Show patches with: Submitter = Eric Snowberg       |    State = Action Required       |   208 patches
« 1 2 3 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
[RFC,8/8] clavis: Introduce new LSM called clavis Clavis LSM - - - --- 2024-03-11 Eric Snowberg New
[RFC,7/8] clavis: Introduce a new key type called clavis_key_acl Clavis LSM - - - --- 2024-03-11 Eric Snowberg New
[RFC,6/8] keys: Add ability to track intended usage of the public key Clavis LSM - - - --- 2024-03-11 Eric Snowberg New
[RFC,5/8] keys: Add new verification type (VERIFYING_CLAVIS_SIGNATURE) Clavis LSM - - - --- 2024-03-11 Eric Snowberg New
[RFC,4/8] clavis: Prevent clavis boot param from changing during kexec Clavis LSM - - - --- 2024-03-11 Eric Snowberg New
[RFC,3/8] efi: Make clavis boot param persist across kexec Clavis LSM - - - --- 2024-03-11 Eric Snowberg New
[RFC,2/8] clavis: Introduce a new system keyring called clavis Clavis LSM - - - --- 2024-03-11 Eric Snowberg New
[RFC,1/8] certs: Introduce ability to link to a system key Clavis LSM - - - --- 2024-03-11 Eric Snowberg New
certs: Restrict blacklist updates to the secondary trusted keyring certs: Restrict blacklist updates to the secondary trusted keyring - - - --- 2023-09-08 Eric Snowberg New
[v2] certs: Reference revocation list for all keyrings [v2] certs: Reference revocation list for all keyrings - 2 - --- 2023-08-17 Eric Snowberg New
[v2,3/3] integrity: Remove EXPERIMENTAL from Kconfig Add digitalSignature enforcement keyring restrictions 1 1 - --- 2023-05-22 Eric Snowberg New
[v2,2/3] integrity: Enforce digitalSignature usage in the ima and evm keyrings Add digitalSignature enforcement keyring restrictions 1 - - --- 2023-05-22 Eric Snowberg New
[v2,1/3] KEYS: DigitalSignature link restriction Add digitalSignature enforcement keyring restrictions - 1 - --- 2023-05-22 Eric Snowberg New
[3/3] integrity: Remove EXPERIMENTAL from Kconfig Add digitalSignature enforcement keyring restrictions 1 1 - --- 2023-05-08 Eric Snowberg New
[2/3] integrity: Enforce digitalSignature usage in the ima and evm keyrings Add digitalSignature enforcement keyring restrictions 1 - - --- 2023-05-08 Eric Snowberg New
[1/3] KEYS: DigitalSignature link restriction Add digitalSignature enforcement keyring restrictions - 1 - --- 2023-05-08 Eric Snowberg New
[v6,6/6] integrity: machine keyring CA configuration Add CA enforcement keyring restrictions 1 - - --- 2023-03-22 Eric Snowberg New
[v6,5/6] KEYS: CA link restriction Add CA enforcement keyring restrictions - 1 - --- 2023-03-22 Eric Snowberg New
[v6,4/6] KEYS: X.509: Parse Key Usage Add CA enforcement keyring restrictions - 2 - --- 2023-03-22 Eric Snowberg New
[v6,3/6] KEYS: X.509: Parse Basic Constraints for CA Add CA enforcement keyring restrictions - 2 - --- 2023-03-22 Eric Snowberg New
[v6,2/6] KEYS: Add missing function documentation Add CA enforcement keyring restrictions - 3 - --- 2023-03-22 Eric Snowberg New
[v6,1/6] KEYS: Create static version of public_key_verify_signature Add CA enforcement keyring restrictions - 3 - --- 2023-03-22 Eric Snowberg New
[v5,6/6] integrity: machine keyring CA configuration Add CA enforcement keyring restrictions 1 - - --- 2023-03-02 Eric Snowberg New
[v5,5/6] KEYS: CA link restriction Add CA enforcement keyring restrictions - 1 - --- 2023-03-02 Eric Snowberg New
[v5,4/6] KEYS: X.509: Parse Key Usage Add CA enforcement keyring restrictions - 2 - --- 2023-03-02 Eric Snowberg New
[v5,3/6] KEYS: X.509: Parse Basic Constraints for CA Add CA enforcement keyring restrictions - 2 - --- 2023-03-02 Eric Snowberg New
[v5,2/6] KEYS: Add missing function documentation Add CA enforcement keyring restrictions - 4 - --- 2023-03-02 Eric Snowberg New
[v5,1/6] KEYS: Create static version of public_key_verify_signature Add CA enforcement keyring restrictions - 3 - --- 2023-03-02 Eric Snowberg New
[v4,6/6] integrity: machine keyring CA configuration Add CA enforcement keyring restrictions - - - --- 2023-02-07 Eric Snowberg New
[v4,5/6] KEYS: CA link restriction Add CA enforcement keyring restrictions - 1 - --- 2023-02-07 Eric Snowberg New
[v4,4/6] KEYS: X.509: Parse Key Usage Add CA enforcement keyring restrictions - 1 - --- 2023-02-07 Eric Snowberg New
[v4,3/6] KEYS: X.509: Parse Basic Constraints for CA Add CA enforcement keyring restrictions - 2 - --- 2023-02-07 Eric Snowberg New
[v4,2/6] KEYS: Add missing function documentation Add CA enforcement keyring restrictions - 3 - --- 2023-02-07 Eric Snowberg New
[v4,1/6] KEYS: Create static version of public_key_verify_signature Add CA enforcement keyring restrictions - 2 - --- 2023-02-07 Eric Snowberg New
certs: Reference revocation list for all keyrings certs: Reference revocation list for all keyrings - 2 - --- 2023-01-17 Eric Snowberg New
[v3,10/10] integrity: restrict INTEGRITY_KEYRING_MACHINE to restrict_link_by_ca Add CA enforcement keyring restrictions - - - --- 2022-12-14 Eric Snowberg New
[v3,09/10] KEYS: CA link restriction Add CA enforcement keyring restrictions - - - --- 2022-12-14 Eric Snowberg New
[v3,08/10] integrity: Use root of trust signature restriction Add CA enforcement keyring restrictions - - - --- 2022-12-14 Eric Snowberg New
[v3,07/10] KEYS: X.509: Flag Intermediate CA certs as endorsed Add CA enforcement keyring restrictions - - - --- 2022-12-14 Eric Snowberg New
[v3,06/10] KEYS: Introduce keyring restriction that validates ca trust Add CA enforcement keyring restrictions - - - --- 2022-12-14 Eric Snowberg New
[v3,05/10] KEYS: Introduce a CA endorsed flag Add CA enforcement keyring restrictions - - - --- 2022-12-14 Eric Snowberg New
[v3,04/10] KEYS: X.509: Parse Key Usage Add CA enforcement keyring restrictions - - - --- 2022-12-14 Eric Snowberg New
[v3,03/10] KEYS: X.509: Parse Basic Constraints for CA Add CA enforcement keyring restrictions - - - --- 2022-12-14 Eric Snowberg New
[v3,02/10] KEYS: Add missing function documentation Add CA enforcement keyring restrictions - 1 - --- 2022-12-14 Eric Snowberg New
[v3,01/10] KEYS: Create static version of public_key_verify_signature Add CA enforcement keyring restrictions - 2 - --- 2022-12-14 Eric Snowberg New
[v2,10/10] integrity: restrict INTEGRITY_KEYRING_MACHINE to restrict_link_by_ca Add CA enforcement keyring restrictions - - - --- 2022-12-07 Eric Snowberg New
[v2,09/10] KEYS: CA link restriction Add CA enforcement keyring restrictions - - - --- 2022-12-07 Eric Snowberg New
[v2,08/10] integrity: Use root of trust signature restriction Add CA enforcement keyring restrictions - - - --- 2022-12-07 Eric Snowberg New
[v2,07/10] KEYS: X.509: Flag Intermediate CA certs as endorsed Add CA enforcement keyring restrictions - - - --- 2022-12-07 Eric Snowberg New
[v2,06/10] KEYS: Introduce keyring restriction that validates ca trust Add CA enforcement keyring restrictions - - - --- 2022-12-07 Eric Snowberg New
[v2,05/10] KEYS: Introduce a CA endorsed flag Add CA enforcement keyring restrictions - - - --- 2022-12-07 Eric Snowberg New
[v2,04/10] KEYS: X.509: Parse Key Usage Add CA enforcement keyring restrictions - - - --- 2022-12-07 Eric Snowberg New
[v2,03/10] KEYS: X.509: Parse Basic Constraints for CA Add CA enforcement keyring restrictions - - - --- 2022-12-07 Eric Snowberg New
[v2,02/10] KEYS: Add missing function documentation Add CA enforcement keyring restrictions - 1 - --- 2022-12-07 Eric Snowberg New
[v2,01/10] KEYS: Create static version of public_key_verify_signature Add CA enforcement keyring restrictions - 2 - --- 2022-12-07 Eric Snowberg New
[7/7] integrity: Use root of trust signature restriction Add CA enforcement keyring restrictions - - - --- 2022-04-06 Eric Snowberg New
[6/7] KEYS: X.509: Flag Intermediate CA certs as built in Add CA enforcement keyring restrictions - - - --- 2022-04-06 Eric Snowberg New
[5/7] KEYS: Introduce sig restriction that validates root of trust Add CA enforcement keyring restrictions - - - --- 2022-04-06 Eric Snowberg New
[4/7] KEYS: Introduce a builtin root of trust key flag Add CA enforcement keyring restrictions - - - --- 2022-04-06 Eric Snowberg New
[3/7] KEYS: X.509: Parse Key Usage Add CA enforcement keyring restrictions - - - --- 2022-04-06 Eric Snowberg New
[2/7] KEYS: X.509: Parse Basic Constraints for CA Add CA enforcement keyring restrictions - - - --- 2022-04-06 Eric Snowberg New
[1/7] KEYS: Create static version of public_key_verify_signature Add CA enforcement keyring restrictions - 1 - --- 2022-04-06 Eric Snowberg New
[4/4] integrity: CA enforcement in machine keyring Add CA enforcement in the machine keyring - - - --- 2022-03-01 Eric Snowberg New
[3/4] KEYS: CA link restriction Add CA enforcement in the machine keyring - - - --- 2022-03-01 Eric Snowberg New
[2/4] X.509: Parse Basic Constraints for CA Add CA enforcement in the machine keyring - - - --- 2022-03-01 Eric Snowberg New
[1/4] KEYS: Create static version of public_key_verify_signature Add CA enforcement in the machine keyring - 1 - --- 2022-03-01 Eric Snowberg New
[v10,8/8] integrity: Only use machine keyring when uefi_check_trust_mok_keys is true Enroll kernel keys thru MOK - 1 - --- 2022-01-26 Eric Snowberg New
[v10,7/8] integrity: Trust MOK keys if MokListTrustedRT found Enroll kernel keys thru MOK - 1 - --- 2022-01-26 Eric Snowberg New
[v10,6/8] efi/mokvar: move up init order Enroll kernel keys thru MOK - 1 - --- 2022-01-26 Eric Snowberg New
[v10,5/8] KEYS: Introduce link restriction for machine keys Enroll kernel keys thru MOK - 1 1 --- 2022-01-26 Eric Snowberg New
[v10,4/8] KEYS: store reference to machine keyring Enroll kernel keys thru MOK - 1 1 --- 2022-01-26 Eric Snowberg New
[v10,3/8] integrity: add new keyring handler for mok keys Enroll kernel keys thru MOK - 2 1 --- 2022-01-26 Eric Snowberg New
[v10,2/8] integrity: Introduce a Linux keyring called machine Enroll kernel keys thru MOK - - 2 --- 2022-01-26 Eric Snowberg New
[v10,1/8] integrity: Fix warning about missing prototypes Enroll kernel keys thru MOK - 2 1 --- 2022-01-26 Eric Snowberg New
[v9,8/8] integrity: Only use machine keyring when uefi_check_trust_mok_keys is true Enroll kernel keys thru MOK - 1 - --- 2022-01-05 Eric Snowberg New
[v9,7/8] integrity: Trust MOK keys if MokListTrustedRT found Enroll kernel keys thru MOK - 1 - --- 2022-01-05 Eric Snowberg New
[v9,6/8] efi/mokvar: move up init order Enroll kernel keys thru MOK - 1 - --- 2022-01-05 Eric Snowberg New
[v9,5/8] KEYS: Introduce link restriction for machine keys Enroll kernel keys thru MOK - 1 - --- 2022-01-05 Eric Snowberg New
[v9,4/8] KEYS: store reference to machine keyring Enroll kernel keys thru MOK - 1 - --- 2022-01-05 Eric Snowberg New
[v9,3/8] integrity: add new keyring handler for mok keys Enroll kernel keys thru MOK - 2 - --- 2022-01-05 Eric Snowberg New
[v9,2/8] integrity: Introduce a Linux keyring called machine Enroll kernel keys thru MOK - - 1 --- 2022-01-05 Eric Snowberg New
[v9,1/8] integrity: Fix warning about missing prototypes Enroll kernel keys thru MOK - 2 - --- 2022-01-05 Eric Snowberg New
[v8,17/17] integrity: Only use machine keyring when uefi_check_trust_mok_keys is true Enroll kernel keys thru MOK - 1 - --- 2021-11-24 Eric Snowberg New
[v8,16/17] integrity: Trust MOK keys if MokListTrustedRT found Enroll kernel keys thru MOK - 1 - --- 2021-11-24 Eric Snowberg New
[v8,15/17] efi/mokvar: move up init order Enroll kernel keys thru MOK - 1 - --- 2021-11-24 Eric Snowberg New
[v8,14/17] KEYS: link machine trusted keys to secondary_trusted_keys Enroll kernel keys thru MOK - 1 - --- 2021-11-24 Eric Snowberg New
[v8,13/17] integrity: store reference to machine keyring Enroll kernel keys thru MOK - 1 - --- 2021-11-24 Eric Snowberg New
[v8,12/17] KEYS: integrity: change link restriction to trust the machine keyring Enroll kernel keys thru MOK - 1 - --- 2021-11-24 Eric Snowberg New
[v8,11/17] KEYS: Introduce link restriction for machine keys Enroll kernel keys thru MOK - 1 - --- 2021-11-24 Eric Snowberg New
[v8,10/17] KEYS: add a reference to machine keyring Enroll kernel keys thru MOK - 1 - --- 2021-11-24 Eric Snowberg New
[v8,09/17] KEYS: Rename get_builtin_and_secondary_restriction Enroll kernel keys thru MOK - 1 - --- 2021-11-24 Eric Snowberg New
[v8,08/17] integrity: add new keyring handler for mok keys Enroll kernel keys thru MOK - 1 - --- 2021-11-24 Eric Snowberg New
[v8,07/17] integrity: restrict INTEGRITY_KEYRING_MACHINE to restrict_link_by_ca Enroll kernel keys thru MOK - 1 - --- 2021-11-24 Eric Snowberg New
[v8,06/17] KEYS: CA link restriction Enroll kernel keys thru MOK - - - --- 2021-11-24 Eric Snowberg New
[v8,05/17] X.509: Parse Basic Constraints for CA Enroll kernel keys thru MOK - - - --- 2021-11-24 Eric Snowberg New
[v8,04/17] integrity: Do not allow machine keyring updates following init Enroll kernel keys thru MOK - 1 - --- 2021-11-24 Eric Snowberg New
[v8,03/17] integrity: Introduce a Linux keyring called machine Enroll kernel keys thru MOK - 2 - --- 2021-11-24 Eric Snowberg New
[v8,02/17] integrity: Fix warning about missing prototypes Enroll kernel keys thru MOK - 1 - --- 2021-11-24 Eric Snowberg New
[v8,01/17] KEYS: Create static version of public_key_verify_signature Enroll kernel keys thru MOK - 1 - --- 2021-11-24 Eric Snowberg New
[v7,17/17] integrity: Only use machine keyring when uefi_check_trust_mok_keys is true Enroll kernel keys thru MOK - - - --- 2021-11-16 Eric Snowberg New
« 1 2 3 »