Show patches with: Submitter = Stefan Berger       |    State = Action Required       |    Archived = No       |   65 patches
Patch Series A/R/T S/W/F Date Submitter Delegate State
tpm: ibmvtpm: Call tpm2_sessions_init() to initialize session support tpm: ibmvtpm: Call tpm2_sessions_init() to initialize session support - - - --- 2024-06-17 Stefan Berger New
[ima-evm-utils,2/2] tests: Use EVMCTL_ENGINE to set engine or provider for test case Fix issue with tests and provider on Ubuntu 24.04 - - - --- 2024-05-14 Stefan Berger New
[ima-evm-utils,1/2] evmctl: Replace OSS_PROVIDER_load with OSSL_PROVIDER_try_load (Ubuntu) Fix issue with tests and provider on Ubuntu 24.04 - - - --- 2024-05-14 Stefan Berger New
[ima-evm-utils] First try to get keyid from cert then fall back to calculating [ima-evm-utils] First try to get keyid from cert then fall back to calculating - - - --- 2024-04-29 Stefan Berger New
[RFC,v2,2/2] ima: Fix detection of read/write violations on stacked filesystems ima: Fix detection of read/write violations on stacked filesystems - - - --- 2024-04-22 Stefan Berger New
[RFC,v2,1/2] ovl: Define D_REAL_FILEDATA for d_real to return dentry with data ima: Fix detection of read/write violations on stacked filesystems - - - --- 2024-04-22 Stefan Berger New
[RFC,2/2] ima: Fix detection of read/write violations on stacked filesystems ima: Fix detection of read/write violations on stacked filesystems - - - --- 2024-04-12 Stefan Berger New
[RFC,1/2] ovl: Define D_REAL_FILEDATA for d_real to return dentry with data ima: Fix detection of read/write violations on stacked filesystems - - - --- 2024-04-12 Stefan Berger New
ima: Fix use-after-free on a dentry's dname.name ima: Fix use-after-free on a dentry's dname.name - - - --- 2024-03-22 Stefan Berger New
[RFC,v2,3/3] tpm: of: If available use linux,sml-log to get the log and its size Preserve TPM log across kexec - - - --- 2024-03-11 Stefan Berger New
[RFC,v2,2/3] dt-bindings: tpm: Add linux,sml-log to ibm,vtpm.yaml Preserve TPM log across kexec - - - --- 2024-03-11 Stefan Berger New
[RFC,v2,1/3] powerpc/prom_init: Replace linux,sml-base/sml-size with linux,sml-log Preserve TPM log across kexec - - - --- 2024-03-11 Stefan Berger New
[2/2] tpm: of: If available Use linux,sml-log to get the log and its size Preserve TPM log across kexec - - - --- 2024-03-06 Stefan Berger New
[1/2] powerpc/prom_init: Replace linux,sml-base/sml-size with linux,sml-log Preserve TPM log across kexec - - - --- 2024-03-06 Stefan Berger New
[ima-evm-utils] Add missing newline to error message [ima-evm-utils] Add missing newline to error message - - - --- 2024-03-01 Stefan Berger New
[v4,ima-evm-utils,7/7] ci: Install pkcs11-provider where available Implement imaevm_signhash and add provider support - - - --- 2024-02-28 Stefan Berger New
[v4,ima-evm-utils,6/7] tests: Add pkcs11 test using provider Implement imaevm_signhash and add provider support - - - --- 2024-02-28 Stefan Berger New
[v4,ima-evm-utils,5/7] Add support for OpenSSL provider to the library and evmctl Implement imaevm_signhash and add provider support - - - --- 2024-02-28 Stefan Berger New
[v4,ima-evm-utils,4/7] evmctl: Replace deprecated sign_hash with imaevm_signhash Implement imaevm_signhash and add provider support - - - --- 2024-02-28 Stefan Berger New
[v4,ima-evm-utils,3/7] Implement imaevm_signhash library function and deprecate sign_hash Implement imaevm_signhash and add provider support - - - --- 2024-02-28 Stefan Berger New
[v4,ima-evm-utils,2/7] headers: Remove usage of CONFIG_IMA_EVM_ENGINE from public header Implement imaevm_signhash and add provider support - - - --- 2024-02-28 Stefan Berger New
[v4,ima-evm-utils,1/7] tests: Skip pkcs11 test if no engine support in evmctl Implement imaevm_signhash and add provider support - - - --- 2024-02-28 Stefan Berger New
[v3,ima-evm-utils,7/7] ci: Install pkcs11-provider where available Deprecate sign_hash and add provider support - - - --- 2024-02-26 Stefan Berger New
[v3,ima-evm-utils,6/7] tests: Add pkcs11 test using provider Deprecate sign_hash and add provider support - - - --- 2024-02-26 Stefan Berger New
[v3,ima-evm-utils,5/7] Add support for OpenSSL provider to the library and evmctl Deprecate sign_hash and add provider support - - - --- 2024-02-26 Stefan Berger New
[v3,ima-evm-utils,4/7] evmctl: Replace deprecated sign_hash with imaevm_signhash Deprecate sign_hash and add provider support - - - --- 2024-02-26 Stefan Berger New
[v3,ima-evm-utils,3/7] Pass ENGINE and keyid through to function using them Deprecate sign_hash and add provider support - - - --- 2024-02-26 Stefan Berger New
[v3,ima-evm-utils,2/7] headers: Remove usage of CONFIG_IMA_EVM_ENGINE from public header Deprecate sign_hash and add provider support - - - --- 2024-02-26 Stefan Berger New
[v3,ima-evm-utils,1/7] tests: Skip pkcs11 test if no engine support in evmctl Deprecate sign_hash and add provider support - - - --- 2024-02-26 Stefan Berger New
[v3,10/10] evm: Rename is_unsupported_fs to is_unsupported_hmac_fs evm: Support signatures on stacked filesystem - - - --- 2024-02-23 Stefan Berger New
[v3,09/10] fs: Rename SB_I_EVM_UNSUPPORTED to SB_I_EVM_HMAC_UNSUPPORTED evm: Support signatures on stacked filesystem 1 - - --- 2024-02-23 Stefan Berger New
[v3,08/10] evm: Enforce signatures on unsupported filesystem for EVM_INIT_X509 evm: Support signatures on stacked filesystem - - - --- 2024-02-23 Stefan Berger New
[v3,07/10] ima: re-evaluate file integrity on file metadata change evm: Support signatures on stacked filesystem - - - --- 2024-02-23 Stefan Berger New
[v3,06/10] evm: Store and detect metadata inode attributes changes evm: Support signatures on stacked filesystem - - - --- 2024-02-23 Stefan Berger New
[v3,05/10] ima: Move file-change detection variables into new structure evm: Support signatures on stacked filesystem - - - --- 2024-02-23 Stefan Berger New
[v3,04/10] evm: Use the metadata inode to calculate metadata hash evm: Support signatures on stacked filesystem 1 - - --- 2024-02-23 Stefan Berger New
[v3,03/10] evm: Implement per signature type decision in security_inode_copy_up_xattr evm: Support signatures on stacked filesystem - - - --- 2024-02-23 Stefan Berger New
[v3,02/10] security: allow finer granularity in permitting copy-up of security xattrs evm: Support signatures on stacked filesystem 1 - - --- 2024-02-23 Stefan Berger New
[v3,01/10] ima: Rename backing_inode to real_inode evm: Support signatures on stacked filesystem 1 - - --- 2024-02-23 Stefan Berger New
[v2,ima-evm-utils,6/6] ci: Install pkcs11-provider where available Deprecate sign_hash and add provider support - - - --- 2024-02-23 Stefan Berger New
[v2,ima-evm-utils,5/6] tests: Add pkcs11 test using provider Deprecate sign_hash and add provider support - - - --- 2024-02-23 Stefan Berger New
[v2,ima-evm-utils,4/6] Add support for OpenSSL provider to the library and evmctl Deprecate sign_hash and add provider support - - - --- 2024-02-23 Stefan Berger New
[v2,ima-evm-utils,3/6] evmctl: Replace deprecated sign_hash with imaevm_signhash Deprecate sign_hash and add provider support - - - --- 2024-02-23 Stefan Berger New
[v2,ima-evm-utils,2/6] Pass ENGINE and keyid through to function using them Deprecate sign_hash and add provider support - - - --- 2024-02-23 Stefan Berger New
[v2,ima-evm-utils,1/6] headers: Remove usage of CONFIG_IMA_EVM_ENGINE from public header Deprecate sign_hash and add provider support - - - --- 2024-02-23 Stefan Berger New
[v2,9/9] ima: Record i_version of real_inode for change detection evm: Support signatures on stacked filesystem - - - --- 2024-02-05 Stefan Berger New
[v2,8/9] evm: Rename is_unsupported_fs to is_unsupported_hmac_fs evm: Support signatures on stacked filesystem - - - --- 2024-02-05 Stefan Berger New
[v2,7/9] fs: Rename SB_I_EVM_UNSUPPORTED to SB_I_EVM_HMAC_UNSUPPORTED evm: Support signatures on stacked filesystem 1 - - --- 2024-02-05 Stefan Berger New
[v2,6/9] evm: Enforce signatures on unsupported filesystem for EVM_INIT_X509 evm: Support signatures on stacked filesystem - - - --- 2024-02-05 Stefan Berger New
[v2,5/9] evm: Use the inode holding the metadata to calculate metadata hash evm: Support signatures on stacked filesystem 1 - - --- 2024-02-05 Stefan Berger New
[v2,4/9] ima: Reset EVM status upon detecting changes to the real file evm: Support signatures on stacked filesystem - - - --- 2024-02-05 Stefan Berger New
[v2,3/9] evm: Implement per signature type decision in security_inode_copy_up_xattr evm: Support signatures on stacked filesystem - - - --- 2024-02-05 Stefan Berger New
[v2,2/9] security: allow finer granularity in permitting copy-up of security xattrs evm: Support signatures on stacked filesystem 2 - - --- 2024-02-05 Stefan Berger New
[v2,1/9] ima: Rename backing_inode to real_inode evm: Support signatures on stacked filesystem 1 - - --- 2024-02-05 Stefan Berger New
[v1,ima-evm-utils,6/6] ci: Install pkcs11-provider where available Deprecate sign_hash and add provider support - - - --- 2024-02-05 Stefan Berger New
[v1,ima-evm-utils,5/6] tests: Add pkcs11 test using provider Deprecate sign_hash and add provider support - - - --- 2024-02-05 Stefan Berger New
[v1,ima-evm-utils,4/6] Add support for OpenSSL provider to the library and evmctl Deprecate sign_hash and add provider support - - - --- 2024-02-05 Stefan Berger New
[v1,ima-evm-utils,3/6] evmctl: Replace deprecated sign_hash with imaevm_signhash Deprecate sign_hash and add provider support - - - --- 2024-02-05 Stefan Berger New
[v1,ima-evm-utils,2/6] Pass ENGINE and keyid through to function using them Deprecate sign_hash and add provider support - - - --- 2024-02-05 Stefan Berger New
[v1,ima-evm-utils,1/6] headers: Remove usage of CONFIG_IMA_EVM_ENGINE from public header Deprecate sign_hash and add provider support - - - --- 2024-02-05 Stefan Berger New
[5/5] evm: Enforce signatures on unsupported filesystem for EVM_INIT_X509 evm: Support signatures on stacked filesystem - - - --- 2024-01-30 Stefan Berger New
[4/5] evm: Use the real inode's metadata to calculate metadata hash evm: Support signatures on stacked filesystem - - - --- 2024-01-30 Stefan Berger New
[3/5] ima: Reset EVM status upon detecting changes to overlay backing file evm: Support signatures on stacked filesystem - - - --- 2024-01-30 Stefan Berger New
[2/5] evm: Implement per signature type decision in security_inode_copy_up_xattr evm: Support signatures on stacked filesystem - - - --- 2024-01-30 Stefan Berger New
[1/5] security: allow finer granularity in permitting copy-up of security xattrs evm: Support signatures on stacked filesystem - - - --- 2024-01-30 Stefan Berger New