Re: [dm-devel] [PATCH 0/3] LoadPin: Enable loading from trusted dm-verity devices

2022-04-18 Thread Matthias Kaehlcke
Hi Kees, On Mon, Apr 18, 2022 at 03:14:14PM -0700, Kees Cook wrote: > [oops, resending to actual CC list] > > On Mon, Apr 18, 2022 at 02:15:56PM -0700, Matthias Kaehlcke wrote: > > This series extends LoadPin to allow loading of kernel files > > from trusted dm-verity devices. It adds the concept

Re: [dm-devel] [PATCH 0/3] LoadPin: Enable loading from trusted dm-verity devices

2022-04-18 Thread Kees Cook
On Mon, Apr 18, 2022 at 03:43:27PM -0700, Matthias Kaehlcke wrote: > Hi Kees, > > On Mon, Apr 18, 2022 at 03:14:14PM -0700, Kees Cook wrote: > > [oops, resending to actual CC list] > > > > On Mon, Apr 18, 2022 at 02:15:56PM -0700, Matthias Kaehlcke wrote: > > > This series extends LoadPin to allo

Re: [dm-devel] [PATCH 0/3] LoadPin: Enable loading from trusted dm-verity devices

2022-04-18 Thread Kees Cook
[oops, resending to actual CC list] On Mon, Apr 18, 2022 at 02:15:56PM -0700, Matthias Kaehlcke wrote: > This series extends LoadPin to allow loading of kernel files > from trusted dm-verity devices. It adds the concept of > trusted verity devices to LoadPin. Userspace can use the > new systl file