ima: enable system extra cert to enable adding an extra cert without needing custom kernels
This commit is contained in:
parent
92ebc5dd37
commit
4f983e9658
@ -1 +1 @@
|
|||||||
# CONFIG_SYSTEM_EXTRA_CERTIFICATE is not set
|
CONFIG_SYSTEM_EXTRA_CERTIFICATE=y
|
||||||
|
@ -0,0 +1 @@
|
|||||||
|
CONFIG_SYSTEM_EXTRA_CERTIFICATE_SIZE=4096
|
@ -6348,7 +6348,8 @@ CONFIG_SYSCTL=y
|
|||||||
# CONFIG_SYS_HYPERVISOR is not set
|
# CONFIG_SYS_HYPERVISOR is not set
|
||||||
CONFIG_SYSTEM_BLACKLIST_HASH_LIST=""
|
CONFIG_SYSTEM_BLACKLIST_HASH_LIST=""
|
||||||
CONFIG_SYSTEM_BLACKLIST_KEYRING=y
|
CONFIG_SYSTEM_BLACKLIST_KEYRING=y
|
||||||
# CONFIG_SYSTEM_EXTRA_CERTIFICATE is not set
|
CONFIG_SYSTEM_EXTRA_CERTIFICATE_SIZE=4096
|
||||||
|
CONFIG_SYSTEM_EXTRA_CERTIFICATE=y
|
||||||
# CONFIG_SYSTEMPORT is not set
|
# CONFIG_SYSTEMPORT is not set
|
||||||
CONFIG_SYSTEM_TRUSTED_KEYRING=y
|
CONFIG_SYSTEM_TRUSTED_KEYRING=y
|
||||||
CONFIG_SYSTEM_TRUSTED_KEYS=""
|
CONFIG_SYSTEM_TRUSTED_KEYS=""
|
||||||
|
@ -6326,7 +6326,8 @@ CONFIG_SYSCTL=y
|
|||||||
# CONFIG_SYS_HYPERVISOR is not set
|
# CONFIG_SYS_HYPERVISOR is not set
|
||||||
CONFIG_SYSTEM_BLACKLIST_HASH_LIST=""
|
CONFIG_SYSTEM_BLACKLIST_HASH_LIST=""
|
||||||
CONFIG_SYSTEM_BLACKLIST_KEYRING=y
|
CONFIG_SYSTEM_BLACKLIST_KEYRING=y
|
||||||
# CONFIG_SYSTEM_EXTRA_CERTIFICATE is not set
|
CONFIG_SYSTEM_EXTRA_CERTIFICATE_SIZE=4096
|
||||||
|
CONFIG_SYSTEM_EXTRA_CERTIFICATE=y
|
||||||
# CONFIG_SYSTEMPORT is not set
|
# CONFIG_SYSTEMPORT is not set
|
||||||
CONFIG_SYSTEM_TRUSTED_KEYRING=y
|
CONFIG_SYSTEM_TRUSTED_KEYRING=y
|
||||||
CONFIG_SYSTEM_TRUSTED_KEYS=""
|
CONFIG_SYSTEM_TRUSTED_KEYS=""
|
||||||
|
@ -6577,7 +6577,8 @@ CONFIG_SYSCTL=y
|
|||||||
# CONFIG_SYSFS_DEPRECATED is not set
|
# CONFIG_SYSFS_DEPRECATED is not set
|
||||||
CONFIG_SYSTEM_BLACKLIST_HASH_LIST=""
|
CONFIG_SYSTEM_BLACKLIST_HASH_LIST=""
|
||||||
CONFIG_SYSTEM_BLACKLIST_KEYRING=y
|
CONFIG_SYSTEM_BLACKLIST_KEYRING=y
|
||||||
# CONFIG_SYSTEM_EXTRA_CERTIFICATE is not set
|
CONFIG_SYSTEM_EXTRA_CERTIFICATE_SIZE=4096
|
||||||
|
CONFIG_SYSTEM_EXTRA_CERTIFICATE=y
|
||||||
# CONFIG_SYSTEMPORT is not set
|
# CONFIG_SYSTEMPORT is not set
|
||||||
CONFIG_SYSTEM_TRUSTED_KEYRING=y
|
CONFIG_SYSTEM_TRUSTED_KEYRING=y
|
||||||
CONFIG_SYSTEM_TRUSTED_KEYS=""
|
CONFIG_SYSTEM_TRUSTED_KEYS=""
|
||||||
|
@ -6556,7 +6556,8 @@ CONFIG_SYSCTL=y
|
|||||||
# CONFIG_SYSFS_DEPRECATED is not set
|
# CONFIG_SYSFS_DEPRECATED is not set
|
||||||
CONFIG_SYSTEM_BLACKLIST_HASH_LIST=""
|
CONFIG_SYSTEM_BLACKLIST_HASH_LIST=""
|
||||||
CONFIG_SYSTEM_BLACKLIST_KEYRING=y
|
CONFIG_SYSTEM_BLACKLIST_KEYRING=y
|
||||||
# CONFIG_SYSTEM_EXTRA_CERTIFICATE is not set
|
CONFIG_SYSTEM_EXTRA_CERTIFICATE_SIZE=4096
|
||||||
|
CONFIG_SYSTEM_EXTRA_CERTIFICATE=y
|
||||||
# CONFIG_SYSTEMPORT is not set
|
# CONFIG_SYSTEMPORT is not set
|
||||||
CONFIG_SYSTEM_TRUSTED_KEYRING=y
|
CONFIG_SYSTEM_TRUSTED_KEYRING=y
|
||||||
CONFIG_SYSTEM_TRUSTED_KEYS=""
|
CONFIG_SYSTEM_TRUSTED_KEYS=""
|
||||||
|
@ -6329,7 +6329,8 @@ CONFIG_SYSCTL=y
|
|||||||
CONFIG_SYS_SUPPORTS_HUGETLBFS=y
|
CONFIG_SYS_SUPPORTS_HUGETLBFS=y
|
||||||
CONFIG_SYSTEM_BLACKLIST_HASH_LIST=""
|
CONFIG_SYSTEM_BLACKLIST_HASH_LIST=""
|
||||||
CONFIG_SYSTEM_BLACKLIST_KEYRING=y
|
CONFIG_SYSTEM_BLACKLIST_KEYRING=y
|
||||||
# CONFIG_SYSTEM_EXTRA_CERTIFICATE is not set
|
CONFIG_SYSTEM_EXTRA_CERTIFICATE_SIZE=4096
|
||||||
|
CONFIG_SYSTEM_EXTRA_CERTIFICATE=y
|
||||||
# CONFIG_SYSTEMPORT is not set
|
# CONFIG_SYSTEMPORT is not set
|
||||||
CONFIG_SYSTEM_TRUSTED_KEYRING=y
|
CONFIG_SYSTEM_TRUSTED_KEYRING=y
|
||||||
CONFIG_SYSTEM_TRUSTED_KEYS=""
|
CONFIG_SYSTEM_TRUSTED_KEYS=""
|
||||||
|
@ -6308,7 +6308,8 @@ CONFIG_SYSCTL=y
|
|||||||
CONFIG_SYS_SUPPORTS_HUGETLBFS=y
|
CONFIG_SYS_SUPPORTS_HUGETLBFS=y
|
||||||
CONFIG_SYSTEM_BLACKLIST_HASH_LIST=""
|
CONFIG_SYSTEM_BLACKLIST_HASH_LIST=""
|
||||||
CONFIG_SYSTEM_BLACKLIST_KEYRING=y
|
CONFIG_SYSTEM_BLACKLIST_KEYRING=y
|
||||||
# CONFIG_SYSTEM_EXTRA_CERTIFICATE is not set
|
CONFIG_SYSTEM_EXTRA_CERTIFICATE_SIZE=4096
|
||||||
|
CONFIG_SYSTEM_EXTRA_CERTIFICATE=y
|
||||||
# CONFIG_SYSTEMPORT is not set
|
# CONFIG_SYSTEMPORT is not set
|
||||||
CONFIG_SYSTEM_TRUSTED_KEYRING=y
|
CONFIG_SYSTEM_TRUSTED_KEYRING=y
|
||||||
CONFIG_SYSTEM_TRUSTED_KEYS=""
|
CONFIG_SYSTEM_TRUSTED_KEYS=""
|
||||||
|
@ -5722,7 +5722,8 @@ CONFIG_SYSCTL=y
|
|||||||
CONFIG_SYSTEM76_ACPI=m
|
CONFIG_SYSTEM76_ACPI=m
|
||||||
CONFIG_SYSTEM_BLACKLIST_HASH_LIST=""
|
CONFIG_SYSTEM_BLACKLIST_HASH_LIST=""
|
||||||
CONFIG_SYSTEM_BLACKLIST_KEYRING=y
|
CONFIG_SYSTEM_BLACKLIST_KEYRING=y
|
||||||
# CONFIG_SYSTEM_EXTRA_CERTIFICATE is not set
|
CONFIG_SYSTEM_EXTRA_CERTIFICATE_SIZE=4096
|
||||||
|
CONFIG_SYSTEM_EXTRA_CERTIFICATE=y
|
||||||
# CONFIG_SYSTEMPORT is not set
|
# CONFIG_SYSTEMPORT is not set
|
||||||
CONFIG_SYSTEM_TRUSTED_KEYRING=y
|
CONFIG_SYSTEM_TRUSTED_KEYRING=y
|
||||||
CONFIG_SYSTEM_TRUSTED_KEYS=""
|
CONFIG_SYSTEM_TRUSTED_KEYS=""
|
||||||
|
@ -5701,7 +5701,8 @@ CONFIG_SYSCTL=y
|
|||||||
CONFIG_SYSTEM76_ACPI=m
|
CONFIG_SYSTEM76_ACPI=m
|
||||||
CONFIG_SYSTEM_BLACKLIST_HASH_LIST=""
|
CONFIG_SYSTEM_BLACKLIST_HASH_LIST=""
|
||||||
CONFIG_SYSTEM_BLACKLIST_KEYRING=y
|
CONFIG_SYSTEM_BLACKLIST_KEYRING=y
|
||||||
# CONFIG_SYSTEM_EXTRA_CERTIFICATE is not set
|
CONFIG_SYSTEM_EXTRA_CERTIFICATE_SIZE=4096
|
||||||
|
CONFIG_SYSTEM_EXTRA_CERTIFICATE=y
|
||||||
# CONFIG_SYSTEMPORT is not set
|
# CONFIG_SYSTEMPORT is not set
|
||||||
CONFIG_SYSTEM_TRUSTED_KEYRING=y
|
CONFIG_SYSTEM_TRUSTED_KEYRING=y
|
||||||
CONFIG_SYSTEM_TRUSTED_KEYS=""
|
CONFIG_SYSTEM_TRUSTED_KEYS=""
|
||||||
|
@ -5340,7 +5340,8 @@ CONFIG_SYSCTL=y
|
|||||||
# CONFIG_SYSFS_DEPRECATED is not set
|
# CONFIG_SYSFS_DEPRECATED is not set
|
||||||
CONFIG_SYSTEM_BLACKLIST_HASH_LIST=""
|
CONFIG_SYSTEM_BLACKLIST_HASH_LIST=""
|
||||||
CONFIG_SYSTEM_BLACKLIST_KEYRING=y
|
CONFIG_SYSTEM_BLACKLIST_KEYRING=y
|
||||||
# CONFIG_SYSTEM_EXTRA_CERTIFICATE is not set
|
CONFIG_SYSTEM_EXTRA_CERTIFICATE_SIZE=4096
|
||||||
|
CONFIG_SYSTEM_EXTRA_CERTIFICATE=y
|
||||||
# CONFIG_SYSTEMPORT is not set
|
# CONFIG_SYSTEMPORT is not set
|
||||||
CONFIG_SYSTEM_TRUSTED_KEYRING=y
|
CONFIG_SYSTEM_TRUSTED_KEYRING=y
|
||||||
CONFIG_SYSTEM_TRUSTED_KEYS=""
|
CONFIG_SYSTEM_TRUSTED_KEYS=""
|
||||||
|
@ -5317,7 +5317,8 @@ CONFIG_SYSCTL=y
|
|||||||
# CONFIG_SYSFS_DEPRECATED is not set
|
# CONFIG_SYSFS_DEPRECATED is not set
|
||||||
CONFIG_SYSTEM_BLACKLIST_HASH_LIST=""
|
CONFIG_SYSTEM_BLACKLIST_HASH_LIST=""
|
||||||
CONFIG_SYSTEM_BLACKLIST_KEYRING=y
|
CONFIG_SYSTEM_BLACKLIST_KEYRING=y
|
||||||
# CONFIG_SYSTEM_EXTRA_CERTIFICATE is not set
|
CONFIG_SYSTEM_EXTRA_CERTIFICATE_SIZE=4096
|
||||||
|
CONFIG_SYSTEM_EXTRA_CERTIFICATE=y
|
||||||
# CONFIG_SYSTEMPORT is not set
|
# CONFIG_SYSTEMPORT is not set
|
||||||
CONFIG_SYSTEM_TRUSTED_KEYRING=y
|
CONFIG_SYSTEM_TRUSTED_KEYRING=y
|
||||||
CONFIG_SYSTEM_TRUSTED_KEYS=""
|
CONFIG_SYSTEM_TRUSTED_KEYS=""
|
||||||
|
@ -5275,7 +5275,8 @@ CONFIG_SYSCTL=y
|
|||||||
# CONFIG_SYSFS_DEPRECATED is not set
|
# CONFIG_SYSFS_DEPRECATED is not set
|
||||||
CONFIG_SYSTEM_BLACKLIST_HASH_LIST=""
|
CONFIG_SYSTEM_BLACKLIST_HASH_LIST=""
|
||||||
CONFIG_SYSTEM_BLACKLIST_KEYRING=y
|
CONFIG_SYSTEM_BLACKLIST_KEYRING=y
|
||||||
# CONFIG_SYSTEM_EXTRA_CERTIFICATE is not set
|
CONFIG_SYSTEM_EXTRA_CERTIFICATE_SIZE=4096
|
||||||
|
CONFIG_SYSTEM_EXTRA_CERTIFICATE=y
|
||||||
# CONFIG_SYSTEMPORT is not set
|
# CONFIG_SYSTEMPORT is not set
|
||||||
CONFIG_SYSTEM_TRUSTED_KEYRING=y
|
CONFIG_SYSTEM_TRUSTED_KEYRING=y
|
||||||
CONFIG_SYSTEM_TRUSTED_KEYS=""
|
CONFIG_SYSTEM_TRUSTED_KEYS=""
|
||||||
|
@ -5252,7 +5252,8 @@ CONFIG_SYSCTL=y
|
|||||||
# CONFIG_SYSFS_DEPRECATED is not set
|
# CONFIG_SYSFS_DEPRECATED is not set
|
||||||
CONFIG_SYSTEM_BLACKLIST_HASH_LIST=""
|
CONFIG_SYSTEM_BLACKLIST_HASH_LIST=""
|
||||||
CONFIG_SYSTEM_BLACKLIST_KEYRING=y
|
CONFIG_SYSTEM_BLACKLIST_KEYRING=y
|
||||||
# CONFIG_SYSTEM_EXTRA_CERTIFICATE is not set
|
CONFIG_SYSTEM_EXTRA_CERTIFICATE_SIZE=4096
|
||||||
|
CONFIG_SYSTEM_EXTRA_CERTIFICATE=y
|
||||||
# CONFIG_SYSTEMPORT is not set
|
# CONFIG_SYSTEMPORT is not set
|
||||||
CONFIG_SYSTEM_TRUSTED_KEYRING=y
|
CONFIG_SYSTEM_TRUSTED_KEYRING=y
|
||||||
CONFIG_SYSTEM_TRUSTED_KEYS=""
|
CONFIG_SYSTEM_TRUSTED_KEYS=""
|
||||||
|
@ -5776,7 +5776,8 @@ CONFIG_SYSCTL=y
|
|||||||
CONFIG_SYSTEM76_ACPI=m
|
CONFIG_SYSTEM76_ACPI=m
|
||||||
CONFIG_SYSTEM_BLACKLIST_HASH_LIST=""
|
CONFIG_SYSTEM_BLACKLIST_HASH_LIST=""
|
||||||
CONFIG_SYSTEM_BLACKLIST_KEYRING=y
|
CONFIG_SYSTEM_BLACKLIST_KEYRING=y
|
||||||
# CONFIG_SYSTEM_EXTRA_CERTIFICATE is not set
|
CONFIG_SYSTEM_EXTRA_CERTIFICATE_SIZE=4096
|
||||||
|
CONFIG_SYSTEM_EXTRA_CERTIFICATE=y
|
||||||
# CONFIG_SYSTEMPORT is not set
|
# CONFIG_SYSTEMPORT is not set
|
||||||
CONFIG_SYSTEM_TRUSTED_KEYRING=y
|
CONFIG_SYSTEM_TRUSTED_KEYRING=y
|
||||||
CONFIG_SYSTEM_TRUSTED_KEYS=""
|
CONFIG_SYSTEM_TRUSTED_KEYS=""
|
||||||
|
@ -5755,7 +5755,8 @@ CONFIG_SYSCTL=y
|
|||||||
CONFIG_SYSTEM76_ACPI=m
|
CONFIG_SYSTEM76_ACPI=m
|
||||||
CONFIG_SYSTEM_BLACKLIST_HASH_LIST=""
|
CONFIG_SYSTEM_BLACKLIST_HASH_LIST=""
|
||||||
CONFIG_SYSTEM_BLACKLIST_KEYRING=y
|
CONFIG_SYSTEM_BLACKLIST_KEYRING=y
|
||||||
# CONFIG_SYSTEM_EXTRA_CERTIFICATE is not set
|
CONFIG_SYSTEM_EXTRA_CERTIFICATE_SIZE=4096
|
||||||
|
CONFIG_SYSTEM_EXTRA_CERTIFICATE=y
|
||||||
# CONFIG_SYSTEMPORT is not set
|
# CONFIG_SYSTEMPORT is not set
|
||||||
CONFIG_SYSTEM_TRUSTED_KEYRING=y
|
CONFIG_SYSTEM_TRUSTED_KEYRING=y
|
||||||
CONFIG_SYSTEM_TRUSTED_KEYS=""
|
CONFIG_SYSTEM_TRUSTED_KEYS=""
|
||||||
|
Loading…
Reference in New Issue
Block a user