ima: define '_ima' as a builtin 'trusted' keyring
Require all keys added to the IMA keyring be signed by an
existing trusted key on the system trusted keyring.
Changelog:
- define stub integrity_init_keyring() function (reported-by Fengguang Wu)
- differentiate between regular and trusted keyring names.
- replace printk with pr_info (D. Kasatkin)
Signed-off-by:
Mimi Zohar <zohar@us.ibm.com>
Showing
- security/integrity/digsig.c 29 additions, 1 deletionsecurity/integrity/digsig.c
- security/integrity/ima/Kconfig 8 additions, 0 deletionssecurity/integrity/ima/Kconfig
- security/integrity/ima/ima_appraise.c 11 additions, 0 deletionssecurity/integrity/ima/ima_appraise.c
- security/integrity/integrity.h 7 additions, 0 deletionssecurity/integrity/integrity.h
Please register or sign in to comment