Thread (36 messages) 36 messages, 6 authors, 2024-03-12

Re: [RFC PATCH v14 16/19] ipe: enable support for fs-verity as a trust provider

From: Randy Dunlap <hidden>
Date: 2024-03-07 00:02:30
Also in: dm-devel, linux-block, linux-doc, linux-fscrypt, linux-integrity, lkml


On 3/6/24 15:34, Fan Wu wrote:
+config IPE_PROP_FS_VERITY
+	bool "Enable property for fs-verity files"
+	depends on FS_VERITY && FS_VERITY_BUILTIN_SIGNATURES
+	help
+	  This option enables the usage of properties "fsverity_signature"
+	  and "fsverity_digest". These properties evaluates to TRUE when
	                                          evaluate
+	  a file is fsverity enabled and with a signed digest or its
+	  digest matches the supplied value in the policy.
-- 
#Randy
Keyboard shortcuts
hback out one level
jnext message in thread
kprevious message in thread
ldrill in
Escclose help / fold thread tree
?toggle this help