LWN.net Logo

[RFC] Second attempt at kernel secure boot support

From:  Matthew Garrett <mjg-AT-redhat.com>
To:  linux-kernel-AT-vger.kernel.org
Subject:  [RFC] Second attempt at kernel secure boot support
Date:  Thu, 20 Sep 2012 10:40:55 -0400
Message-ID:  <1348152065-31353-1-git-send-email-mjg@redhat.com>
Cc:  linux-security-module-AT-vger.kernel.org, linux-efi-AT-vger.kernel.org
Archive-link:  Article, Thread

This is pretty much identical to the first patchset, but with the capability
renamed (CAP_COMPROMISE_KERNEL) and the kexec patch dropped. If anyone wants
to deploy these then they should disable kexec until support for signed
kexec payloads has been merged.

-- 
Matthew Garrett | mjg59@srcf.ucam.org

--
To unsubscribe from this list: send the line "unsubscribe linux-security-module" in
the body of a message to majordomo@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html



(Log in to post comments)

Copyright © 2012, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds