ima: enable loading of build time generated key on .ima keyring
The kernel currently only loads the kernel module signing key onto the builtin trusted keyring. Load the module signing key onto the IMA keyring as well. Signed-off-by:Nayna Jain <nayna@linux.ibm.com> Acked-by:
Stefan Berger <stefanb@linux.ibm.com> Signed-off-by:
Mimi Zohar <zohar@linux.ibm.com>
Showing
- certs/system_certificates.S 12 additions, 1 deletioncerts/system_certificates.S
- certs/system_keyring.c 40 additions, 10 deletionscerts/system_keyring.c
- include/keys/system_keyring.h 7 additions, 0 deletionsinclude/keys/system_keyring.h
- security/integrity/digsig.c 2 additions, 0 deletionssecurity/integrity/digsig.c
Please register or sign in to comment