[PATCH 1/9] integrity: Prepare for having "ima" and "evm" available in "integrity" LSM

Kees Cook keescook at chromium.org
Wed Oct 19 22:37:57 UTC 2022


On Wed, Oct 19, 2022 at 03:13:34PM -0400, Mimi Zohar wrote:
> Most people were/are still using the "security=" boot command line
> option, not "lsm=".  This previously wasn't a problem with "security=",
> but became a problem with "lsm=".

How are people still using "security=" for IMA/EVM? It only interacts
with LSMs marked with LSM_FLAG_LEGACY_MAJOR.

-- 
Kees Cook



More information about the Linux-security-module-archive mailing list