summaryrefslogtreecommitdiff
path: root/security/integrity/digsig.c
AgeCommit message (Expand)AuthorFilesLines
2023-08-17integrity: check whether imputed trust is enabledNayna Jain1-1/+1
2023-08-17integrity: Enforce digitalSignature usage in the ima and evm keyringsEric Snowberg1-2/+2
2023-04-24integrity: machine keyring CA configurationEric Snowberg1-2/+6
2022-11-16integrity: Fix memory leakage in keyring allocation error pathGUO Zihua1-1/+5
2022-05-06ima: support fs-verity file digest based version 3 signaturesMimi Zohar1-1/+2
2022-03-08integrity: Only use machine keyring when uefi_check_trust_mok_keys is trueEric Snowberg1-1/+1
2022-03-08KEYS: store reference to machine keyringEric Snowberg1-0/+2
2022-03-08integrity: Introduce a Linux keyring called machineEric Snowberg1-2/+11
2021-04-09ima: enable loading of build time generated key on .ima keyringNayna Jain1-0/+2
2021-02-12integrity: Make function integrity_add_key() staticWei Yongjun1-2/+2
2020-10-05fs/kernel_file_read: Add "offset" arg for partial readsKees Cook1-1/+1
2020-10-05fs/kernel_read_file: Add file_size output argumentKees Cook1-1/+1
2020-10-05fs/kernel_read_file: Switch buffer size arg to size_tKees Cook1-1/+1
2020-10-05fs/kernel_read_file: Remove redundant size argumentKees Cook1-2/+3
2020-10-05fs/kernel_read_file: Split into separate include fileScott Branden1-0/+1
2020-10-05fs/kernel_read_file: Remove FIRMWARE_PREALLOC_BUFFER enumKees Cook1-1/+1
2020-02-28integrity: Remove duplicate pr_fmt definitionsTushar Sugandhi1-2/+0
2019-08-06ima: Implement support for module-style appended signaturesThiago Jung Bauermann1-9/+34
2019-07-11Revert "Merge tag 'keys-acl-20190703' of git://git.kernel.org/pub/scm/linux/k...Linus Torvalds1-13/+18
2019-07-09Merge branch 'next-integrity' of git://git.kernel.org/pub/scm/linux/kernel/gi...Linus Torvalds1-2/+3
2019-07-09Merge tag 'keys-acl-20190703' of git://git.kernel.org/pub/scm/linux/kernel/gi...Linus Torvalds1-18/+13
2019-06-28keys: Replace uid/gid/perm permissions checking with an ACLDavid Howells1-18/+13
2019-06-17integrity: Fix __integrity_init_keyring() section mismatchGeert Uytterhoeven1-2/+3
2019-06-05treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 441Thomas Gleixner1-5/+1
2019-02-05integrity, KEYS: add a reference to platform keyringKairui Song1-0/+3
2018-12-18integrity: Remove references to module keyringThiago Jung Bauermann1-1/+0
2018-12-13integrity: Load certs to the platform keyringNayna Jain1-24/+43
2018-12-13integrity: Define a trusted platform keyringNayna Jain1-15/+32
2018-10-10security/integrity: remove unnecessary 'init_keyring' variableEric Biggers1-7/+1
2018-10-10security/integrity: constify some read-only dataEric Biggers1-1/+1
2018-02-23integrity/security: fix digsig.c build error with header fileRandy Dunlap1-0/+1
2017-11-08integrity: use kernel_read_file_from_path() to read x509 certsChristoph Hellwig1-5/+9
2017-04-05KEYS: Use structure to capture key restriction function and dataMat Martineau1-1/+8
2016-11-14security/integrity: Harden against malformed xattrsSeth Forshee1-1/+1
2016-04-12IMA: Use the the system trusted keyrings instead of .ima_mokDavid Howells1-26/+4
2016-04-12KEYS: Remove KEY_FLAG_TRUSTED and KEY_ALLOC_TRUSTEDDavid Howells1-2/+1
2016-04-12KEYS: Move the point of trust determination to __key_link()David Howells1-1/+32
2016-04-12KEYS: Add a facility to restrict new links into a keyringDavid Howells1-4/+3
2015-11-23integrity: define '.evm' as a builtin 'trusted' keyringDmitry Kasatkin1-2/+12
2015-10-09integrity: prevent loading untrusted certificates on the IMA trusted keyringDmitry Kasatkin1-1/+1
2015-05-21integrity: add validity checks for 'path' parameterDmitry Kasatkin1-1/+1
2014-11-18integrity: provide a function to load x509 certificate from the kernelDmitry Kasatkin1-1/+35
2014-10-07integrity: add missing '__init' keyword for integrity_init_keyring()Dmitry Kasatkin1-1/+1
2014-07-17ima: define '.ima' as a builtin 'trusted' keyringMimi Zohar1-0/+28
2013-11-24Revert "ima: define '_ima' as a builtin 'trusted' keyring"Linus Torvalds1-29/+1
2013-11-01ima: define '_ima' as a builtin 'trusted' keyringMimi Zohar1-1/+29
2013-10-26ima: pass full xattr with the signatureDmitry Kasatkin1-2/+3
2013-10-25ima: fix script messagesDmitry Kasatkin1-1/+1
2013-02-07ima: digital signature verification using asymmetric keysDmitry Kasatkin1-1/+10
2011-11-09integrity: digital signature verification using multiple keyringsDmitry Kasatkin1-0/+48