[PATCH v3 07/12] security/keys: Allocate key payloads from the secret pool

sashiko-bot at kernel.org sashiko-bot at kernel.org
Mon Sep 28 17:32:15 UTC 2026


> Key payloads sit in memory in plain text for as long as the key exists,
> and a kdump crash dump captures them along with everything else.
> 
> Allocate the payloads of the user-defined, trusted and encrypted key
> types from the new secret pool, so that their backing pages are marked
> by crash_memaction for the kdump kernel to wipe.
> 
> This commit covers the key types used by dm-crypt/cryptsetup. Additional
> key types can be added if needed in future commits.
> 
> Signed-off-by: Jan Sebastian Götte <linux at jaseg.de>

Sashiko has reviewed this patch and found no issues. It looks great!

-- 
Sashiko AI review · https://sashiko.dev/#/patchset/20260928-crash-memaction-upstream-20260921-v3-0-e511e9ee2329@jaseg.de?part=7




More information about the Linux-security-module-archive mailing list