Re: [PATCH v6 0/4] Certificate insertion support for x86 bzImages

From: James Morris
Date: Thu May 03 2018 - 13:12:02 EST


On Wed, 2 May 2018, Mehmet Kayaalp wrote:

> These patches add support for modifying the reserved space for extra
> certificates in a compressed bzImage in x86. This allows separating the
> system keyring certificate from the kernel build process. After the kernel
> image is distributed, the insert-sys-cert script can be used to insert the
> certificate for x86.

Can you provide more explanation of how this is useful and who would use
it?

--
James Morris
<jmorris@xxxxxxxxx>