[RESEND][PATCH] ima: Set and clear FMODE_CAN_READ in ima_calc_file_hash()

Linus Torvalds torvalds at linux-foundation.org
Tue Nov 17 23:29:55 UTC 2020


On Tue, Nov 17, 2020 at 3:24 PM Mimi Zohar <zohar at linux.ibm.com> wrote:
>
> I really wish it wasn't needed.

Seriously, I get the feeling that IMA is completely mis-designed, and
is doing actively bad things.

Who uses this "feature", and who cares? Because I would suggest you
just change the policy and be done with it.

            Linus



More information about the Linux-security-module-archive mailing list