[PATCH v7 02/17] integrity: Do not allow machine keyring updates following init

Mimi Zohar zohar at linux.ibm.com
Wed Nov 17 13:18:26 UTC 2021


On Mon, 2021-11-15 at 19:15 -0500, Eric Snowberg wrote:
> The machine keyring is setup during init.  No additional keys should be
> allowed to be added afterwards.  Leave the permission as read only.
> 
> Signed-off-by: Eric Snowberg <eric.snowberg at oracle.com>

Reviewed-by:  Mimi Zohar <zohar at linux.ibm.com>



More information about the Linux-security-module-archive mailing list