OSDN Git Service

ima: define a new template field named 'd-ngv2' and templates
authorMimi Zohar <zohar@linux.ibm.com>
Thu, 23 Dec 2021 17:29:56 +0000 (12:29 -0500)
committerMimi Zohar <zohar@linux.ibm.com>
Thu, 5 May 2022 15:49:13 +0000 (11:49 -0400)
commit989dc72511f7b57b94b42eabfcbe79d9070de6e3
tree8ac181d41e251c172b265bf7b4f30b12336e0759
parent246d921646c071b878480997c294db6c83215b06
ima: define a new template field named 'd-ngv2' and templates

In preparation to differentiate between unsigned regular IMA file
hashes and fs-verity's file digests in the IMA measurement list,
define a new template field named 'd-ngv2'.

Also define two new templates named 'ima-ngv2' and 'ima-sigv2', which
include the new 'd-ngv2' field.

Signed-off-by: Mimi Zohar <zohar@linux.ibm.com>
Documentation/admin-guide/kernel-parameters.txt
Documentation/security/IMA-templates.rst
security/integrity/ima/ima_template.c
security/integrity/ima/ima_template_lib.c
security/integrity/ima/ima_template_lib.h