[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Message-ID: <76d68c0c417c23941e03f3c3df3109f742e30e6f.camel@linux.ibm.com>
Date: Wed, 02 Aug 2023 18:59:00 -0400
From: Mimi Zohar <zohar@...ux.ibm.com>
To: Nayna Jain <nayna@...ux.ibm.com>, linux-integrity@...r.kernel.org
Cc: Jarkko Sakkinen <jarkko@...nel.org>,
Eric Snowberg <eric.snowberg@...cle.com>,
Paul Moore <paul@...l-moore.com>,
linuxppc-dev <linuxppc-dev@...ts.ozlabs.org>,
linux-security-module@...r.kernel.org, linux-kernel@...r.kernel.org
Subject: Re: [PATCH 2/6] integrity: ignore keys failing CA restrictions on
non-UEFI platform
On Fri, 2023-07-14 at 11:34 -0400, Nayna Jain wrote:
> On non-UEFI platforms, handle restrict_link_by_ca failures differently.
>
> Certificates which do not satisfy CA restrictions on non-UEFI platforms
> are ignored.
>
> Signed-off-by: Nayna Jain <nayna@...ux.ibm.com>
Reviewed-and-tested-by: Mimi Zohar <zohar@...ux.ibm.com>
Powered by blists - more mailing lists