Re: [PATCH v2 2/3] ima: don't ignore INTEGRITY_UNKNOWN EVM status

2019-06-03 Thread Roberto Sassu
On 6/3/2019 4:31 PM, James Bottomley wrote: On Mon, 2019-06-03 at 16:29 +0200, Roberto Sassu wrote: On 6/3/2019 3:43 PM, James Bottomley wrote: On Mon, 2019-06-03 at 11:25 +0200, Roberto Sassu wrote: On 5/30/2019 2:00 PM, Mimi Zohar wrote: On Wed, 2019-05-29 at 15:30 +0200, Roberto Sassu wrot

Re: [PATCH v2 2/3] ima: don't ignore INTEGRITY_UNKNOWN EVM status

2019-06-03 Thread James Bottomley
On Mon, 2019-06-03 at 11:25 +0200, Roberto Sassu wrote: > On 5/30/2019 2:00 PM, Mimi Zohar wrote: > > On Wed, 2019-05-29 at 15:30 +0200, Roberto Sassu wrote: > > > Currently, ima_appraise_measurement() ignores the EVM status when > > > evm_verifyxattr() returns INTEGRITY_UNKNOWN. If a file has a >