Do I understand correctly that IMA will verify signatures of binaries before 
running them , but fsverity can verify _any_ file when it is being accessed and 
block access if the signature is invalid?

-- 
You are receiving this because you are subscribed to this thread.
Reply to this email directly or view it on GitHub:
https://github.com/rpm-software-management/rpm/issues/1121#issuecomment-703518161
_______________________________________________
Rpm-maint mailing list
Rpm-maint@lists.rpm.org
http://lists.rpm.org/mailman/listinfo/rpm-maint

Reply via email to