summaryrefslogtreecommitdiffstats
path: root/certs
AgeCommit message (Expand)AuthorLines
2022-01-08certs: remove misleading comments about GCC PRMasahiro Yamada-2/+0
2022-01-08certs: refactor file cleaningMasahiro Yamada-4/+5
2022-01-08certs: remove unneeded -I$(srctree) option for system_certificates.oMasahiro Yamada-3/+0
2022-01-08certs: unify duplicated cmd_extract_certs and improve the logMasahiro Yamada-6/+3
2022-01-08certs: use $< and $@ to simplify the key generation ruleMasahiro Yamada-3/+2
2021-12-11certs: use if_changed to re-generate the key when the key type is changedMasahiro Yamada-24/+6
2021-12-11certs: use 'cmd' to hide openssl output in silent builds more simplyMasahiro Yamada-6/+6
2021-12-11certs: remove noisy messages while generating the signing keyMasahiro Yamada-11/+0
2021-12-11certs: check-in the default x509 config fileMasahiro Yamada-18/+23
2021-12-11certs: remove meaningless $(error ...) in certs/MakefileMasahiro Yamada-3/+0
2021-12-11certs: move the 'depends on' to the choice of module signing keysMasahiro Yamada-3/+1
2021-08-23certs: Add support for using elliptic curve keys for signing modulesStefan Berger-0/+39
2021-08-23certs: Trigger creation of RSA module signing key if it's not an RSA keyStefan Berger-0/+8
2021-05-08Merge tag 'kbuild-v5.13-2' of git://git.kernel.org/pub/scm/linux/kernel/git/m...Linus Torvalds-2/+2
2021-05-01Merge tag 'integrity-v5.13' of git://git.kernel.org/pub/scm/linux/kernel/git/...Linus Torvalds-4/+47
2021-05-02.gitignore: prefix local generated files with a slashMasahiro Yamada-2/+2
2021-04-26ima: ensure IMA_APPRAISE_MODSIG has necessary dependenciesNayna Jain-2/+5
2021-04-26certs: add 'x509_revocation_list' to gitignoreLinus Torvalds-0/+1
2021-04-09ima: enable loading of build time generated key on .ima keyringNayna Jain-11/+52
2021-04-09ima: enable signing of modules with build time generated keyNayna Jain-1/+9
2021-03-11certs: Add ability to preload revocation certsEric Snowberg-2/+67
2021-03-11certs: Move load_system_certificate_list to a common functionEric Snowberg-47/+70
2021-03-11certs: Add EFI_CERT_X509_GUID support for dbx entriesEric Snowberg-0/+60
2021-01-21certs: Replace K{U,G}IDT_INIT() with GLOBAL_ROOT_{U,G}IDMickaël Salaün-4/+5
2021-01-21certs: Fix blacklist flag type confusionDavid Howells-1/+1
2021-01-21certs: Fix blacklisted hexadecimal hash string checkMickaël Salaün-1/+1
2021-01-21certs/blacklist: fix kernel doc interface issueAlex Shi-1/+1
2020-03-25.gitignore: add SPDX License IdentifierMasahiro Yamada-0/+1
2020-03-25.gitignore: remove too obvious commentsMasahiro Yamada-3/+0
2019-11-12certs: Add wrapper function to check blacklisted binary hashNayna Jain-0/+9
2019-08-05PKCS#7: Refactor verify_pkcs7_signature()Thiago Jung Bauermann-16/+45
2019-07-10Revert "Merge tag 'keys-acl-20190703' of git://git.kernel.org/pub/scm/linux/k...Linus Torvalds-5/+14
2019-07-08Merge tag 'keys-acl-20190703' of git://git.kernel.org/pub/scm/linux/kernel/gi...Linus Torvalds-14/+5
2019-07-08Merge tag 'keys-namespace-20190627' of git://git.kernel.org/pub/scm/linux/ker...Linus Torvalds-1/+1
2019-06-27keys: Replace uid/gid/perm permissions checking with an ACLDavid Howells-14/+5
2019-06-26keys: Add a 'recurse' flag for keyring searchesDavid Howells-1/+1
2019-05-24treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 36Thomas Gleixner-10/+2
2019-02-04kexec, KEYS: Make use of platform keyring for signature verifyKairui Song-1/+12
2019-02-04integrity, KEYS: add a reference to platform keyringKairui Song-0/+10
2019-01-06kbuild: remove redundant target cleaning on failureMasahiro Yamada-1/+1
2018-08-22export.h: remove VMLINUX_SYMBOL() and VMLINUX_SYMBOL_STR()Masahiro Yamada-8/+8
2018-08-16Replace magic for trusting the secondary keyring with #defineYannik Sembritzki-1/+2
2018-06-26certs/blacklist: fix const confusionNick Desaulniers-1/+1
2018-06-15docs: Fix some broken referencesMauro Carvalho Chehab-1/+1
2018-02-21certs/blacklist_nohashes.c: fix const confusion in certs blacklistAndi Kleen-1/+1
2017-11-02License cleanup: add SPDX GPL-2.0 license identifier to files with no licenseGreg Kroah-Hartman-0/+5
2017-07-14modsign: add markers to endif-statements in certs/MakefileJarkko Sakkinen-3/+3
2017-05-08scripts/spelling.txt: add "intialise(d)" pattern and fix typo instancesMasahiro Yamada-1/+1
2017-04-04KEYS: Use structure to capture key restriction function and dataMat Martineau-1/+20
2017-04-03KEYS: Split role of the keyring pointer for keyring restrict functionsMat Martineau-7/+11