Re: [PATCH 1/3] certs: define a trusted platform keyring

2018-03-07 Thread Nayna Jain
On 03/07/2018 09:33 PM, David Howells wrote: Nayna Jain wrote: + key = key_create_or_update(make_key_ref(keyring, 1), + "asymmetric", + NULL, + p, +

Re: [PATCH 1/3] certs: define a trusted platform keyring

2018-03-07 Thread Nayna Jain
On 03/07/2018 09:33 PM, David Howells wrote: Nayna Jain wrote: + key = key_create_or_update(make_key_ref(keyring, 1), + "asymmetric", + NULL, + p, + plen, +

Re: [PATCH 1/3] certs: define a trusted platform keyring

2018-03-07 Thread David Howells
Nayna Jain wrote: > + key = key_create_or_update(make_key_ref(keyring, 1), > + "asymmetric", > + NULL, > + p, > + plen, > +

Re: [PATCH 1/3] certs: define a trusted platform keyring

2018-03-07 Thread David Howells
Nayna Jain wrote: > + key = key_create_or_update(make_key_ref(keyring, 1), > + "asymmetric", > + NULL, > + p, > + plen, > + ((KEY_POS_ALL &

[PATCH 1/3] certs: define a trusted platform keyring

2018-02-28 Thread Nayna Jain
The kernel can be supplied in SEEPROM or lockable flash memory in embedded devices. Some devices may not support secure boot, but the kernel is trusted because the image is stored in protected memory. That kernel may need to kexec additional kernels, it may be used as a bootloader, for example, or

[PATCH 1/3] certs: define a trusted platform keyring

2018-02-28 Thread Nayna Jain
The kernel can be supplied in SEEPROM or lockable flash memory in embedded devices. Some devices may not support secure boot, but the kernel is trusted because the image is stored in protected memory. That kernel may need to kexec additional kernels, it may be used as a bootloader, for example, or