in the IMA measurement list.
>>
>> This patch defines a new IMA hook namely ima_post_key_create_or_update()
>> to measure asymmetric keys.
>>
>> Signed-off-by: Lakshmi Ramasubramanian <nramas@...ux.microsoft.com>
>
> What are the prerequisites for this patch?
I built this patch set on kernel v5.3
I applied the following patch provided by Nayna Jain@IBM and then added
my changes:
[PATCH v9 5/8] ima: make process_buffer_measurement() generic
thanks,
-lakshmi
Powered by blists - more mailing lists