[PATCH 2/3] evm: Don't enable fix mode when secure boot is enabled

Mimi Zohar zohar at linux.ibm.com
Thu Jan 15 18:15:24 UTC 2026


On Thu, 2026-01-15 at 08:43 +0800, Coiby Xu wrote:
> Similar to IMA fix mode, forbid EVM fix mode when secure boot is
> enabled.
> 
> Reported-and-suggested-by: Mimi Zohar <zohar at linux.ibm.com>
> Suggested-by: Roberto Sassu <roberto.sassu at huaweicloud.com>
> Signed-off-by: Coiby Xu <coxu at redhat.com>

Thanks, Coiby!

Reviewed-by: Mimi Zohar <zohar at linux.ibm.com>



More information about the Linux-security-module-archive mailing list