path: root/certs/system_keyring.c
Commit message (Expand)AuthorAgeFilesLines
* KEYS: Introduce link restriction for machine keysEric Snowberg2022-03-081-1/+34
* KEYS: store reference to machine keyringEric Snowberg2022-03-081-0/+9
* Merge tag 'integrity-v5.13' of git:// Torvalds2021-05-011-2/+23
| * ima: enable loading of build time generated key on .ima keyringNayna Jain2021-04-091-10/+40
* | certs: Move load_system_certificate_list to a common functionEric Snowberg2021-03-111-46/+3
* | certs: Add EFI_CERT_X509_GUID support for dbx entriesEric Snowberg2021-03-111-0/+6
* certs: Replace K{U,G}IDT_INIT() with GLOBAL_ROOT_{U,G}IDMickaël Salaün2021-01-211-2/+3
* PKCS#7: Refactor verify_pkcs7_signature()Thiago Jung Bauermann2019-08-051-16/+45
* Revert "Merge tag 'keys-acl-20190703' of git:// Torvalds2019-07-101-3/+9
* Merge tag 'keys-acl-20190703' of git:// Torvalds2019-07-081-9/+3
| * keys: Replace uid/gid/perm permissions checking with an ACLDavid Howells2019-06-271-9/+3
* | treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 36Thomas Gleixner2019-05-241-5/+1
* kexec, KEYS: Make use of platform keyring for signature verifyKairui Song2019-02-041-1/+12
* integrity, KEYS: add a reference to platform keyringKairui Song2019-02-041-0/+10
* Replace magic for trusting the secondary keyring with #defineYannik Sembritzki2018-08-161-1/+2
* KEYS: Use structure to capture key restriction function and dataMat Martineau2017-04-041-1/+20
* KEYS: Split role of the keyring pointer for keyring restrict functionsMat Martineau2017-04-031-7/+11
* certs: Add a secondary system keyring that can be added to dynamicallyDavid Howells2016-04-111-16/+71
* KEYS: Remove KEY_FLAG_TRUSTED and KEY_ALLOC_TRUSTEDDavid Howells2016-04-111-2/+0
* KEYS: Move the point of trust determination to __key_link()David Howells2016-04-111-3/+17
* KEYS: Add a facility to restrict new links into a keyringDavid Howells2016-04-111-4/+4
* PKCS#7: Make trust determination dependent on contents of trust keyringDavid Howells2016-04-061-9/+4
* KEYS: Generalise system_verify_data() to provide access to internal contentDavid Howells2016-04-061-10/+35
* KEYS: Add an alloc flag to convey the builtinness of a keyDavid Howells2016-02-091-2/+2
* Move certificate handling to its own directoryDavid Howells2015-08-141-0/+157