aboutsummaryrefslogtreecommitdiff
path: root/certs
AgeCommit message (Expand)AuthorFilesLines
2023-11-02Merge tag 'v6.7-p1' of git://git.kernel.org/pub/scm/linux/kernel/git/herbert/...Gravatar Linus Torvalds 1-2/+4
2023-10-31certs: Only allow certs signed by keys on the builtin keyringGravatar Mimi Zohar 1-1/+15
2023-10-27module: enable automatic module signing with FIPS 202 SHA-3Gravatar Dimitri John Ledkov 1-1/+1
2023-10-20certs: Limit MODULE_SIG_KEY_TYPE_ECDSA to SHA384 or SHA512Gravatar Dimitri John Ledkov 1-2/+4
2023-08-17certs: Reference revocation list for all keyringsGravatar Eric Snowberg 1-6/+6
2023-08-17integrity: PowerVM support for loading third party code signing keysGravatar Nayna Jain 1-0/+30
2023-08-17KEYS: DigitalSignature link restrictionGravatar Eric Snowberg 1-0/+49
2023-04-24KEYS: Add missing function documentationGravatar Eric Snowberg 1-3/+11
2023-02-26Merge tag 'kbuild-v6.3' of git://git.kernel.org/pub/scm/linux/kernel/git/masa...Gravatar Linus Torvalds 1-3/+6
2023-02-13certs: don't try to update blacklist keysGravatar Thomas Weißschuh 1-9/+12
2023-02-13certs: make blacklisted hash available in klogGravatar Thomas Weißschuh 1-1/+1
2023-01-31certs: Fix build error when PKCS#11 URI contains semicolonGravatar Jan Luebbe 1-2/+2
2023-01-22kbuild: do not print extra logs for V=2Gravatar Masahiro Yamada 1-3/+6
2022-09-24certs: make system keyring depend on built-in x509 parserGravatar Masahiro Yamada 1-1/+1
2022-08-10Merge tag 'kbuild-v5.20' of git://git.kernel.org/pub/scm/linux/kernel/git/mas...Gravatar Linus Torvalds 4-15/+43
2022-07-27certs: unify blacklist_hashes.c and blacklist_nohashes.cGravatar Masahiro Yamada 3-14/+5
2022-07-27certs: move scripts/check-blacklist-hashes.awk to certs/Gravatar Masahiro Yamada 2-1/+38
2022-07-24certs: make system keyring depend on x509 parserGravatar Adam Borowski 1-0/+1
2022-06-21Merge tag 'certs-20220621' of git://git.kernel.org/pub/scm/linux/kernel/git/d...Gravatar Linus Torvalds 5-75/+9
2022-06-21certs: Move load_certificate_list() to be with the asymmetric keys codeGravatar David Howells 5-75/+9
2022-06-15certs: fix and refactor CONFIG_SYSTEM_BLACKLIST_HASH_LIST buildGravatar Masahiro Yamada 3-12/+12
2022-06-15certs/blacklist_hashes.c: fix const confusion in certs blacklistGravatar Masahiro Yamada 1-1/+1
2022-06-10certs: Convert spaces in certs/Makefile to a tabGravatar David Howells 1-1/+1
2022-06-08cert host tools: Stop complaining about deprecated OpenSSL functionsGravatar Linus Torvalds 1-0/+7
2022-05-26Merge tag 'kbuild-v5.19' of git://git.kernel.org/pub/scm/linux/kernel/git/mas...Gravatar Linus Torvalds 1-2/+2
2022-05-23certs: Explain the rationale to call panic()Gravatar Mickaël Salaün 1-0/+9
2022-05-23certs: Allow root user to append signed hashes to the blacklist keyringGravatar Mickaël Salaün 2-21/+85
2022-05-23certs: Check that builtin blacklist hashes are validGravatar Mickaël Salaün 3-3/+19
2022-05-23certs: Make blacklist_vet_description() more strictGravatar Mickaël Salaün 1-10/+36
2022-05-23certs: Factor out the blacklist hash creationGravatar Mickaël Salaün 1-18/+58
2022-04-05kbuild: Allow kernel installation packaging to override pkg-configGravatar Chun-Tse Shao 1-2/+2
2022-03-31Merge tag 'kbuild-v5.18-v2' of git://git.kernel.org/pub/scm/linux/kernel/git/...Gravatar Linus Torvalds 2-29/+11
2022-03-08KEYS: Introduce link restriction for machine keysGravatar Eric Snowberg 1-1/+34
2022-03-08KEYS: store reference to machine keyringGravatar Eric Snowberg 1-0/+9
2022-03-03certs: simplify empty certs creation in certs/MakefileGravatar Masahiro Yamada 1-10/+11
2022-03-03certs: include certs/signing_key.x509 unconditionallyGravatar Masahiro Yamada 2-19/+0
2022-01-23certs: Fix build error when CONFIG_MODULE_SIG_KEY is emptyGravatar Masahiro Yamada 1-1/+1
2022-01-23certs: Fix build error when CONFIG_MODULE_SIG_KEY is PKCS#11 URIGravatar Masahiro Yamada 1-1/+1
2022-01-08certs: move scripts/extract-cert to certs/Gravatar Masahiro Yamada 3-4/+172
2022-01-08kbuild: do not quote string values in include/config/auto.confGravatar Masahiro Yamada 1-8/+2
2022-01-08certs: simplify $(srctree)/ handling and remove config_filename macroGravatar Masahiro Yamada 1-19/+13
2022-01-08certs: remove misleading comments about GCC PRGravatar Masahiro Yamada 1-2/+0
2022-01-08certs: refactor file cleaningGravatar Masahiro Yamada 1-4/+5
2022-01-08certs: remove unneeded -I$(srctree) option for system_certificates.oGravatar Masahiro Yamada 1-3/+0
2022-01-08certs: unify duplicated cmd_extract_certs and improve the logGravatar Masahiro Yamada 1-6/+3
2022-01-08certs: use $< and $@ to simplify the key generation ruleGravatar Masahiro Yamada 1-3/+2
2021-12-11certs: use if_changed to re-generate the key when the key type is changedGravatar Masahiro Yamada 1-24/+6
2021-12-11certs: use 'cmd' to hide openssl output in silent builds more simplyGravatar Masahiro Yamada 1-6/+6
2021-12-11certs: remove noisy messages while generating the signing keyGravatar Masahiro Yamada 1-11/+0
2021-12-11certs: check-in the default x509 config fileGravatar Masahiro Yamada 2-18/+23