Hi all i'm reposting the patch set which allows to mount the securityfs filesystem from the initial ramdisk and introduces three new modules: masterkey, integrity and ecryptfs.
Changelog from version v2:
* masterkey: added MULTIKERNELMODE configuration variable;
* {masterkey,integrity, ecryptfs}: modified some debug messages for better
clarity;
* ecryptfs: ECRYPTFS_EXTRA_MOUNT_OPTS configuration variable set to empty;
* ecryptfs: replaced ECRYPTFSDIR with ECRYPTFSSRCDIR and ECRYPTFSDSTDIR.
Roberto Sassu
Roberto Sassu (4):
base/init: mount the securityfs filesystem
dracut: added new module masterkey
dracut: added new module integrity
dracut: added new module ecryptfs
dracut.kernel.7.xml | 29 +++++++++
modules.d/97masterkey/README | 68 ++++++++++++++++++++
modules.d/97masterkey/masterkey.sh | 75 ++++++++++++++++++++++
modules.d/97masterkey/module-setup.sh | 25 ++++++++
modules.d/98ecryptfs/README | 50 +++++++++++++++
modules.d/98ecryptfs/ecryptfs-mount.sh | 100 ++++++++++++++++++++++++++++++
modules.d/98ecryptfs/module-setup.sh | 20 ++++++
modules.d/98integrity/README | 40 ++++++++++++
modules.d/98integrity/evm-enable.sh | 91 +++++++++++++++++++++++++++
modules.d/98integrity/ima-policy-load.sh | 41 ++++++++++++
modules.d/98integrity/module-setup.sh | 17 +++++
modules.d/99base/init | 6 ++
12 files changed, 562 insertions(+), 0 deletions(-)
create mode 100644 modules.d/97masterkey/README
create mode 100755 modules.d/97masterkey/masterkey.sh
create mode 100755 modules.d/97masterkey/module-setup.sh
create mode 100644 modules.d/98ecryptfs/README
create mode 100755 modules.d/98ecryptfs/ecryptfs-mount.sh
create mode 100755 modules.d/98ecryptfs/module-setup.sh
create mode 100644 modules.d/98integrity/README
create mode 100755 modules.d/98integrity/evm-enable.sh
create mode 100755 modules.d/98integrity/ima-policy-load.sh
create mode 100755 modules.d/98integrity/module-setup.sh
--
1.7.4.4
smime.p7s
Description: S/MIME cryptographic signature
