linux/security/integrity/platform_certs
Coiby Xu 31a6a07eef integrity: Make arch_ima_get_secureboot integrity-wide
EVM and other LSMs need the ability to query the secure boot status of
the system, without directly calling the IMA arch_ima_get_secureboot
function. Refactor the secure boot status check into a general function
named arch_get_secureboot.

Reported-and-suggested-by: Mimi Zohar <zohar@linux.ibm.com>
Suggested-by: Roberto Sassu <roberto.sassu@huawei.com>
Signed-off-by: Coiby Xu <coxu@redhat.com>
Acked-by: Ard Biesheuvel <ardb@kernel.org>
Signed-off-by: Mimi Zohar <zohar@linux.ibm.com>
2026-03-05 11:10:08 -05:00
..
efi_parser.c efi: Don't use knowledge about efi_guid_t internals 2021-08-27 16:01:27 +02:00
keyring_handler.c integrity: PowerVM support for loading third party code signing keys 2023-08-17 20:12:35 +00:00
keyring_handler.h integrity: PowerVM support for loading third party code signing keys 2023-08-17 20:12:35 +00:00
load_ipl_s390.c s390/ipl: fix virtual vs physical address confusion 2023-08-18 15:08:12 +02:00
load_powerpc.c integrity/platform_certs: Allow loading of keys in the static key management mode 2025-07-09 09:16:18 +05:30
load_uefi.c integrity: Make arch_ima_get_secureboot integrity-wide 2026-03-05 11:10:08 -05:00
machine_keyring.c integrity: check whether imputed trust is enabled 2023-08-17 20:12:35 +00:00
platform_keyring.c Revert "Merge tag 'keys-acl-20190703' of git://git.kernel.org/pub/scm/linux/kernel/git/dhowells/linux-fs" 2019-07-10 18:43:43 -07:00