aboutsummaryrefslogtreecommitdiff
path: root/certs
AgeCommit message (Expand)Author
2022-05-23certs: Explain the rationale to call panic()Mickaël Salaün
2022-05-23certs: Allow root user to append signed hashes to the blacklist keyringMickaël Salaün
2022-05-23certs: Check that builtin blacklist hashes are validMickaël Salaün
2022-05-23certs: Make blacklist_vet_description() more strictMickaël Salaün
2022-05-23certs: Factor out the blacklist hash creationMickaël Salaün
2022-03-31Merge tag 'kbuild-v5.18-v2' of git://git.kernel.org/pub/scm/linux/kernel/git/...Linus Torvalds
2022-03-08KEYS: Introduce link restriction for machine keysEric Snowberg
2022-03-08KEYS: store reference to machine keyringEric Snowberg
2022-03-03certs: simplify empty certs creation in certs/MakefileMasahiro Yamada
2022-03-03certs: include certs/signing_key.x509 unconditionallyMasahiro Yamada
2022-01-23certs: Fix build error when CONFIG_MODULE_SIG_KEY is emptyMasahiro Yamada
2022-01-23certs: Fix build error when CONFIG_MODULE_SIG_KEY is PKCS#11 URIMasahiro Yamada
2022-01-08certs: move scripts/extract-cert to certs/Masahiro Yamada
2022-01-08kbuild: do not quote string values in include/config/auto.confMasahiro Yamada
2022-01-08certs: simplify $(srctree)/ handling and remove config_filename macroMasahiro Yamada
2022-01-08certs: remove misleading comments about GCC PRMasahiro Yamada
2022-01-08certs: refactor file cleaningMasahiro Yamada
2022-01-08certs: remove unneeded -I$(srctree) option for system_certificates.oMasahiro Yamada
2022-01-08certs: unify duplicated cmd_extract_certs and improve the logMasahiro Yamada
2022-01-08certs: use $< and $@ to simplify the key generation ruleMasahiro Yamada
2021-12-11certs: use if_changed to re-generate the key when the key type is changedMasahiro Yamada
2021-12-11certs: use 'cmd' to hide openssl output in silent builds more simplyMasahiro Yamada
2021-12-11certs: remove noisy messages while generating the signing keyMasahiro Yamada
2021-12-11certs: check-in the default x509 config fileMasahiro Yamada
2021-12-11certs: remove meaningless $(error ...) in certs/MakefileMasahiro Yamada
2021-12-11certs: move the 'depends on' to the choice of module signing keysMasahiro Yamada
2021-08-23certs: Add support for using elliptic curve keys for signing modulesStefan Berger
2021-08-23certs: Trigger creation of RSA module signing key if it's not an RSA keyStefan Berger
2021-05-08Merge tag 'kbuild-v5.13-2' of git://git.kernel.org/pub/scm/linux/kernel/git/m...Linus Torvalds
2021-05-01Merge tag 'integrity-v5.13' of git://git.kernel.org/pub/scm/linux/kernel/git/...Linus Torvalds
2021-05-02.gitignore: prefix local generated files with a slashMasahiro Yamada
2021-04-26ima: ensure IMA_APPRAISE_MODSIG has necessary dependenciesNayna Jain
2021-04-26certs: add 'x509_revocation_list' to gitignoreLinus Torvalds
2021-04-09ima: enable loading of build time generated key on .ima keyringNayna Jain
2021-04-09ima: enable signing of modules with build time generated keyNayna Jain
2021-03-11certs: Add ability to preload revocation certsEric Snowberg
2021-03-11certs: Move load_system_certificate_list to a common functionEric Snowberg
2021-03-11certs: Add EFI_CERT_X509_GUID support for dbx entriesEric Snowberg
2021-01-21certs: Replace K{U,G}IDT_INIT() with GLOBAL_ROOT_{U,G}IDMickaël Salaün
2021-01-21certs: Fix blacklist flag type confusionDavid Howells
2021-01-21certs: Fix blacklisted hexadecimal hash string checkMickaël Salaün
2021-01-21certs/blacklist: fix kernel doc interface issueAlex Shi
2020-03-25.gitignore: add SPDX License IdentifierMasahiro Yamada
2020-03-25.gitignore: remove too obvious commentsMasahiro Yamada
2019-11-12certs: Add wrapper function to check blacklisted binary hashNayna Jain
2019-08-05PKCS#7: Refactor verify_pkcs7_signature()Thiago Jung Bauermann
2019-07-10Revert "Merge tag 'keys-acl-20190703' of git://git.kernel.org/pub/scm/linux/k...Linus Torvalds
2019-07-08Merge tag 'keys-acl-20190703' of git://git.kernel.org/pub/scm/linux/kernel/gi...Linus Torvalds
2019-07-08Merge tag 'keys-namespace-20190627' of git://git.kernel.org/pub/scm/linux/ker...Linus Torvalds
2019-06-27keys: Replace uid/gid/perm permissions checking with an ACLDavid Howells