On Fri, Jun 5, 2026 at 10:43 AM Yeoreum Yun <[email protected]> wrote:
>
> There are situations where LSMs have dependencies that might mean they
> want to be initialised later in the boot process, to ensure those
> dependencies are available. In particular there are some TPM setups (Arm
> FF-A devices, SPI attached TPMs) required by IMA which are not
> guaranteed to be initialised for regular initcall_late.
>
> Add an initcall_late_sync option that can be used in these situations.
>
> Signed-off-by: Yeoreum Yun <[email protected]>
> ---
>  include/linux/lsm_hooks.h |  2 ++
>  security/lsm_init.c       | 13 +++++++++++--
>  2 files changed, 13 insertions(+), 2 deletions(-)

Looks good to me, thanks for working on sorting this out.

Acked-by: Paul Moore <[email protected]>

-- 
paul-moore.com

Reply via email to