Message ID | 20220125224645.79319-2-stefanb@linux.vnet.ibm.com (mailing list archive) |
---|---|
State | New, archived |
Headers | show |
Series | ima: Namespace IMA with audit support in IMA-ns | expand |
On Tue, Jan 25, 2022 at 05:46:23PM -0500, Stefan Berger wrote: > From: Stefan Berger <stefanb@linux.ibm.com> > > The removal of ima_dir currently fails since ima_policy still exists, so > remove the ima_policy file before removing the directory. > > Fixes: 4af4662fa4a9 ("integrity: IMA policy") > Signed-off-by: Stefan Berger <stefanb@linux.ibm.com> > --- Looks good, Acked-by: Christian Brauner <brauner@kernel.org>
diff --git a/security/integrity/ima/ima_fs.c b/security/integrity/ima/ima_fs.c index 3d8e9d5db5aa..3ad8f7734208 100644 --- a/security/integrity/ima/ima_fs.c +++ b/security/integrity/ima/ima_fs.c @@ -496,12 +496,12 @@ int __init ima_fs_init(void) return 0; out: + securityfs_remove(ima_policy); securityfs_remove(violations); securityfs_remove(runtime_measurements_count); securityfs_remove(ascii_runtime_measurements); securityfs_remove(binary_runtime_measurements); securityfs_remove(ima_symlink); securityfs_remove(ima_dir); - securityfs_remove(ima_policy); return -1; }