summaryrefslogtreecommitdiff
path: root/Documentation/lockstat.txt
diff options
context:
space:
mode:
authorMimi Zohar <zohar@linux.vnet.ibm.com>2014-05-11 00:05:23 -0400
committerBen Hutchings <ben@decadent.org.uk>2014-07-11 13:33:50 +0100
commit0d2b9938c49c716b35409aefee188e8c0b95d537 (patch)
tree5f52a2445762d498686b1b207e4b3c70641ef004 /Documentation/lockstat.txt
parent335a4d5ba599428c32e6bdf726cd7f20553220a9 (diff)
evm: prohibit userspace writing 'security.evm' HMAC value
commit 2fb1c9a4f2dbc2f0bd2431c7fa64d0b5483864e4 upstream. Calculating the 'security.evm' HMAC value requires access to the EVM encrypted key. Only the kernel should have access to it. This patch prevents userspace tools(eg. setfattr, cp --preserve=xattr) from setting/modifying the 'security.evm' HMAC value directly. Signed-off-by: Mimi Zohar <zohar@linux.vnet.ibm.com> Signed-off-by: Ben Hutchings <ben@decadent.org.uk>
Diffstat (limited to 'Documentation/lockstat.txt')
0 files changed, 0 insertions, 0 deletions