Show patches with: Submitter = Eric Snowberg       |    State = Action Required       |    Archived = No       |   54 patches
Patch Series S/W/F Date Submitter Delegate State
[RFC,8/8] clavis: Introduce new LSM called clavis Clavis LSM --- 2024-03-11 Eric Snowberg New
[RFC,7/8] clavis: Introduce a new key type called clavis_key_acl Clavis LSM --- 2024-03-11 Eric Snowberg New
[RFC,6/8] keys: Add ability to track intended usage of the public key Clavis LSM --- 2024-03-11 Eric Snowberg New
[RFC,5/8] keys: Add new verification type (VERIFYING_CLAVIS_SIGNATURE) Clavis LSM --- 2024-03-11 Eric Snowberg New
[RFC,4/8] clavis: Prevent clavis boot param from changing during kexec Clavis LSM --- 2024-03-11 Eric Snowberg New
[RFC,3/8] efi: Make clavis boot param persist across kexec Clavis LSM --- 2024-03-11 Eric Snowberg New
[RFC,2/8] clavis: Introduce a new system keyring called clavis Clavis LSM --- 2024-03-11 Eric Snowberg New
[RFC,1/8] certs: Introduce ability to link to a system key Clavis LSM --- 2024-03-11 Eric Snowberg New
[v2,3/3] integrity: Remove EXPERIMENTAL from Kconfig Add digitalSignature enforcement keyring restrictions --- 2023-05-22 Eric Snowberg New
[v4,6/6] integrity: machine keyring CA configuration [v4,1/6] KEYS: Create static version of public_key_verify_signature --- 2023-02-07 Eric Snowberg New
[v3,10/10] integrity: restrict INTEGRITY_KEYRING_MACHINE to restrict_link_by_ca Add CA enforcement keyring restrictions --- 2022-12-14 Eric Snowberg New
[v3,07/10] KEYS: X.509: Flag Intermediate CA certs as endorsed Add CA enforcement keyring restrictions --- 2022-12-14 Eric Snowberg New
[v3,06/10] KEYS: Introduce keyring restriction that validates ca trust Add CA enforcement keyring restrictions --- 2022-12-14 Eric Snowberg New
[v3,03/10] KEYS: X.509: Parse Basic Constraints for CA Add CA enforcement keyring restrictions --- 2022-12-14 Eric Snowberg New
[v2,09/10] KEYS: CA link restriction Add CA enforcement keyring restrictions --- 2022-12-07 Eric Snowberg New
[v2,08/10] integrity: Use root of trust signature restriction Add CA enforcement keyring restrictions --- 2022-12-07 Eric Snowberg New
[v2,05/10] KEYS: Introduce a CA endorsed flag Add CA enforcement keyring restrictions --- 2022-12-07 Eric Snowberg New
[v2,04/10] KEYS: X.509: Parse Key Usage Add CA enforcement keyring restrictions --- 2022-12-07 Eric Snowberg New
[7/7] integrity: Use root of trust signature restriction Add CA enforcement keyring restrictions --- 2022-04-06 Eric Snowberg New
[6/7] KEYS: X.509: Flag Intermediate CA certs as built in Add CA enforcement keyring restrictions --- 2022-04-06 Eric Snowberg New
[5/7] KEYS: Introduce sig restriction that validates root of trust Add CA enforcement keyring restrictions --- 2022-04-06 Eric Snowberg New
[4/7] KEYS: Introduce a builtin root of trust key flag Add CA enforcement keyring restrictions --- 2022-04-06 Eric Snowberg New
[2/4] X.509: Parse Basic Constraints for CA Untitled series #168842 --- 2022-03-01 Eric Snowberg New
[v6,13/13] integrity: Only use machine keyring when uefi_check_trust_mok_keys is true [v6,01/13] integrity: Introduce a Linux keyring called machine --- 2021-09-14 Eric Snowberg New
[v6,10/13] KEYS: link secondary_trusted_keys to machine trusted keys [v6,01/13] integrity: Introduce a Linux keyring called machine --- 2021-09-14 Eric Snowberg New
[v6,09/13] KEYS: integrity: change link restriction to trust the machine keyring [v6,01/13] integrity: Introduce a Linux keyring called machine --- 2021-09-14 Eric Snowberg New
[v6,06/13] KEYS: Rename get_builtin_and_secondary_restriction [v6,01/13] integrity: Introduce a Linux keyring called machine --- 2021-09-14 Eric Snowberg New
[v6,04/13] integrity: restrict INTEGRITY_KEYRING_MACHINE to restrict_link_by_ca [v6,01/13] integrity: Introduce a Linux keyring called machine --- 2021-09-14 Eric Snowberg New
[v6,03/13] KEYS: CA link restriction [v6,01/13] integrity: Introduce a Linux keyring called machine --- 2021-09-14 Eric Snowberg New
[v6,01/13] integrity: Introduce a Linux keyring called machine [v6,01/13] integrity: Introduce a Linux keyring called machine --- 2021-09-14 Eric Snowberg New
[v5,11/12] integrity: Trust MOK keys if MokListTrustedRT found Enroll kernel keys thru MOK --- 2021-09-07 Eric Snowberg New
[v5,10/12] integrity: store reference to machine keyring Enroll kernel keys thru MOK --- 2021-09-07 Eric Snowberg New
[v5,07/12] KEYS: Introduce link restriction to include builtin, secondary and machine keys Enroll kernel keys thru MOK --- 2021-09-07 Eric Snowberg New
[v5,06/12] KEYS: add a reference to machine keyring Enroll kernel keys thru MOK --- 2021-09-07 Eric Snowberg New
[v5,04/12] integrity: restrict INTEGRITY_KEYRING_MACHINE to restrict_link_by_ca Enroll kernel keys thru MOK --- 2021-09-07 Eric Snowberg New
[v5,02/12] integrity: Do not allow machine keyring updates following init Enroll kernel keys thru MOK --- 2021-09-07 Eric Snowberg New
[v3,14/14] integrity: change ima link restriction to include mok keys Enroll kernel keys thru MOK --- 2021-08-12 Eric Snowberg New
[v3,10/14] KEYS: change link restriction for secondary to also trust mok Enroll kernel keys thru MOK --- 2021-08-12 Eric Snowberg New
[v3,09/14] KEYS: Introduce link restriction to include builtin, secondary and mok keys Enroll kernel keys thru MOK --- 2021-08-12 Eric Snowberg New
[v3,08/14] KEYS: add a reference to mok keyring Enroll kernel keys thru MOK --- 2021-08-12 Eric Snowberg New
[v3,06/14] integrity: accessor function to get trust_moklist Enroll kernel keys thru MOK --- 2021-08-12 Eric Snowberg New
[v3,05/14] integrity: restrict INTEGRITY_KEYRING_MOK to restrict_link_by_ca Enroll kernel keys thru MOK --- 2021-08-12 Eric Snowberg New
[v3,04/14] integrity: add add_to_mok_keyring Enroll kernel keys thru MOK --- 2021-08-12 Eric Snowberg New
[v3,01/14] integrity: Introduce a Linux keyring for the Machine Owner Key (MOK) Enroll kernel keys thru MOK --- 2021-08-12 Eric Snowberg New
[RFC,v2,10/12] KEYS: link system_trusted_keys to mok_trusted_keys Enroll kernel keys thru MOK --- 2021-07-26 Eric Snowberg New
[RFC,v2,09/12] KEYS: add a reference to mok keyring Enroll kernel keys thru MOK --- 2021-07-26 Eric Snowberg New
[RFC,v2,08/12] integrity: Suppress error message for keys added to the mok keyring Enroll kernel keys thru MOK --- 2021-07-26 Eric Snowberg New
[RFC,v2,02/12] KEYS: CA link restriction Enroll kernel keys thru MOK --- 2021-07-26 Eric Snowberg New
[RFC,12/12] integrity: Suppress error message for keys added to the mok keyring Untitled series #141799 --- 2021-07-07 Eric Snowberg New
[RFC,09/12] integrity: accessor function to get trust_moklist Untitled series #141799 --- 2021-07-07 Eric Snowberg New
[RFC,08/12] integrity: restrict INTEGRITY_KEYRING_MOK to restrict_link_by_secondary_trusted_or_ca Untitled series #141799 --- 2021-07-07 Eric Snowberg New
[RFC,06/12] integrity: Trust mok keys if MokListTrustedRT found Untitled series #141799 --- 2021-07-07 Eric Snowberg New
[RFC,03/12] KEYS: CA link restriction Untitled series #141799 --- 2021-07-07 Eric Snowberg New
[RFC,02/12] KEYS: Allow unrestricted keys to be moved to the secondary keyring Untitled series #141799 --- 2021-07-07 Eric Snowberg New