Jeremy Cline 4b5e4234be Rebase the kernel lockdown patch set
Use the latest version of the kernel lockdown patch set. This includes a
few configuration renames:

CONFIG_KEXEC_VERIFY_SIG became CONFIG_KEXEC_SIG and
CONFIG_KEXEC_SIG_FORCE was added. CONFIG_KEXEC_SIG_FORCE=n because the
"kexec_file: Restrict at runtime if the kernel is locked down" patch
enforces the signature requirement when the kernel is locked down.

CONFIG_LOCK_DOWN_MANDATORY got renamed to CONFIG_LOCK_DOWN_KERNEL_FORCE
and remains false as LOCK_DOWN_IN_EFI_SECURE_BOOT covers enabling it for
EFI Secure Boot users.

Finally, the SysRq patches got dropped for the present.
2019-04-15 12:15:16 -04:00
..
2019-03-26 14:31:32 +00:00
2019-03-18 14:46:16 +00:00
2019-04-15 12:15:16 -04:00
2019-03-07 20:30:13 +00:00
2019-03-25 14:51:10 +00:00
2019-03-25 14:51:10 +00:00
2019-03-25 14:51:10 +00:00
2019-04-01 15:40:43 +00:00
2019-04-01 15:40:43 +00:00
2019-03-18 14:46:16 +00:00
2019-03-18 14:46:16 +00:00
2019-03-11 17:30:38 +00:00
2019-03-18 14:46:16 +00:00
2019-03-06 17:15:13 +00:00
2019-03-15 14:48:09 +00:00
2019-03-13 17:00:47 -07:00
2019-03-18 00:48:44 +00:00
2019-03-07 20:30:13 +00:00
2019-01-18 09:13:22 -08:00
2019-03-08 16:38:03 +00:00
2019-03-07 20:30:13 +00:00
2019-03-12 15:02:18 +00:00
2019-03-06 17:15:13 +00:00
2019-03-25 14:51:10 +00:00
2019-03-25 14:51:10 +00:00
2019-01-07 07:37:34 -08:00
2019-03-07 20:30:13 +00:00
2019-01-07 07:37:34 -08:00
2019-03-05 16:28:29 +00:00
2019-03-07 20:30:13 +00:00
2019-03-18 00:48:44 +00:00
2019-03-07 20:30:13 +00:00