Re: [PATCH V8 3/3] Call ima_kexec_cmdline to measure the cmdline args
From: James Morris <jmorris@namei.org>
Date: 2019-06-13 19:17:26
Also in:
linux-integrity, lkml
From: James Morris <jmorris@namei.org>
Date: 2019-06-13 19:17:26
Also in:
linux-integrity, lkml
On Wed, 12 Jun 2019, Prakhar Srivastava wrote:
During soft reboot(kexec_file_load) boot cmdline args are not measured.Thus the new kernel on load boots with an assumption of cold reboot. This patch makes a call to the ima hook ima_kexec_cmdline, added in "Define a new IMA hook to measure the boot command line arguments" to measure the boot cmdline args into the ima log. - call ima_kexec_cmdline from kexec_file_load. - move the call ima_add_kexec_buffer after the cmdline args have been measured. Signed-off-by: Prakhar Srivastava <redacted> --- kernel/kexec_file.c | 9 ++++++--- 1 file changed, 6 insertions(+), 3 deletions(-)
Reviewed-by: James Morris <redacted> -- James Morris [off-list ref]