Re: [PATCH v10 0/9] powerpc: Enabling IMA arch specific secure boot policies

From: Lakshmi Ramasubramanian
Date: Mon Dec 09 2019 - 15:27:01 EST


Hi Mimi,

On 10/30/2019 8:31 PM, Mimi Zohar wrote:

This patchset extends the previous version[1] by adding support for
checking against a blacklist of binary hashes.

The IMA subsystem supports custom, built-in, arch-specific policies to
define the files to be measured and appraised. These policies are honored
based on priority, where arch-specific policy is the highest and custom
is the lowest.

Has this change been signed off and merged for the next update of the kernel (v5.5)?

thanks,
-lakshmi