Re: [PATCH 2/3] integrity: Enforce digitalSignature usage in the ima and evm keyrings

From: Mimi Zohar
Date: Tue May 16 2023 - 21:18:53 EST


On Mon, 2023-05-08 at 18:07 -0400, Eric Snowberg wrote:
> After being vouched for by a system keyring, only allow keys into the .ima
> and .evm keyrings that have the digitalSignature usage field set.
>
> Link: https://lore.kernel.org/all/41dffdaeb7eb7840f7e38bc691fbda836635c9f9.camel@xxxxxxxxxxxxx
> Suggested-by: Mimi Zohar <zohar@xxxxxxxxxxxxx>
> Signed-off-by: Eric Snowberg <eric.snowberg@xxxxxxxxxx>

Acked-by: Mimi Zohar <zohar@xxxxxxxxxxxxx>