aboutsummaryrefslogtreecommitdiff
path: root/certs
AgeCommit message (Expand)AuthorFilesLines
2022-05-23certs: Factor out the blacklist hash creationGravatar Mickaël Salaün 1-18/+58
2022-03-31Merge tag 'kbuild-v5.18-v2' of git://git.kernel.org/pub/scm/linux/kernel/git/...Gravatar Linus Torvalds 2-29/+11
2022-03-08KEYS: Introduce link restriction for machine keysGravatar Eric Snowberg 1-1/+34
2022-03-08KEYS: store reference to machine keyringGravatar Eric Snowberg 1-0/+9
2022-03-03certs: simplify empty certs creation in certs/MakefileGravatar Masahiro Yamada 1-10/+11
2022-03-03certs: include certs/signing_key.x509 unconditionallyGravatar Masahiro Yamada 2-19/+0
2022-01-23certs: Fix build error when CONFIG_MODULE_SIG_KEY is emptyGravatar Masahiro Yamada 1-1/+1
2022-01-23certs: Fix build error when CONFIG_MODULE_SIG_KEY is PKCS#11 URIGravatar Masahiro Yamada 1-1/+1
2022-01-08certs: move scripts/extract-cert to certs/Gravatar Masahiro Yamada 3-4/+172
2022-01-08kbuild: do not quote string values in include/config/auto.confGravatar Masahiro Yamada 1-8/+2
2022-01-08certs: simplify $(srctree)/ handling and remove config_filename macroGravatar Masahiro Yamada 1-19/+13
2022-01-08certs: remove misleading comments about GCC PRGravatar Masahiro Yamada 1-2/+0
2022-01-08certs: refactor file cleaningGravatar Masahiro Yamada 1-4/+5
2022-01-08certs: remove unneeded -I$(srctree) option for system_certificates.oGravatar Masahiro Yamada 1-3/+0
2022-01-08certs: unify duplicated cmd_extract_certs and improve the logGravatar Masahiro Yamada 1-6/+3
2022-01-08certs: use $< and $@ to simplify the key generation ruleGravatar Masahiro Yamada 1-3/+2
2021-12-11certs: use if_changed to re-generate the key when the key type is changedGravatar Masahiro Yamada 1-24/+6
2021-12-11certs: use 'cmd' to hide openssl output in silent builds more simplyGravatar Masahiro Yamada 1-6/+6
2021-12-11certs: remove noisy messages while generating the signing keyGravatar Masahiro Yamada 1-11/+0
2021-12-11certs: check-in the default x509 config fileGravatar Masahiro Yamada 2-18/+23
2021-12-11certs: remove meaningless $(error ...) in certs/MakefileGravatar Masahiro Yamada 1-3/+0
2021-12-11certs: move the 'depends on' to the choice of module signing keysGravatar Masahiro Yamada 1-3/+1
2021-08-23certs: Add support for using elliptic curve keys for signing modulesGravatar Stefan Berger 2-0/+39
2021-08-23certs: Trigger creation of RSA module signing key if it's not an RSA keyGravatar Stefan Berger 1-0/+8
2021-05-08Merge tag 'kbuild-v5.13-2' of git://git.kernel.org/pub/scm/linux/kernel/git/m...Gravatar Linus Torvalds 1-2/+2
2021-05-01Merge tag 'integrity-v5.13' of git://git.kernel.org/pub/scm/linux/kernel/git/...Gravatar Linus Torvalds 4-4/+47
2021-05-02.gitignore: prefix local generated files with a slashGravatar Masahiro Yamada 1-2/+2
2021-04-26ima: ensure IMA_APPRAISE_MODSIG has necessary dependenciesGravatar Nayna Jain 3-2/+5
2021-04-26certs: add 'x509_revocation_list' to gitignoreGravatar Linus Torvalds 1-0/+1
2021-04-09ima: enable loading of build time generated key on .ima keyringGravatar Nayna Jain 2-11/+52
2021-04-09ima: enable signing of modules with build time generated keyGravatar Nayna Jain 2-1/+9
2021-03-11certs: Add ability to preload revocation certsGravatar Eric Snowberg 4-2/+67
2021-03-11certs: Move load_system_certificate_list to a common functionGravatar Eric Snowberg 4-47/+70
2021-03-11certs: Add EFI_CERT_X509_GUID support for dbx entriesGravatar Eric Snowberg 4-0/+60
2021-01-21certs: Replace K{U,G}IDT_INIT() with GLOBAL_ROOT_{U,G}IDGravatar Mickaël Salaün 2-4/+5
2021-01-21certs: Fix blacklist flag type confusionGravatar David Howells 1-1/+1
2021-01-21certs: Fix blacklisted hexadecimal hash string checkGravatar Mickaël Salaün 1-1/+1
2021-01-21certs/blacklist: fix kernel doc interface issueGravatar Alex Shi 1-1/+1
2020-03-25.gitignore: add SPDX License IdentifierGravatar Masahiro Yamada 1-0/+1
2020-03-25.gitignore: remove too obvious commentsGravatar Masahiro Yamada 1-3/+0
2019-11-12certs: Add wrapper function to check blacklisted binary hashGravatar Nayna Jain 1-0/+9
2019-08-05PKCS#7: Refactor verify_pkcs7_signature()Gravatar Thiago Jung Bauermann 1-16/+45
2019-07-10Revert "Merge tag 'keys-acl-20190703' of git://git.kernel.org/pub/scm/linux/k...Gravatar Linus Torvalds 2-5/+14
2019-07-08Merge tag 'keys-acl-20190703' of git://git.kernel.org/pub/scm/linux/kernel/gi...Gravatar Linus Torvalds 2-14/+5
2019-07-08Merge tag 'keys-namespace-20190627' of git://git.kernel.org/pub/scm/linux/ker...Gravatar Linus Torvalds 1-1/+1
2019-06-27keys: Replace uid/gid/perm permissions checking with an ACLGravatar David Howells 2-14/+5
2019-06-26keys: Add a 'recurse' flag for keyring searchesGravatar David Howells 1-1/+1
2019-05-24treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 36Gravatar Thomas Gleixner 2-10/+2
2019-02-04kexec, KEYS: Make use of platform keyring for signature verifyGravatar Kairui Song 1-1/+12
2019-02-04integrity, KEYS: add a reference to platform keyringGravatar Kairui Song 1-0/+10