Re: [systemd-devel] [PATCH 2/2] ima: Write the policy filename into IMA's sysfs policy file

2016-11-29 Thread Stefan Berger
On 11/29/2016 06:56 AM, Lennart Poettering wrote: On Mon, 28.11.16 14:17, Stefan Berger (stef...@linux.vnet.ibm.com) wrote: From: Stefan Berger IMA validates file signatures based on the security.ima xattr. As of Linux-4.7, instead of copying the IMA policy into the

Re: [systemd-devel] [PATCH 2/2] ima: Write the policy filename into IMA's sysfs policy file

2016-11-29 Thread Lennart Poettering
On Mon, 28.11.16 14:17, Stefan Berger (stef...@linux.vnet.ibm.com) wrote: > From: Stefan Berger > > IMA validates file signatures based on the security.ima xattr. As of > Linux-4.7, instead of copying the IMA policy into the securityfs policy, > the IMA policy pathname can

Re: [systemd-devel] [PATCH 2/2] ima: Write the policy filename into IMA's sysfs policy file

2016-11-28 Thread systemd github import bot
Patchset imported to github. To create a pull request, one of the main developers has to initiate one via: -- Generated by https://github.com/haraldh/mail2git

[systemd-devel] [PATCH 2/2] ima: Write the policy filename into IMA's sysfs policy file

2016-11-28 Thread Stefan Berger
From: Stefan Berger IMA validates file signatures based on the security.ima xattr. As of Linux-4.7, instead of copying the IMA policy into the securityfs policy, the IMA policy pathname can be written, allowing the IMA policy file signature to be validated. This patch