linux_dsm_epyc7002/security/integrity/ima
Dmitry Kasatkin 0e5a247cb3 ima: added policy support for 'security.ima' type
The 'security.ima' extended attribute may contain either the file data's
hash or a digital signature.  This patch adds support for requiring a
specific extended attribute type.  It extends the IMA policy with a new
keyword 'appraise_type=imasig'.  (Default is hash.)

Changelog v2:
- Fixed Documentation/ABI/testing/ima_policy option syntax
Changelog v1:
- Differentiate between 'required' vs. 'actual' extended attribute

Signed-off-by: Dmitry Kasatkin <dmitry.kasatkin@intel.com>
Signed-off-by: Mimi Zohar <zohar@linux.vnet.ibm.com>
2013-01-22 16:10:31 -05:00
..
ima_api.c ima: move full pathname resolution to separate function 2013-01-16 17:50:03 -05:00
ima_appraise.c ima: added policy support for 'security.ima' type 2013-01-22 16:10:31 -05:00
ima_audit.c userns: Add user namespace support to IMA 2012-09-21 03:13:24 -07:00
ima_crypto.c ima: integrity appraisal extension 2012-09-07 14:57:44 -04:00
ima_fs.c ima: remove unused cleanup functions 2012-07-02 16:43:30 -04:00
ima_init.c ima: remove unused cleanup functions 2012-07-02 16:43:30 -04:00
ima_main.c ima: added policy support for 'security.ima' type 2013-01-22 16:10:31 -05:00
ima_policy.c ima: added policy support for 'security.ima' type 2013-01-22 16:10:31 -05:00
ima_queue.c ima: fix invalid memory reference 2011-12-19 22:07:54 -05:00
ima.h ima: move full pathname resolution to separate function 2013-01-16 17:50:03 -05:00
Kconfig ima: integrity appraisal extension 2012-09-07 14:57:44 -04:00
Makefile ima: integrity appraisal extension 2012-09-07 14:57:44 -04:00