Thread (26 messages) 26 messages, 5 authors, 2022-03-11

Re: [PATCH v3 0/9] bpf-lsm: Extend interoperability with IMA

From: Mimi Zohar <zohar@linux.ibm.com>
Date: 2022-03-06 19:24:19
Also in: bpf, linux-integrity, linux-kselftest, lkml, netdev

On Wed, 2022-03-02 at 12:13 +0100, Roberto Sassu wrote:
Extend the interoperability with IMA, to give wider flexibility for the
implementation of integrity-focused LSMs based on eBPF.

Patch 1 fixes some style issues.

Patches 2-6 give the ability to eBPF-based LSMs to take advantage of the
measurement capability of IMA without needing to setup a policy in IMA
(those LSMs might implement the policy capability themselves).

Patches 7-9 allow eBPF-based LSMs to evaluate files read by the kernel.
The tests seem to only work when neither a builtin IMA policy or a
custom policy is previously loaded.

thanks,

Mimi
Keyboard shortcuts
hback out one level
jnext message in thread
kprevious message in thread
ldrill in
Escclose help / fold thread tree
?toggle this help