[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Message-Id: <47DFxv2Jjpz9sRs@ozlabs.org>
Date: Thu, 14 Nov 2019 20:08:02 +1100 (AEDT)
From: Michael Ellerman <patch-notifications@...erman.id.au>
To: Mimi Zohar <zohar@...ux.ibm.com>, linuxppc-dev@...abs.org,
linux-efi@...r.kernel.org, linux-integrity@...r.kernel.org
Cc: Ard Biesheuvel <ard.biesheuvel@...aro.org>,
Eric Ricther <erichte@...ux.ibm.com>,
Nayna Jain <nayna@...ux.ibm.com>, linux-kernel@...r.kernel.org,
Mimi Zohar <zohar@...ux.ibm.com>,
Paul Mackerras <paulus@...ba.org>, Jeremy Kerr <jk@...abs.org>,
Oliver O'Halloran <oohall@...il.com>
Subject: Re: [PATCH v10 2/9] powerpc/ima: add support to initialize ima policy rules
On Thu, 2019-10-31 at 03:31:27 UTC, Mimi Zohar wrote:
> From: Nayna Jain <nayna@...ux.ibm.com>
>
> PowerNV systems use a Linux-based bootloader, which rely on the IMA
> subsystem to enforce different secure boot modes. Since the verification
> policy may differ based on the secure boot mode of the system, the
> policies must be defined at runtime.
>
> This patch implements arch-specific support to define IMA policy
> rules based on the runtime secure boot mode of the system.
>
> This patch provides arch-specific IMA policies if PPC_SECURE_BOOT
> config is enabled.
>
> Signed-off-by: Nayna Jain <nayna@...ux.ibm.com>
> Signed-off-by: Mimi Zohar <zohar@...ux.ibm.com>
Applied to powerpc next, thanks.
https://git.kernel.org/powerpc/c/4238fad366a660cbc6499ca1ea4be42bd4d1ac5b
cheers
Powered by blists - more mailing lists