Re: [PATCH v6 5/9] powerpc/ima: add measurement rules to ima arch specific policy

2019-09-28 Thread Mimi Zohar
On Fri, 2019-09-27 at 10:25 -0400, Nayna Jain wrote: > This patch adds the measurement rules to the arch specific policies for the > systems with trusted boot. > on trusted boot enabled systems. > Signed-off-by: Nayna Jain Minor comment correction below. Reviewed-by: Mimi Zohar > --- > ar

Re: [RFC] random: UEFI RNG input is bootloader randomness

2019-09-28 Thread Kees Cook
On Sat, Sep 28, 2019 at 12:14:28PM +0200, Dominik Brodowski wrote: > Depending on RANDOM_TRUST_BOOTLOADER, bootloader-provided randomness > is credited as entropy. As the UEFI seeding entropy pool is seeded by > the UEFI firmware/bootloader, add its content as bootloader randomness. > > Note that

[RFC] random: UEFI RNG input is bootloader randomness

2019-09-28 Thread Dominik Brodowski
Depending on RANDOM_TRUST_BOOTLOADER, bootloader-provided randomness is credited as entropy. As the UEFI seeding entropy pool is seeded by the UEFI firmware/bootloader, add its content as bootloader randomness. Note that this UEFI (v2.4 or newer) feature is currently only implemented for EFI stub