[RFC] Second attempt at kernel secure boot support
[Posted November 7, 2012 by jake]
| From: |
| Matthew Garrett <mjg-AT-redhat.com> |
| To: |
| linux-kernel-AT-vger.kernel.org |
| Subject: |
| [RFC] Second attempt at kernel secure boot support |
| Date: |
| Thu, 20 Sep 2012 10:40:55 -0400 |
| Message-ID: |
| <1348152065-31353-1-git-send-email-mjg@redhat.com> |
| Cc: |
| linux-security-module-AT-vger.kernel.org, linux-efi-AT-vger.kernel.org |
| Archive-link: |
| Article, Thread
|
This is pretty much identical to the first patchset, but with the capability
renamed (CAP_COMPROMISE_KERNEL) and the kexec patch dropped. If anyone wants
to deploy these then they should disable kexec until support for signed
kexec payloads has been merged.
--
Matthew Garrett | mjg59@srcf.ucam.org
--
To unsubscribe from this list: send the line "unsubscribe linux-security-module" in
the body of a message to majordomo@vger.kernel.org
More majordomo info at http://vger.kernel.org/majordomo-info.html
(
Log in to post comments)