[PATCH v1 3/3] KEYS: trusted: Introduce support for NXP CAAM-based trusted keys

Eric Biggers ebiggers at kernel.org
Wed Mar 31 23:34:29 UTC 2021

On Thu, Apr 01, 2021 at 02:31:46AM +0300, Jarkko Sakkinen wrote:
> It's a bummer but uapi is the god in the end. Since TPM does not do it
> today, that behaviour must be supported forever. That's why a boot option
> AND a warning would be the best compromise.

It's not UAPI if there is no way for userspace to tell if it changed.

- Eric

More information about the Linux-security-module-archive mailing list