Received: by 2002:a5b:505:0:0:0:0:0 with SMTP id o5csp5738125ybp; Tue, 15 Oct 2019 04:24:45 -0700 (PDT) X-Google-Smtp-Source: APXvYqxy3bYEpezbEQoBgC6DMzdsz26yTcc6LVUk/Ua+2m2BGYAVoAa+u9f6yScDG3fXmHfD4bya X-Received: by 2002:a50:8e53:: with SMTP id 19mr33029283edx.134.1571138685508; Tue, 15 Oct 2019 04:24:45 -0700 (PDT) ARC-Seal: i=1; a=rsa-sha256; t=1571138685; cv=none; d=google.com; s=arc-20160816; b=ZSs5KIEZSJyx9ZLbLfygLT5y+X09pGkm0doxQK3DTTnJC0wIKBfjbNJ+AsCZeFO4R2 4Xp64+VccgXbn4JllB+qUVHSzHC7N9D8KGoIfOTOxus2SkSVCMYzMjUpm79TWTHpJLPi 0wnzdCWqfTmk/wf45ywpRizlmRZ2R3kVXrGnpGdUEO1gj6q3m2PDPFpBQ3kpwkQnw9sz T9cWKPbaGp/iOYQio0gCdqNvdHJo3XyOgp0uedTuZ/HD75Z3ZV9wjzDrP+nTrZfP2w71 TbqaYsI46KNZedKu8beptksED7ag0tR4ouQUlYNbIjkrZzcCyS+IbRrqZhQrVrZj4tVY YiSw== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:sender:mime-version:message-id:date:references :in-reply-to:subject:cc:to:from:dkim-signature; bh=BU53M7uO6dSQw2kuru69AHo8k9O9wv2Hf3RFiwk9uQM=; b=itis3OHw8HiXt66dH112Mjwzs/pabLdDogWILFfAXvubjeHKLcgB3Ziiy2rIzKZXUX mPZaQE7AccQ4XHsq3xdrEuRbCBEkOspufag3PtG8EdDYmO1kSnjPyToLBvtwfyZzSjv9 RBB5STMKO1a1DnIuOkRbhJboD42tpHUedK10MM9IqXGHmWF3krXpYFarRxySm/UxRJII iY0Py9kLudlIyhUbblPW0ekVndLf9Y1EDOgLzYCLCItSQutjtDgmz51goaAd0hQZuiwI uA32cAoa4tXPHdRCRCFaZoIaQrQ+tE96qIIYznqNk2wRTuw5Q4mFU4D6prNwdoHRK6wu OKRQ== ARC-Authentication-Results: i=1; mx.google.com; dkim=pass header.i=@ellerman.id.au header.s=201909 header.b=YhiIDr4g; spf=pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org Return-Path: Received: from vger.kernel.org (vger.kernel.org. [209.132.180.67]) by mx.google.com with ESMTP id f45si14065040eda.345.2019.10.15.04.24.21; Tue, 15 Oct 2019 04:24:45 -0700 (PDT) Received-SPF: pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) client-ip=209.132.180.67; Authentication-Results: mx.google.com; dkim=pass header.i=@ellerman.id.au header.s=201909 header.b=YhiIDr4g; spf=pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S1727631AbfJOJ7k (ORCPT + 99 others); Tue, 15 Oct 2019 05:59:40 -0400 Received: from ozlabs.org ([203.11.71.1]:39937 "EHLO ozlabs.org" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S1727018AbfJOJ7j (ORCPT ); Tue, 15 Oct 2019 05:59:39 -0400 Received: from authenticated.ozlabs.org (localhost [127.0.0.1]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange ECDHE (P-256) server-signature RSA-PSS (4096 bits) server-digest SHA256) (No client certificate requested) by mail.ozlabs.org (Postfix) with ESMTPSA id 46srWC5sZyz9sPF; Tue, 15 Oct 2019 20:59:35 +1100 (AEDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=ellerman.id.au; s=201909; t=1571133576; bh=g7FNvEmUMKUBTSEs/cnh7zM1HyCNiU5+T2IblHoqAb0=; h=From:To:Cc:Subject:In-Reply-To:References:Date:From; b=YhiIDr4gz6XDbMGr15Sc7t/zYDWa3ckmLK2XTtTmSgqqrNXBz3WCh1sI7ugcw7No9 9z/qYOLr8MUPtAKaVi6QmsvCB+7syHLOtLjJMiLHvuVXrmdhQ4kfc4R/hxhAzoqcWc DXrJZVow2QCc1+8qU0s/wthBbQykITP7zxw6ctjJwt4d++rY+SWJGL4nH5dUvX9Ymv IlRkxldrLGRye660X7Ik8GGe+BCEWbA2Gw87Q+Xg1ydHXlKtoT1RN/BHCo0LAQcUO9 0pu9XfAzqas4SdhbSR34cVXh+P3Yl/xhSjCSnzZYeqor9s72u1idfYI6KnZza8CMRy b2RE/asCPE4Nw== From: Michael Ellerman To: Mimi Zohar , Nayna Jain , linuxppc-dev@ozlabs.org, linux-efi@vger.kernel.org, linux-integrity@vger.kernel.org Cc: linux-kernel@vger.kernel.org, Benjamin Herrenschmidt , Paul Mackerras , Ard Biesheuvel , Jeremy Kerr , Matthew Garret , Greg Kroah-Hartman , Claudio Carvalho , George Wilson , Elaine Palmer , Eric Ricther , Oliver O'Halloran Subject: Re: [PATCH v7 2/8] powerpc: add support to initialize ima policy rules In-Reply-To: <1570799579.5250.72.camel@linux.ibm.com> References: <1570497267-13672-1-git-send-email-nayna@linux.ibm.com> <1570497267-13672-3-git-send-email-nayna@linux.ibm.com> <1570799579.5250.72.camel@linux.ibm.com> Date: Tue, 15 Oct 2019 20:59:34 +1100 Message-ID: <87bluiuy61.fsf@mpe.ellerman.id.au> MIME-Version: 1.0 Content-Type: text/plain Sender: linux-kernel-owner@vger.kernel.org Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org Mimi Zohar writes: > On Mon, 2019-10-07 at 21:14 -0400, Nayna Jain wrote: ... >> diff --git a/arch/powerpc/Kconfig b/arch/powerpc/Kconfig >> index b4a221886fcf..deb19ec6ba3d 100644 >> --- a/arch/powerpc/Kconfig >> +++ b/arch/powerpc/Kconfig >> @@ -938,6 +938,8 @@ config PPC_SECURE_BOOT >> prompt "Enable secure boot support" >> bool >> depends on PPC_POWERNV >> + depends on IMA >> + depends on IMA_ARCH_POLICY > > As IMA_ARCH_POLICY is dependent on IMA, I don't see a need for > depending on both IMA and IMA_ARCH_POLICY. I agree. And what we actually depend on is the arch part, so it should depend on just IMA_ARCH_POLICY. cheers