[<prev] [next>] [<thread-prev] [day] [month] [year] [list]
Message-ID: <eaa7c485-ce72-9caf-57de-3ab29cb815e1@linux.vnet.ibm.com>
Date: Tue, 19 Sep 2023 22:29:11 -0400
From: Nayna <nayna@...ux.vnet.ibm.com>
To: Oleksandr Tymoshenko <ovt@...gle.com>, nayna@...ux.ibm.com
Cc: linux-integrity@...r.kernel.org, linux-kernel@...r.kernel.org,
linux-security-module@...r.kernel.org, zohar@...ux.ibm.com
Subject: Re: [PATCH] ima: Remove deprecated IMA_TRUSTED_KEYRING Kconfig
On 9/19/23 03:32, Oleksandr Tymoshenko wrote:
> Hello,
>
> There are two Kconfigs that depend on IMA_TRUSTED_KEYRING:
> IMA_LOAD_X509 and IMA_BLACKLIST_KEYRING. Removing IMA_TRUSTED_KEYRING
> makes them unreachable. Should they be removed too or should
> the dependency clauses be removed?
>
>
Thanks Oleksandr for noticing this. Since IMA_TRUSTED_KEYRING is
deprecated in favor of INTEGRITY_TRUSTED_KEYRING, I think the dependency
clause should be updated to use INTEGRITY_TRUSTED_KEYRING.
Thanks & Regards,
- Nayna
Powered by blists - more mailing lists