Re: [PATCH v3 5/7] ima: suspend measurements during buffer copy at kexec execute

2024-01-11 Thread Tushar Sugandhi
On 1/11/24 09:30, Mimi Zohar wrote: On Fri, 2024-01-05 at 11:50 -0800, Tushar Sugandhi wrote: On 12/20/23 12:44, Mimi Zohar wrote: On Fri, 2023-12-15 at 17:07 -0800, Tushar Sugandhi wrote: If the new measurements are added to the IMA log while it is being being copied to the kexec buffer

Re: [PATCH v3 5/7] ima: suspend measurements during buffer copy at kexec execute

2024-01-11 Thread Mimi Zohar
On Fri, 2024-01-05 at 11:50 -0800, Tushar Sugandhi wrote: > > On 12/20/23 12:44, Mimi Zohar wrote: > > On Fri, 2023-12-15 at 17:07 -0800, Tushar Sugandhi wrote: > >> If the new measurements are added to the IMA log while it is being > >> being copied to the kexec buffer during kexec 'execute', it

Re: [PATCH v3 5/7] ima: suspend measurements during buffer copy at kexec execute

2024-01-05 Thread Tushar Sugandhi
On 12/20/23 12:44, Mimi Zohar wrote: On Fri, 2023-12-15 at 17:07 -0800, Tushar Sugandhi wrote: If the new measurements are added to the IMA log while it is being being copied to the kexec buffer during kexec 'execute', it can miss copying those new measurements to the kexec buffer, and the

Re: [PATCH v3 5/7] ima: suspend measurements during buffer copy at kexec execute

2023-12-20 Thread Mimi Zohar
On Fri, 2023-12-15 at 17:07 -0800, Tushar Sugandhi wrote: > If the new measurements are added to the IMA log while it is being > being copied to the kexec buffer during kexec 'execute', it can miss > copying those new measurements to the kexec buffer, and the buffer can go > out of sync with TPM

[PATCH v3 5/7] ima: suspend measurements during buffer copy at kexec execute

2023-12-15 Thread Tushar Sugandhi
If the new measurements are added to the IMA log while it is being being copied to the kexec buffer during kexec 'execute', it can miss copying those new measurements to the kexec buffer, and the buffer can go out of sync with TPM PCRs. This could result in breaking the integrity of the