[PATCH 2/3] evm: Don't enable fix mode when secure boot is enabled

Roberto Sassu roberto.sassu at huaweicloud.com
Fri Jan 16 12:06:32 UTC 2026


On Thu, 2026-01-15 at 13:15 -0500, Mimi Zohar wrote:
> On Thu, 2026-01-15 at 08:43 +0800, Coiby Xu wrote:
> > Similar to IMA fix mode, forbid EVM fix mode when secure boot is
> > enabled.
> > 
> > Reported-and-suggested-by: Mimi Zohar <zohar at linux.ibm.com>
> > Suggested-by: Roberto Sassu <roberto.sassu at huaweicloud.com>

Ah, if possible, could you please change the email to
roberto.sassu at huawei.com?

Thanks

Roberto

> > Signed-off-by: Coiby Xu <coxu at redhat.com>
> 
> Thanks, Coiby!
> 
> Reviewed-by: Mimi Zohar <zohar at linux.ibm.com>




More information about the Linux-security-module-archive mailing list