Thread (30 messages) 30 messages, 6 authors, 2021-07-09

Re: [PATCH RFC 00/12] Enroll kernel keys thru MOK

From: Mimi Zohar <zohar@linux.ibm.com>
Date: 2021-07-09 01:11:35
Also in: keyrings, linux-crypto, linux-security-module, lkml

On Thu, 2021-07-08 at 17:17 -0600, Eric Snowberg wrote:
quoted
Once all the CA keys in the MOK db are loaded onto the MOK keyring,
To avoid confusion with the new keyring name, would it be more appropriate 
to change what we are calling the .mok keyring to the .trusted_platform 
keyring instead? Or just leave it as .mok?
Definitely not ".trusted_platform" keyring, as it would be too
confusing with the existing "trusted" key type [1].  At least for now,
leave it as ".mok".

thanks,

Mimi

[1] Documentation/security/keys/trusted-encrypted.rst
Keyboard shortcuts
hback out one level
jnext message in thread
kprevious message in thread
ldrill in
Escclose help / fold thread tree
?toggle this help