Enable IMA Appraisal - related rhbz 790008 1554474
This commit is contained in:
parent
ffc1fce93e
commit
adfbac47b6
@ -1 +1 @@
|
||||
# CONFIG_IMA_APPRAISE is not set
|
||||
CONFIG_IMA_APPRAISE=y
|
||||
|
1
configs/fedora/generic/CONFIG_IMA_APPRAISE_BOOTPARAM
Normal file
1
configs/fedora/generic/CONFIG_IMA_APPRAISE_BOOTPARAM
Normal file
@ -0,0 +1 @@
|
||||
CONFIG_IMA_APPRAISE_BOOTPARAM=y
|
1
configs/fedora/generic/CONFIG_IMA_APPRAISE_BUILD_POLICY
Normal file
1
configs/fedora/generic/CONFIG_IMA_APPRAISE_BUILD_POLICY
Normal file
@ -0,0 +1 @@
|
||||
# CONFIG_IMA_APPRAISE_BUILD_POLICY is not set
|
1
configs/fedora/generic/CONFIG_IMA_BLACKLIST_KEYRING
Normal file
1
configs/fedora/generic/CONFIG_IMA_BLACKLIST_KEYRING
Normal file
@ -0,0 +1 @@
|
||||
# CONFIG_IMA_BLACKLIST_KEYRING is not set
|
1
configs/fedora/generic/CONFIG_IMA_LOAD_X509
Normal file
1
configs/fedora/generic/CONFIG_IMA_LOAD_X509
Normal file
@ -0,0 +1 @@
|
||||
# CONFIG_IMA_LOAD_X509 is not set
|
1
configs/fedora/generic/CONFIG_IMA_TRUSTED_KEYRING
Normal file
1
configs/fedora/generic/CONFIG_IMA_TRUSTED_KEYRING
Normal file
@ -0,0 +1 @@
|
||||
# CONFIG_IMA_TRUSTED_KEYRING is not set
|
1
configs/fedora/generic/CONFIG_INTEGRITY_TRUSTED_KEYRING
Normal file
1
configs/fedora/generic/CONFIG_INTEGRITY_TRUSTED_KEYRING
Normal file
@ -0,0 +1 @@
|
||||
CONFIG_INTEGRITY_TRUSTED_KEYRING=y
|
@ -1 +1 @@
|
||||
# CONFIG_TCG_TIS_SPI is not set
|
||||
CONFIG_TCG_TIS_SPI=m
|
||||
|
@ -2412,17 +2412,23 @@ CONFIG_IIO_TRIGGERED_BUFFER=m
|
||||
CONFIG_IIO_TRIGGER=y
|
||||
# CONFIG_IKCONFIG is not set
|
||||
CONFIG_IKHEADERS=m
|
||||
# CONFIG_IMA_APPRAISE is not set
|
||||
CONFIG_IMA_APPRAISE_BOOTPARAM=y
|
||||
# CONFIG_IMA_APPRAISE_BUILD_POLICY is not set
|
||||
CONFIG_IMA_APPRAISE=y
|
||||
# CONFIG_IMA_ARCH_POLICY is not set
|
||||
# CONFIG_IMA_BLACKLIST_KEYRING is not set
|
||||
# CONFIG_IMA_DEFAULT_HASH_SHA1 is not set
|
||||
CONFIG_IMA_DEFAULT_HASH_SHA256=y
|
||||
CONFIG_IMA_KEXEC=y
|
||||
CONFIG_IMA_KEYRINGS_PERMIT_SIGNED_BY_BUILTIN_OR_SECONDARY=y
|
||||
# CONFIG_IMA_LOAD_X509 is not set
|
||||
CONFIG_IMA_LSM_RULES=y
|
||||
CONFIG_IMA_MEASURE_PCR_IDX=10
|
||||
CONFIG_IMA_NG_TEMPLATE=y
|
||||
CONFIG_IMA_READ_POLICY=y
|
||||
# CONFIG_IMA_SIG_TEMPLATE is not set
|
||||
# CONFIG_IMA_TEMPLATE is not set
|
||||
# CONFIG_IMA_TRUSTED_KEYRING is not set
|
||||
CONFIG_IMA_WRITE_POLICY=y
|
||||
CONFIG_IMA=y
|
||||
# CONFIG_IMG_ASCII_LCD is not set
|
||||
@ -2557,6 +2563,7 @@ CONFIG_INTEGRITY_ASYMMETRIC_KEYS=y
|
||||
CONFIG_INTEGRITY_AUDIT=y
|
||||
# CONFIG_INTEGRITY_PLATFORM_KEYRING is not set
|
||||
CONFIG_INTEGRITY_SIGNATURE=y
|
||||
CONFIG_INTEGRITY_TRUSTED_KEYRING=y
|
||||
CONFIG_INTEGRITY=y
|
||||
# CONFIG_INTEL_IDMA64 is not set
|
||||
CONFIG_INTEL_SOC_PMIC_CHTDC_TI=m
|
||||
@ -6210,7 +6217,7 @@ CONFIG_TCG_NSC=m
|
||||
CONFIG_TCG_TIS_I2C_ATMEL=m
|
||||
CONFIG_TCG_TIS_I2C_INFINEON=m
|
||||
# CONFIG_TCG_TIS_I2C_NUVOTON is not set
|
||||
# CONFIG_TCG_TIS_SPI is not set
|
||||
CONFIG_TCG_TIS_SPI=m
|
||||
# CONFIG_TCG_TIS_ST33ZP24_I2C is not set
|
||||
# CONFIG_TCG_TIS_ST33ZP24_SPI is not set
|
||||
CONFIG_TCG_TIS=y
|
||||
|
@ -2396,17 +2396,23 @@ CONFIG_IIO_TRIGGERED_BUFFER=m
|
||||
CONFIG_IIO_TRIGGER=y
|
||||
# CONFIG_IKCONFIG is not set
|
||||
CONFIG_IKHEADERS=m
|
||||
# CONFIG_IMA_APPRAISE is not set
|
||||
CONFIG_IMA_APPRAISE_BOOTPARAM=y
|
||||
# CONFIG_IMA_APPRAISE_BUILD_POLICY is not set
|
||||
CONFIG_IMA_APPRAISE=y
|
||||
# CONFIG_IMA_ARCH_POLICY is not set
|
||||
# CONFIG_IMA_BLACKLIST_KEYRING is not set
|
||||
# CONFIG_IMA_DEFAULT_HASH_SHA1 is not set
|
||||
CONFIG_IMA_DEFAULT_HASH_SHA256=y
|
||||
CONFIG_IMA_KEXEC=y
|
||||
CONFIG_IMA_KEYRINGS_PERMIT_SIGNED_BY_BUILTIN_OR_SECONDARY=y
|
||||
# CONFIG_IMA_LOAD_X509 is not set
|
||||
CONFIG_IMA_LSM_RULES=y
|
||||
CONFIG_IMA_MEASURE_PCR_IDX=10
|
||||
CONFIG_IMA_NG_TEMPLATE=y
|
||||
CONFIG_IMA_READ_POLICY=y
|
||||
# CONFIG_IMA_SIG_TEMPLATE is not set
|
||||
# CONFIG_IMA_TEMPLATE is not set
|
||||
# CONFIG_IMA_TRUSTED_KEYRING is not set
|
||||
CONFIG_IMA_WRITE_POLICY=y
|
||||
CONFIG_IMA=y
|
||||
# CONFIG_IMG_ASCII_LCD is not set
|
||||
@ -2541,6 +2547,7 @@ CONFIG_INTEGRITY_ASYMMETRIC_KEYS=y
|
||||
CONFIG_INTEGRITY_AUDIT=y
|
||||
# CONFIG_INTEGRITY_PLATFORM_KEYRING is not set
|
||||
CONFIG_INTEGRITY_SIGNATURE=y
|
||||
CONFIG_INTEGRITY_TRUSTED_KEYRING=y
|
||||
CONFIG_INTEGRITY=y
|
||||
# CONFIG_INTEL_IDMA64 is not set
|
||||
CONFIG_INTEL_SOC_PMIC_CHTDC_TI=m
|
||||
@ -6188,7 +6195,7 @@ CONFIG_TCG_NSC=m
|
||||
CONFIG_TCG_TIS_I2C_ATMEL=m
|
||||
CONFIG_TCG_TIS_I2C_INFINEON=m
|
||||
# CONFIG_TCG_TIS_I2C_NUVOTON is not set
|
||||
# CONFIG_TCG_TIS_SPI is not set
|
||||
CONFIG_TCG_TIS_SPI=m
|
||||
# CONFIG_TCG_TIS_ST33ZP24_I2C is not set
|
||||
# CONFIG_TCG_TIS_ST33ZP24_SPI is not set
|
||||
CONFIG_TCG_TIS=y
|
||||
|
@ -2442,17 +2442,23 @@ CONFIG_IIO_TRIGGERED_BUFFER=m
|
||||
CONFIG_IIO_TRIGGER=y
|
||||
# CONFIG_IKCONFIG is not set
|
||||
CONFIG_IKHEADERS=m
|
||||
# CONFIG_IMA_APPRAISE is not set
|
||||
CONFIG_IMA_APPRAISE_BOOTPARAM=y
|
||||
# CONFIG_IMA_APPRAISE_BUILD_POLICY is not set
|
||||
CONFIG_IMA_APPRAISE=y
|
||||
# CONFIG_IMA_ARCH_POLICY is not set
|
||||
# CONFIG_IMA_BLACKLIST_KEYRING is not set
|
||||
# CONFIG_IMA_DEFAULT_HASH_SHA1 is not set
|
||||
CONFIG_IMA_DEFAULT_HASH_SHA256=y
|
||||
CONFIG_IMA_KEXEC=y
|
||||
CONFIG_IMA_KEYRINGS_PERMIT_SIGNED_BY_BUILTIN_OR_SECONDARY=y
|
||||
# CONFIG_IMA_LOAD_X509 is not set
|
||||
CONFIG_IMA_LSM_RULES=y
|
||||
CONFIG_IMA_MEASURE_PCR_IDX=10
|
||||
CONFIG_IMA_NG_TEMPLATE=y
|
||||
CONFIG_IMA_READ_POLICY=y
|
||||
# CONFIG_IMA_SIG_TEMPLATE is not set
|
||||
# CONFIG_IMA_TEMPLATE is not set
|
||||
# CONFIG_IMA_TRUSTED_KEYRING is not set
|
||||
CONFIG_IMA_WRITE_POLICY=y
|
||||
CONFIG_IMA=y
|
||||
# CONFIG_IMG_ASCII_LCD is not set
|
||||
@ -2595,6 +2601,7 @@ CONFIG_INTEGRITY_ASYMMETRIC_KEYS=y
|
||||
CONFIG_INTEGRITY_AUDIT=y
|
||||
# CONFIG_INTEGRITY_PLATFORM_KEYRING is not set
|
||||
CONFIG_INTEGRITY_SIGNATURE=y
|
||||
CONFIG_INTEGRITY_TRUSTED_KEYRING=y
|
||||
CONFIG_INTEGRITY=y
|
||||
# CONFIG_INTEL_IDMA64 is not set
|
||||
CONFIG_INTEL_SOC_PMIC_CHTDC_TI=m
|
||||
@ -6462,7 +6469,7 @@ CONFIG_TCG_NSC=m
|
||||
CONFIG_TCG_TIS_I2C_ATMEL=m
|
||||
CONFIG_TCG_TIS_I2C_INFINEON=m
|
||||
# CONFIG_TCG_TIS_I2C_NUVOTON is not set
|
||||
# CONFIG_TCG_TIS_SPI is not set
|
||||
CONFIG_TCG_TIS_SPI=m
|
||||
# CONFIG_TCG_TIS_ST33ZP24_I2C is not set
|
||||
# CONFIG_TCG_TIS_ST33ZP24_SPI is not set
|
||||
CONFIG_TCG_TIS=y
|
||||
|
@ -2359,17 +2359,23 @@ CONFIG_IIO_TRIGGERED_BUFFER=m
|
||||
CONFIG_IIO_TRIGGER=y
|
||||
# CONFIG_IKCONFIG is not set
|
||||
CONFIG_IKHEADERS=m
|
||||
# CONFIG_IMA_APPRAISE is not set
|
||||
CONFIG_IMA_APPRAISE_BOOTPARAM=y
|
||||
# CONFIG_IMA_APPRAISE_BUILD_POLICY is not set
|
||||
CONFIG_IMA_APPRAISE=y
|
||||
# CONFIG_IMA_ARCH_POLICY is not set
|
||||
# CONFIG_IMA_BLACKLIST_KEYRING is not set
|
||||
# CONFIG_IMA_DEFAULT_HASH_SHA1 is not set
|
||||
CONFIG_IMA_DEFAULT_HASH_SHA256=y
|
||||
CONFIG_IMA_KEXEC=y
|
||||
CONFIG_IMA_KEYRINGS_PERMIT_SIGNED_BY_BUILTIN_OR_SECONDARY=y
|
||||
# CONFIG_IMA_LOAD_X509 is not set
|
||||
CONFIG_IMA_LSM_RULES=y
|
||||
CONFIG_IMA_MEASURE_PCR_IDX=10
|
||||
CONFIG_IMA_NG_TEMPLATE=y
|
||||
CONFIG_IMA_READ_POLICY=y
|
||||
# CONFIG_IMA_SIG_TEMPLATE is not set
|
||||
# CONFIG_IMA_TEMPLATE is not set
|
||||
# CONFIG_IMA_TRUSTED_KEYRING is not set
|
||||
CONFIG_IMA_WRITE_POLICY=y
|
||||
CONFIG_IMA=y
|
||||
# CONFIG_IMG_ASCII_LCD is not set
|
||||
@ -2500,6 +2506,7 @@ CONFIG_INTEGRITY_ASYMMETRIC_KEYS=y
|
||||
CONFIG_INTEGRITY_AUDIT=y
|
||||
# CONFIG_INTEGRITY_PLATFORM_KEYRING is not set
|
||||
CONFIG_INTEGRITY_SIGNATURE=y
|
||||
CONFIG_INTEGRITY_TRUSTED_KEYRING=y
|
||||
CONFIG_INTEGRITY=y
|
||||
# CONFIG_INTEL_IDMA64 is not set
|
||||
CONFIG_INTEL_SOC_PMIC_CHTDC_TI=m
|
||||
@ -6139,7 +6146,7 @@ CONFIG_TCG_NSC=m
|
||||
CONFIG_TCG_TIS_I2C_ATMEL=m
|
||||
CONFIG_TCG_TIS_I2C_INFINEON=m
|
||||
# CONFIG_TCG_TIS_I2C_NUVOTON is not set
|
||||
# CONFIG_TCG_TIS_SPI is not set
|
||||
CONFIG_TCG_TIS_SPI=m
|
||||
# CONFIG_TCG_TIS_ST33ZP24_I2C is not set
|
||||
# CONFIG_TCG_TIS_ST33ZP24_SPI is not set
|
||||
CONFIG_TCG_TIS=y
|
||||
|
@ -2344,17 +2344,23 @@ CONFIG_IIO_TRIGGERED_BUFFER=m
|
||||
CONFIG_IIO_TRIGGER=y
|
||||
# CONFIG_IKCONFIG is not set
|
||||
CONFIG_IKHEADERS=m
|
||||
# CONFIG_IMA_APPRAISE is not set
|
||||
CONFIG_IMA_APPRAISE_BOOTPARAM=y
|
||||
# CONFIG_IMA_APPRAISE_BUILD_POLICY is not set
|
||||
CONFIG_IMA_APPRAISE=y
|
||||
# CONFIG_IMA_ARCH_POLICY is not set
|
||||
# CONFIG_IMA_BLACKLIST_KEYRING is not set
|
||||
# CONFIG_IMA_DEFAULT_HASH_SHA1 is not set
|
||||
CONFIG_IMA_DEFAULT_HASH_SHA256=y
|
||||
CONFIG_IMA_KEXEC=y
|
||||
CONFIG_IMA_KEYRINGS_PERMIT_SIGNED_BY_BUILTIN_OR_SECONDARY=y
|
||||
# CONFIG_IMA_LOAD_X509 is not set
|
||||
CONFIG_IMA_LSM_RULES=y
|
||||
CONFIG_IMA_MEASURE_PCR_IDX=10
|
||||
CONFIG_IMA_NG_TEMPLATE=y
|
||||
CONFIG_IMA_READ_POLICY=y
|
||||
# CONFIG_IMA_SIG_TEMPLATE is not set
|
||||
# CONFIG_IMA_TEMPLATE is not set
|
||||
# CONFIG_IMA_TRUSTED_KEYRING is not set
|
||||
CONFIG_IMA_WRITE_POLICY=y
|
||||
CONFIG_IMA=y
|
||||
# CONFIG_IMG_ASCII_LCD is not set
|
||||
@ -2485,6 +2491,7 @@ CONFIG_INTEGRITY_ASYMMETRIC_KEYS=y
|
||||
CONFIG_INTEGRITY_AUDIT=y
|
||||
# CONFIG_INTEGRITY_PLATFORM_KEYRING is not set
|
||||
CONFIG_INTEGRITY_SIGNATURE=y
|
||||
CONFIG_INTEGRITY_TRUSTED_KEYRING=y
|
||||
CONFIG_INTEGRITY=y
|
||||
# CONFIG_INTEL_IDMA64 is not set
|
||||
CONFIG_INTEL_SOC_PMIC_CHTDC_TI=m
|
||||
@ -6118,7 +6125,7 @@ CONFIG_TCG_NSC=m
|
||||
CONFIG_TCG_TIS_I2C_ATMEL=m
|
||||
CONFIG_TCG_TIS_I2C_INFINEON=m
|
||||
# CONFIG_TCG_TIS_I2C_NUVOTON is not set
|
||||
# CONFIG_TCG_TIS_SPI is not set
|
||||
CONFIG_TCG_TIS_SPI=m
|
||||
# CONFIG_TCG_TIS_ST33ZP24_I2C is not set
|
||||
# CONFIG_TCG_TIS_ST33ZP24_SPI is not set
|
||||
CONFIG_TCG_TIS=y
|
||||
|
@ -2427,17 +2427,23 @@ CONFIG_IIO_TRIGGERED_BUFFER=m
|
||||
CONFIG_IIO_TRIGGER=y
|
||||
# CONFIG_IKCONFIG is not set
|
||||
CONFIG_IKHEADERS=m
|
||||
# CONFIG_IMA_APPRAISE is not set
|
||||
CONFIG_IMA_APPRAISE_BOOTPARAM=y
|
||||
# CONFIG_IMA_APPRAISE_BUILD_POLICY is not set
|
||||
CONFIG_IMA_APPRAISE=y
|
||||
# CONFIG_IMA_ARCH_POLICY is not set
|
||||
# CONFIG_IMA_BLACKLIST_KEYRING is not set
|
||||
# CONFIG_IMA_DEFAULT_HASH_SHA1 is not set
|
||||
CONFIG_IMA_DEFAULT_HASH_SHA256=y
|
||||
CONFIG_IMA_KEXEC=y
|
||||
CONFIG_IMA_KEYRINGS_PERMIT_SIGNED_BY_BUILTIN_OR_SECONDARY=y
|
||||
# CONFIG_IMA_LOAD_X509 is not set
|
||||
CONFIG_IMA_LSM_RULES=y
|
||||
CONFIG_IMA_MEASURE_PCR_IDX=10
|
||||
CONFIG_IMA_NG_TEMPLATE=y
|
||||
CONFIG_IMA_READ_POLICY=y
|
||||
# CONFIG_IMA_SIG_TEMPLATE is not set
|
||||
# CONFIG_IMA_TEMPLATE is not set
|
||||
# CONFIG_IMA_TRUSTED_KEYRING is not set
|
||||
CONFIG_IMA_WRITE_POLICY=y
|
||||
CONFIG_IMA=y
|
||||
# CONFIG_IMG_ASCII_LCD is not set
|
||||
@ -2580,6 +2586,7 @@ CONFIG_INTEGRITY_ASYMMETRIC_KEYS=y
|
||||
CONFIG_INTEGRITY_AUDIT=y
|
||||
# CONFIG_INTEGRITY_PLATFORM_KEYRING is not set
|
||||
CONFIG_INTEGRITY_SIGNATURE=y
|
||||
CONFIG_INTEGRITY_TRUSTED_KEYRING=y
|
||||
CONFIG_INTEGRITY=y
|
||||
# CONFIG_INTEL_IDMA64 is not set
|
||||
CONFIG_INTEL_SOC_PMIC_CHTDC_TI=m
|
||||
@ -6441,7 +6448,7 @@ CONFIG_TCG_NSC=m
|
||||
CONFIG_TCG_TIS_I2C_ATMEL=m
|
||||
CONFIG_TCG_TIS_I2C_INFINEON=m
|
||||
# CONFIG_TCG_TIS_I2C_NUVOTON is not set
|
||||
# CONFIG_TCG_TIS_SPI is not set
|
||||
CONFIG_TCG_TIS_SPI=m
|
||||
# CONFIG_TCG_TIS_ST33ZP24_I2C is not set
|
||||
# CONFIG_TCG_TIS_ST33ZP24_SPI is not set
|
||||
CONFIG_TCG_TIS=y
|
||||
|
@ -2158,18 +2158,23 @@ CONFIG_IIO_TRIGGERED_BUFFER=m
|
||||
CONFIG_IIO_TRIGGER=y
|
||||
# CONFIG_IKCONFIG is not set
|
||||
CONFIG_IKHEADERS=m
|
||||
# CONFIG_IMA_APPRAISE is not set
|
||||
CONFIG_IMA_APPRAISE_BOOTPARAM=y
|
||||
# CONFIG_IMA_APPRAISE_BUILD_POLICY is not set
|
||||
CONFIG_IMA_APPRAISE=y
|
||||
# CONFIG_IMA_ARCH_POLICY is not set
|
||||
# CONFIG_IMA_BLACKLIST_KEYRING is not set
|
||||
# CONFIG_IMA_DEFAULT_HASH_SHA1 is not set
|
||||
CONFIG_IMA_DEFAULT_HASH_SHA256=y
|
||||
CONFIG_IMA_KEXEC=y
|
||||
CONFIG_IMA_KEYRINGS_PERMIT_SIGNED_BY_BUILTIN_OR_SECONDARY=y
|
||||
# CONFIG_IMA_LOAD_X509 is not set
|
||||
CONFIG_IMA_LSM_RULES=y
|
||||
CONFIG_IMA_MEASURE_PCR_IDX=10
|
||||
CONFIG_IMA_NG_TEMPLATE=y
|
||||
CONFIG_IMA_READ_POLICY=y
|
||||
# CONFIG_IMA_SIG_TEMPLATE is not set
|
||||
# CONFIG_IMA_TEMPLATE is not set
|
||||
# CONFIG_IMA_TRUSTED_KEYRING is not set
|
||||
CONFIG_IMA_WRITE_POLICY=y
|
||||
CONFIG_IMA=y
|
||||
# CONFIG_IMG_ASCII_LCD is not set
|
||||
@ -2287,6 +2292,7 @@ CONFIG_INTEGRITY_ASYMMETRIC_KEYS=y
|
||||
CONFIG_INTEGRITY_AUDIT=y
|
||||
CONFIG_INTEGRITY_PLATFORM_KEYRING=y
|
||||
CONFIG_INTEGRITY_SIGNATURE=y
|
||||
CONFIG_INTEGRITY_TRUSTED_KEYRING=y
|
||||
CONFIG_INTEGRITY=y
|
||||
CONFIG_INTEL_ATOMISP2_PM=m
|
||||
CONFIG_INTEL_BXT_PMIC_THERMAL=m
|
||||
@ -5649,7 +5655,7 @@ CONFIG_TCG_NSC=m
|
||||
# CONFIG_TCG_TIS_I2C_ATMEL is not set
|
||||
# CONFIG_TCG_TIS_I2C_INFINEON is not set
|
||||
# CONFIG_TCG_TIS_I2C_NUVOTON is not set
|
||||
# CONFIG_TCG_TIS_SPI is not set
|
||||
CONFIG_TCG_TIS_SPI=m
|
||||
# CONFIG_TCG_TIS_ST33ZP24_I2C is not set
|
||||
# CONFIG_TCG_TIS_ST33ZP24_SPI is not set
|
||||
CONFIG_TCG_TIS=y
|
||||
|
@ -2141,18 +2141,23 @@ CONFIG_IIO_TRIGGERED_BUFFER=m
|
||||
CONFIG_IIO_TRIGGER=y
|
||||
# CONFIG_IKCONFIG is not set
|
||||
CONFIG_IKHEADERS=m
|
||||
# CONFIG_IMA_APPRAISE is not set
|
||||
CONFIG_IMA_APPRAISE_BOOTPARAM=y
|
||||
# CONFIG_IMA_APPRAISE_BUILD_POLICY is not set
|
||||
CONFIG_IMA_APPRAISE=y
|
||||
# CONFIG_IMA_ARCH_POLICY is not set
|
||||
# CONFIG_IMA_BLACKLIST_KEYRING is not set
|
||||
# CONFIG_IMA_DEFAULT_HASH_SHA1 is not set
|
||||
CONFIG_IMA_DEFAULT_HASH_SHA256=y
|
||||
CONFIG_IMA_KEXEC=y
|
||||
CONFIG_IMA_KEYRINGS_PERMIT_SIGNED_BY_BUILTIN_OR_SECONDARY=y
|
||||
# CONFIG_IMA_LOAD_X509 is not set
|
||||
CONFIG_IMA_LSM_RULES=y
|
||||
CONFIG_IMA_MEASURE_PCR_IDX=10
|
||||
CONFIG_IMA_NG_TEMPLATE=y
|
||||
CONFIG_IMA_READ_POLICY=y
|
||||
# CONFIG_IMA_SIG_TEMPLATE is not set
|
||||
# CONFIG_IMA_TEMPLATE is not set
|
||||
# CONFIG_IMA_TRUSTED_KEYRING is not set
|
||||
CONFIG_IMA_WRITE_POLICY=y
|
||||
CONFIG_IMA=y
|
||||
# CONFIG_IMG_ASCII_LCD is not set
|
||||
@ -2270,6 +2275,7 @@ CONFIG_INTEGRITY_ASYMMETRIC_KEYS=y
|
||||
CONFIG_INTEGRITY_AUDIT=y
|
||||
CONFIG_INTEGRITY_PLATFORM_KEYRING=y
|
||||
CONFIG_INTEGRITY_SIGNATURE=y
|
||||
CONFIG_INTEGRITY_TRUSTED_KEYRING=y
|
||||
CONFIG_INTEGRITY=y
|
||||
CONFIG_INTEL_ATOMISP2_PM=m
|
||||
CONFIG_INTEL_BXT_PMIC_THERMAL=m
|
||||
@ -5628,7 +5634,7 @@ CONFIG_TCG_NSC=m
|
||||
# CONFIG_TCG_TIS_I2C_ATMEL is not set
|
||||
# CONFIG_TCG_TIS_I2C_INFINEON is not set
|
||||
# CONFIG_TCG_TIS_I2C_NUVOTON is not set
|
||||
# CONFIG_TCG_TIS_SPI is not set
|
||||
CONFIG_TCG_TIS_SPI=m
|
||||
# CONFIG_TCG_TIS_ST33ZP24_I2C is not set
|
||||
# CONFIG_TCG_TIS_ST33ZP24_SPI is not set
|
||||
CONFIG_TCG_TIS=y
|
||||
|
@ -1965,17 +1965,23 @@ CONFIG_IIO_TRIGGERED_BUFFER=m
|
||||
CONFIG_IIO_TRIGGER=y
|
||||
# CONFIG_IKCONFIG is not set
|
||||
CONFIG_IKHEADERS=m
|
||||
# CONFIG_IMA_APPRAISE is not set
|
||||
CONFIG_IMA_APPRAISE_BOOTPARAM=y
|
||||
# CONFIG_IMA_APPRAISE_BUILD_POLICY is not set
|
||||
CONFIG_IMA_APPRAISE=y
|
||||
# CONFIG_IMA_ARCH_POLICY is not set
|
||||
# CONFIG_IMA_BLACKLIST_KEYRING is not set
|
||||
# CONFIG_IMA_DEFAULT_HASH_SHA1 is not set
|
||||
CONFIG_IMA_DEFAULT_HASH_SHA256=y
|
||||
CONFIG_IMA_KEXEC=y
|
||||
CONFIG_IMA_KEYRINGS_PERMIT_SIGNED_BY_BUILTIN_OR_SECONDARY=y
|
||||
# CONFIG_IMA_LOAD_X509 is not set
|
||||
CONFIG_IMA_LSM_RULES=y
|
||||
CONFIG_IMA_MEASURE_PCR_IDX=10
|
||||
CONFIG_IMA_NG_TEMPLATE=y
|
||||
CONFIG_IMA_READ_POLICY=y
|
||||
# CONFIG_IMA_SIG_TEMPLATE is not set
|
||||
# CONFIG_IMA_TEMPLATE is not set
|
||||
# CONFIG_IMA_TRUSTED_KEYRING is not set
|
||||
CONFIG_IMA_WRITE_POLICY=y
|
||||
CONFIG_IMA=y
|
||||
# CONFIG_IMG_ASCII_LCD is not set
|
||||
@ -2089,6 +2095,7 @@ CONFIG_INTEGRITY_ASYMMETRIC_KEYS=y
|
||||
CONFIG_INTEGRITY_AUDIT=y
|
||||
# CONFIG_INTEGRITY_PLATFORM_KEYRING is not set
|
||||
CONFIG_INTEGRITY_SIGNATURE=y
|
||||
CONFIG_INTEGRITY_TRUSTED_KEYRING=y
|
||||
CONFIG_INTEGRITY=y
|
||||
# CONFIG_INTEL_IDMA64 is not set
|
||||
CONFIG_INTEL_SOC_PMIC_CHTDC_TI=m
|
||||
@ -5271,7 +5278,7 @@ CONFIG_TCG_NSC=m
|
||||
# CONFIG_TCG_TIS_I2C_ATMEL is not set
|
||||
# CONFIG_TCG_TIS_I2C_INFINEON is not set
|
||||
# CONFIG_TCG_TIS_I2C_NUVOTON is not set
|
||||
# CONFIG_TCG_TIS_SPI is not set
|
||||
CONFIG_TCG_TIS_SPI=m
|
||||
# CONFIG_TCG_TIS_ST33ZP24_I2C is not set
|
||||
# CONFIG_TCG_TIS_ST33ZP24_SPI is not set
|
||||
CONFIG_TCG_TIS=y
|
||||
|
@ -1948,17 +1948,23 @@ CONFIG_IIO_TRIGGERED_BUFFER=m
|
||||
CONFIG_IIO_TRIGGER=y
|
||||
# CONFIG_IKCONFIG is not set
|
||||
CONFIG_IKHEADERS=m
|
||||
# CONFIG_IMA_APPRAISE is not set
|
||||
CONFIG_IMA_APPRAISE_BOOTPARAM=y
|
||||
# CONFIG_IMA_APPRAISE_BUILD_POLICY is not set
|
||||
CONFIG_IMA_APPRAISE=y
|
||||
# CONFIG_IMA_ARCH_POLICY is not set
|
||||
# CONFIG_IMA_BLACKLIST_KEYRING is not set
|
||||
# CONFIG_IMA_DEFAULT_HASH_SHA1 is not set
|
||||
CONFIG_IMA_DEFAULT_HASH_SHA256=y
|
||||
CONFIG_IMA_KEXEC=y
|
||||
CONFIG_IMA_KEYRINGS_PERMIT_SIGNED_BY_BUILTIN_OR_SECONDARY=y
|
||||
# CONFIG_IMA_LOAD_X509 is not set
|
||||
CONFIG_IMA_LSM_RULES=y
|
||||
CONFIG_IMA_MEASURE_PCR_IDX=10
|
||||
CONFIG_IMA_NG_TEMPLATE=y
|
||||
CONFIG_IMA_READ_POLICY=y
|
||||
# CONFIG_IMA_SIG_TEMPLATE is not set
|
||||
# CONFIG_IMA_TEMPLATE is not set
|
||||
# CONFIG_IMA_TRUSTED_KEYRING is not set
|
||||
CONFIG_IMA_WRITE_POLICY=y
|
||||
CONFIG_IMA=y
|
||||
# CONFIG_IMG_ASCII_LCD is not set
|
||||
@ -2072,6 +2078,7 @@ CONFIG_INTEGRITY_ASYMMETRIC_KEYS=y
|
||||
CONFIG_INTEGRITY_AUDIT=y
|
||||
# CONFIG_INTEGRITY_PLATFORM_KEYRING is not set
|
||||
CONFIG_INTEGRITY_SIGNATURE=y
|
||||
CONFIG_INTEGRITY_TRUSTED_KEYRING=y
|
||||
CONFIG_INTEGRITY=y
|
||||
# CONFIG_INTEL_IDMA64 is not set
|
||||
CONFIG_INTEL_SOC_PMIC_CHTDC_TI=m
|
||||
@ -5248,7 +5255,7 @@ CONFIG_TCG_NSC=m
|
||||
# CONFIG_TCG_TIS_I2C_ATMEL is not set
|
||||
# CONFIG_TCG_TIS_I2C_INFINEON is not set
|
||||
# CONFIG_TCG_TIS_I2C_NUVOTON is not set
|
||||
# CONFIG_TCG_TIS_SPI is not set
|
||||
CONFIG_TCG_TIS_SPI=m
|
||||
# CONFIG_TCG_TIS_ST33ZP24_I2C is not set
|
||||
# CONFIG_TCG_TIS_ST33ZP24_SPI is not set
|
||||
CONFIG_TCG_TIS=y
|
||||
|
@ -1943,17 +1943,23 @@ CONFIG_IIO_TRIGGERED_BUFFER=m
|
||||
CONFIG_IIO_TRIGGER=y
|
||||
# CONFIG_IKCONFIG is not set
|
||||
CONFIG_IKHEADERS=m
|
||||
# CONFIG_IMA_APPRAISE is not set
|
||||
CONFIG_IMA_APPRAISE_BOOTPARAM=y
|
||||
# CONFIG_IMA_APPRAISE_BUILD_POLICY is not set
|
||||
CONFIG_IMA_APPRAISE=y
|
||||
# CONFIG_IMA_ARCH_POLICY is not set
|
||||
# CONFIG_IMA_BLACKLIST_KEYRING is not set
|
||||
# CONFIG_IMA_DEFAULT_HASH_SHA1 is not set
|
||||
CONFIG_IMA_DEFAULT_HASH_SHA256=y
|
||||
CONFIG_IMA_KEXEC=y
|
||||
CONFIG_IMA_KEYRINGS_PERMIT_SIGNED_BY_BUILTIN_OR_SECONDARY=y
|
||||
# CONFIG_IMA_LOAD_X509 is not set
|
||||
CONFIG_IMA_LSM_RULES=y
|
||||
CONFIG_IMA_MEASURE_PCR_IDX=10
|
||||
CONFIG_IMA_NG_TEMPLATE=y
|
||||
CONFIG_IMA_READ_POLICY=y
|
||||
# CONFIG_IMA_SIG_TEMPLATE is not set
|
||||
# CONFIG_IMA_TEMPLATE is not set
|
||||
# CONFIG_IMA_TRUSTED_KEYRING is not set
|
||||
CONFIG_IMA_WRITE_POLICY=y
|
||||
CONFIG_IMA=y
|
||||
# CONFIG_IMG_ASCII_LCD is not set
|
||||
@ -2067,6 +2073,7 @@ CONFIG_INTEGRITY_ASYMMETRIC_KEYS=y
|
||||
CONFIG_INTEGRITY_AUDIT=y
|
||||
# CONFIG_INTEGRITY_PLATFORM_KEYRING is not set
|
||||
CONFIG_INTEGRITY_SIGNATURE=y
|
||||
CONFIG_INTEGRITY_TRUSTED_KEYRING=y
|
||||
CONFIG_INTEGRITY=y
|
||||
# CONFIG_INTEL_IDMA64 is not set
|
||||
CONFIG_INTEL_SOC_PMIC_CHTDC_TI=m
|
||||
@ -5206,7 +5213,7 @@ CONFIG_TCG_NSC=m
|
||||
# CONFIG_TCG_TIS_I2C_ATMEL is not set
|
||||
# CONFIG_TCG_TIS_I2C_INFINEON is not set
|
||||
# CONFIG_TCG_TIS_I2C_NUVOTON is not set
|
||||
# CONFIG_TCG_TIS_SPI is not set
|
||||
CONFIG_TCG_TIS_SPI=m
|
||||
# CONFIG_TCG_TIS_ST33ZP24_I2C is not set
|
||||
# CONFIG_TCG_TIS_ST33ZP24_SPI is not set
|
||||
CONFIG_TCG_TIS=y
|
||||
|
@ -1926,17 +1926,23 @@ CONFIG_IIO_TRIGGERED_BUFFER=m
|
||||
CONFIG_IIO_TRIGGER=y
|
||||
# CONFIG_IKCONFIG is not set
|
||||
CONFIG_IKHEADERS=m
|
||||
# CONFIG_IMA_APPRAISE is not set
|
||||
CONFIG_IMA_APPRAISE_BOOTPARAM=y
|
||||
# CONFIG_IMA_APPRAISE_BUILD_POLICY is not set
|
||||
CONFIG_IMA_APPRAISE=y
|
||||
# CONFIG_IMA_ARCH_POLICY is not set
|
||||
# CONFIG_IMA_BLACKLIST_KEYRING is not set
|
||||
# CONFIG_IMA_DEFAULT_HASH_SHA1 is not set
|
||||
CONFIG_IMA_DEFAULT_HASH_SHA256=y
|
||||
CONFIG_IMA_KEXEC=y
|
||||
CONFIG_IMA_KEYRINGS_PERMIT_SIGNED_BY_BUILTIN_OR_SECONDARY=y
|
||||
# CONFIG_IMA_LOAD_X509 is not set
|
||||
CONFIG_IMA_LSM_RULES=y
|
||||
CONFIG_IMA_MEASURE_PCR_IDX=10
|
||||
CONFIG_IMA_NG_TEMPLATE=y
|
||||
CONFIG_IMA_READ_POLICY=y
|
||||
# CONFIG_IMA_SIG_TEMPLATE is not set
|
||||
# CONFIG_IMA_TEMPLATE is not set
|
||||
# CONFIG_IMA_TRUSTED_KEYRING is not set
|
||||
CONFIG_IMA_WRITE_POLICY=y
|
||||
CONFIG_IMA=y
|
||||
# CONFIG_IMG_ASCII_LCD is not set
|
||||
@ -2050,6 +2056,7 @@ CONFIG_INTEGRITY_ASYMMETRIC_KEYS=y
|
||||
CONFIG_INTEGRITY_AUDIT=y
|
||||
# CONFIG_INTEGRITY_PLATFORM_KEYRING is not set
|
||||
CONFIG_INTEGRITY_SIGNATURE=y
|
||||
CONFIG_INTEGRITY_TRUSTED_KEYRING=y
|
||||
CONFIG_INTEGRITY=y
|
||||
# CONFIG_INTEL_IDMA64 is not set
|
||||
CONFIG_INTEL_SOC_PMIC_CHTDC_TI=m
|
||||
@ -5183,7 +5190,7 @@ CONFIG_TCG_NSC=m
|
||||
# CONFIG_TCG_TIS_I2C_ATMEL is not set
|
||||
# CONFIG_TCG_TIS_I2C_INFINEON is not set
|
||||
# CONFIG_TCG_TIS_I2C_NUVOTON is not set
|
||||
# CONFIG_TCG_TIS_SPI is not set
|
||||
CONFIG_TCG_TIS_SPI=m
|
||||
# CONFIG_TCG_TIS_ST33ZP24_I2C is not set
|
||||
# CONFIG_TCG_TIS_ST33ZP24_SPI is not set
|
||||
CONFIG_TCG_TIS=y
|
||||
|
@ -2201,18 +2201,23 @@ CONFIG_IIO_TRIGGERED_BUFFER=m
|
||||
CONFIG_IIO_TRIGGER=y
|
||||
# CONFIG_IKCONFIG is not set
|
||||
CONFIG_IKHEADERS=m
|
||||
# CONFIG_IMA_APPRAISE is not set
|
||||
CONFIG_IMA_APPRAISE_BOOTPARAM=y
|
||||
# CONFIG_IMA_APPRAISE_BUILD_POLICY is not set
|
||||
CONFIG_IMA_APPRAISE=y
|
||||
# CONFIG_IMA_ARCH_POLICY is not set
|
||||
# CONFIG_IMA_BLACKLIST_KEYRING is not set
|
||||
# CONFIG_IMA_DEFAULT_HASH_SHA1 is not set
|
||||
CONFIG_IMA_DEFAULT_HASH_SHA256=y
|
||||
CONFIG_IMA_KEXEC=y
|
||||
CONFIG_IMA_KEYRINGS_PERMIT_SIGNED_BY_BUILTIN_OR_SECONDARY=y
|
||||
# CONFIG_IMA_LOAD_X509 is not set
|
||||
CONFIG_IMA_LSM_RULES=y
|
||||
CONFIG_IMA_MEASURE_PCR_IDX=10
|
||||
CONFIG_IMA_NG_TEMPLATE=y
|
||||
CONFIG_IMA_READ_POLICY=y
|
||||
# CONFIG_IMA_SIG_TEMPLATE is not set
|
||||
# CONFIG_IMA_TEMPLATE is not set
|
||||
# CONFIG_IMA_TRUSTED_KEYRING is not set
|
||||
CONFIG_IMA_WRITE_POLICY=y
|
||||
CONFIG_IMA=y
|
||||
# CONFIG_IMG_ASCII_LCD is not set
|
||||
@ -2333,6 +2338,7 @@ CONFIG_INTEGRITY_ASYMMETRIC_KEYS=y
|
||||
CONFIG_INTEGRITY_AUDIT=y
|
||||
CONFIG_INTEGRITY_PLATFORM_KEYRING=y
|
||||
CONFIG_INTEGRITY_SIGNATURE=y
|
||||
CONFIG_INTEGRITY_TRUSTED_KEYRING=y
|
||||
CONFIG_INTEGRITY=y
|
||||
CONFIG_INTEL_ATOMISP2_PM=m
|
||||
CONFIG_INTEL_BXT_PMIC_THERMAL=m
|
||||
@ -5707,7 +5713,7 @@ CONFIG_TCG_NSC=m
|
||||
# CONFIG_TCG_TIS_I2C_ATMEL is not set
|
||||
# CONFIG_TCG_TIS_I2C_INFINEON is not set
|
||||
# CONFIG_TCG_TIS_I2C_NUVOTON is not set
|
||||
# CONFIG_TCG_TIS_SPI is not set
|
||||
CONFIG_TCG_TIS_SPI=m
|
||||
# CONFIG_TCG_TIS_ST33ZP24_I2C is not set
|
||||
# CONFIG_TCG_TIS_ST33ZP24_SPI is not set
|
||||
CONFIG_TCG_TIS=y
|
||||
|
@ -2184,18 +2184,23 @@ CONFIG_IIO_TRIGGERED_BUFFER=m
|
||||
CONFIG_IIO_TRIGGER=y
|
||||
# CONFIG_IKCONFIG is not set
|
||||
CONFIG_IKHEADERS=m
|
||||
# CONFIG_IMA_APPRAISE is not set
|
||||
CONFIG_IMA_APPRAISE_BOOTPARAM=y
|
||||
# CONFIG_IMA_APPRAISE_BUILD_POLICY is not set
|
||||
CONFIG_IMA_APPRAISE=y
|
||||
# CONFIG_IMA_ARCH_POLICY is not set
|
||||
# CONFIG_IMA_BLACKLIST_KEYRING is not set
|
||||
# CONFIG_IMA_DEFAULT_HASH_SHA1 is not set
|
||||
CONFIG_IMA_DEFAULT_HASH_SHA256=y
|
||||
CONFIG_IMA_KEXEC=y
|
||||
CONFIG_IMA_KEYRINGS_PERMIT_SIGNED_BY_BUILTIN_OR_SECONDARY=y
|
||||
# CONFIG_IMA_LOAD_X509 is not set
|
||||
CONFIG_IMA_LSM_RULES=y
|
||||
CONFIG_IMA_MEASURE_PCR_IDX=10
|
||||
CONFIG_IMA_NG_TEMPLATE=y
|
||||
CONFIG_IMA_READ_POLICY=y
|
||||
# CONFIG_IMA_SIG_TEMPLATE is not set
|
||||
# CONFIG_IMA_TEMPLATE is not set
|
||||
# CONFIG_IMA_TRUSTED_KEYRING is not set
|
||||
CONFIG_IMA_WRITE_POLICY=y
|
||||
CONFIG_IMA=y
|
||||
# CONFIG_IMG_ASCII_LCD is not set
|
||||
@ -2316,6 +2321,7 @@ CONFIG_INTEGRITY_ASYMMETRIC_KEYS=y
|
||||
CONFIG_INTEGRITY_AUDIT=y
|
||||
CONFIG_INTEGRITY_PLATFORM_KEYRING=y
|
||||
CONFIG_INTEGRITY_SIGNATURE=y
|
||||
CONFIG_INTEGRITY_TRUSTED_KEYRING=y
|
||||
CONFIG_INTEGRITY=y
|
||||
CONFIG_INTEL_ATOMISP2_PM=m
|
||||
CONFIG_INTEL_BXT_PMIC_THERMAL=m
|
||||
@ -5686,7 +5692,7 @@ CONFIG_TCG_NSC=m
|
||||
# CONFIG_TCG_TIS_I2C_ATMEL is not set
|
||||
# CONFIG_TCG_TIS_I2C_INFINEON is not set
|
||||
# CONFIG_TCG_TIS_I2C_NUVOTON is not set
|
||||
# CONFIG_TCG_TIS_SPI is not set
|
||||
CONFIG_TCG_TIS_SPI=m
|
||||
# CONFIG_TCG_TIS_ST33ZP24_I2C is not set
|
||||
# CONFIG_TCG_TIS_ST33ZP24_SPI is not set
|
||||
CONFIG_TCG_TIS=y
|
||||
|
@ -44,7 +44,7 @@ Summary: The Linux kernel
|
||||
# For non-released -rc kernels, this will be appended after the rcX and
|
||||
# gitX tags, so a 3 here would become part of release "0.rcX.gitX.3"
|
||||
#
|
||||
%global baserelease 1
|
||||
%global baserelease 2
|
||||
%global fedora_build %{baserelease}
|
||||
|
||||
# base_sublevel is the kernel version we're starting with and patching
|
||||
@ -1820,6 +1820,9 @@ fi
|
||||
#
|
||||
#
|
||||
%changelog
|
||||
* Wed Jul 31 2019 Peter Robinson <pbrobinson@fedoraproject.org> 5.3.0-0.rc2.git2.2
|
||||
- Enable IMA Appraisal
|
||||
|
||||
* Wed Jul 31 2019 Laura Abbott <labbott@redhat.com> - 5.3.0-0.rc2.git2.1
|
||||
- Linux v5.3-rc2-51-g4010b622f1d2
|
||||
|
||||
|
Loading…
Reference in New Issue
Block a user