Message ID | 1572492694-6520-1-git-send-email-zohar@linux.ibm.com (mailing list archive) |
---|---|
Headers | show |
Series | powerpc: Enabling IMA arch specific secure boot policies | expand |
Hi Mimi, On 10/30/2019 8:31 PM, Mimi Zohar wrote: > This patchset extends the previous version[1] by adding support for > checking against a blacklist of binary hashes. > > The IMA subsystem supports custom, built-in, arch-specific policies to > define the files to be measured and appraised. These policies are honored > based on priority, where arch-specific policy is the highest and custom > is the lowest. Has this change been signed off and merged for the next update of the kernel (v5.5)? thanks, -lakshmi
On Mon, 2019-12-09 at 12:27 -0800, Lakshmi Ramasubramanian wrote: > Hi Mimi, > > On 10/30/2019 8:31 PM, Mimi Zohar wrote: > > > This patchset extends the previous version[1] by adding support for > > checking against a blacklist of binary hashes. > > > > The IMA subsystem supports custom, built-in, arch-specific policies to > > define the files to be measured and appraised. These policies are honored > > based on priority, where arch-specific policy is the highest and custom > > is the lowest. > > Has this change been signed off and merged for the next update of the > kernel (v5.5)? Yes, refer to the linuxppc mailing list archives. Mimi [1] https://lists.ozlabs.org/pipermail/linuxppc-dev/
Hi Mimi, >>> Has this change been signed off and merged for the next update of the >>> kernel (v5.5)? >> >> Yes, refer to the linuxppc mailing list archives. >> >> Mimi >> >> [1] https://lists.ozlabs.org/pipermail/linuxppc-dev/ >> Just wanted to let you know that I applied my "key measurement" patches (that I'd posted last week) in v5.5-rc1 branch and validated the changes. Verified both the non-deferred and the deferred key processing patches. Please let me know if you were able to review the changes. thanks, -lakshmi