[PATCH v9 13/23] ima: Only accept AUDIT rules for non-init_ima_ns namespaces for now

Christian Brauner brauner at kernel.org
Wed Jan 26 13:44:25 UTC 2022


On Tue, Jan 25, 2022 at 05:46:35PM -0500, Stefan Berger wrote:
> From: Stefan Berger <stefanb at linux.ibm.com>
> 
> Only accept AUDIT rules for non-init_ima_ns namespaces rejecting all rules
> that require support for measuring, appraisal, and hashing.
> 
> Signed-off-by: Stefan Berger <stefanb at linux.ibm.com>
> 
> ---

Okay, seems sensible,
Acked-by: Christian Brauner <brauner at kernel.org>



More information about the Linux-security-module-archive mailing list