summaryrefslogtreecommitdiff
path: root/security/integrity/digsig.c
AgeCommit message (Expand)Author
2023-08-17integrity: check whether imputed trust is enabledNayna Jain
2023-08-17integrity: Enforce digitalSignature usage in the ima and evm keyringsEric Snowberg
2023-04-24integrity: machine keyring CA configurationEric Snowberg
2022-11-16integrity: Fix memory leakage in keyring allocation error pathGUO Zihua
2022-05-05ima: support fs-verity file digest based version 3 signaturesMimi Zohar
2022-03-08integrity: Only use machine keyring when uefi_check_trust_mok_keys is trueEric Snowberg
2022-03-08KEYS: store reference to machine keyringEric Snowberg
2022-03-08integrity: Introduce a Linux keyring called machineEric Snowberg
2021-04-09ima: enable loading of build time generated key on .ima keyringNayna Jain
2021-02-12integrity: Make function integrity_add_key() staticWei Yongjun
2020-10-05fs/kernel_file_read: Add "offset" arg for partial readsKees Cook
2020-10-05fs/kernel_read_file: Add file_size output argumentKees Cook
2020-10-05fs/kernel_read_file: Switch buffer size arg to size_tKees Cook
2020-10-05fs/kernel_read_file: Remove redundant size argumentKees Cook
2020-10-05fs/kernel_read_file: Split into separate include fileScott Branden
2020-10-05fs/kernel_read_file: Remove FIRMWARE_PREALLOC_BUFFER enumKees Cook
2020-02-28integrity: Remove duplicate pr_fmt definitionsTushar Sugandhi
2019-08-05ima: Implement support for module-style appended signaturesThiago Jung Bauermann
2019-07-10Revert "Merge tag 'keys-acl-20190703' of git://git.kernel.org/pub/scm/linux/k...Linus Torvalds
2019-07-08Merge branch 'next-integrity' of git://git.kernel.org/pub/scm/linux/kernel/gi...Linus Torvalds
2019-07-08Merge tag 'keys-acl-20190703' of git://git.kernel.org/pub/scm/linux/kernel/gi...Linus Torvalds
2019-06-27keys: Replace uid/gid/perm permissions checking with an ACLDavid Howells
2019-06-17integrity: Fix __integrity_init_keyring() section mismatchGeert Uytterhoeven
2019-06-05treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 441Thomas Gleixner
2019-02-04integrity, KEYS: add a reference to platform keyringKairui Song
2018-12-17integrity: Remove references to module keyringThiago Jung Bauermann
2018-12-12integrity: Load certs to the platform keyringNayna Jain
2018-12-12integrity: Define a trusted platform keyringNayna Jain
2018-10-10security/integrity: remove unnecessary 'init_keyring' variableEric Biggers
2018-10-10security/integrity: constify some read-only dataEric Biggers
2018-02-22integrity/security: fix digsig.c build error with header fileRandy Dunlap
2017-11-08integrity: use kernel_read_file_from_path() to read x509 certsChristoph Hellwig
2017-04-04KEYS: Use structure to capture key restriction function and dataMat Martineau
2016-11-13security/integrity: Harden against malformed xattrsSeth Forshee
2016-04-11IMA: Use the the system trusted keyrings instead of .ima_mokDavid Howells
2016-04-11KEYS: Remove KEY_FLAG_TRUSTED and KEY_ALLOC_TRUSTEDDavid Howells
2016-04-11KEYS: Move the point of trust determination to __key_link()David Howells
2016-04-11KEYS: Add a facility to restrict new links into a keyringDavid Howells
2015-11-23integrity: define '.evm' as a builtin 'trusted' keyringDmitry Kasatkin
2015-10-09integrity: prevent loading untrusted certificates on the IMA trusted keyringDmitry Kasatkin
2015-05-21integrity: add validity checks for 'path' parameterDmitry Kasatkin
2014-11-17integrity: provide a function to load x509 certificate from the kernelDmitry Kasatkin
2014-10-07integrity: add missing '__init' keyword for integrity_init_keyring()Dmitry Kasatkin
2014-07-17ima: define '.ima' as a builtin 'trusted' keyringMimi Zohar
2013-11-23Revert "ima: define '_ima' as a builtin 'trusted' keyring"Linus Torvalds
2013-10-31ima: define '_ima' as a builtin 'trusted' keyringMimi Zohar
2013-10-25ima: pass full xattr with the signatureDmitry Kasatkin
2013-10-25ima: fix script messagesDmitry Kasatkin
2013-02-06ima: digital signature verification using asymmetric keysDmitry Kasatkin
2011-11-09integrity: digital signature verification using multiple keyringsDmitry Kasatkin