[PATCH 2/6] integrity: ignore keys failing CA restrictions on non-UEFI platform

Mimi Zohar zohar at linux.ibm.com
Wed Aug 2 22:59:00 UTC 2023


On Fri, 2023-07-14 at 11:34 -0400, Nayna Jain wrote:
> On non-UEFI platforms, handle restrict_link_by_ca failures differently.
> 
> Certificates which do not satisfy CA restrictions on non-UEFI platforms
> are ignored.
> 
> Signed-off-by: Nayna Jain <nayna at linux.ibm.com>

Reviewed-and-tested-by: Mimi Zohar <zohar at linux.ibm.com>



More information about the Linux-security-module-archive mailing list