Received: by 2002:a25:31c3:0:0:0:0:0 with SMTP id x186csp875073ybx; Thu, 31 Oct 2019 02:13:49 -0700 (PDT) X-Google-Smtp-Source: APXvYqxUYkUSS1IzEc7hRXxJyMaBWq+ptqJgEIZkpIrLFE0w7SzfQ9TmOhvhg6SRF3qtgKQQtxGf X-Received: by 2002:aa7:d858:: with SMTP id f24mr4638613eds.142.1572513229580; Thu, 31 Oct 2019 02:13:49 -0700 (PDT) ARC-Seal: i=1; a=rsa-sha256; t=1572513229; cv=none; d=google.com; s=arc-20160816; b=H5ILyk7dWbqriSH9bYeXorvwyTacHAuVmpxDV7tHXNOE7RlXe5lAsGritjJDQPk/T8 LwvcFMPZC2pGTm3jA7qZmID7q+Old7zpmiRYM0/wbq9cZOweaBLAX+mver2Z69Mx5j6J s5X8GPZqrFye0DpMNTUehx77Av1H+tqFCRUzSx8jVFknb1BA18SD/XgTkoC9GgE9R5KH Y1VnM+bnZmlypMVd9BN1FdQQv2hBS1vKHkEKka5O4g89qMoMiczbY8caeqJ+PacRUrY7 vYNf1yon2GwtKa1zlpu0enN9CpAZHmV1o9zIW4bTeQKVNYvyL25bf6y2Oibe/Yy2jdO3 w2Lg== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:sender:user-agent:in-reply-to :content-disposition:mime-version:references:message-id:subject:cc :to:from:date:dkim-signature; bh=DrW74S73yoI1+5GnkLFOhoOLPzXWBFu33Awpjn0+VuE=; b=M7v9ATJhgfqtoma55ii1HmvesQdFoZR2Om3/u0qBD53314NUoxMA1Y0BSjL+URR3/M DLw9D3/U5jdLz/QiYgt7EPD+DzNr+4VpL6OCUF9opi4ikBw/YDjyplMZCxA6wsk5yXnx uJ9lpm5/66G3fV3uWzbjWoEsWvICJEL/rOWVA7uuicUqqYEBbRJjCYR0M4zwJL4gM1RY 68pEEn28kKnOuGbAnUvGy33Of4oaYLOKOVrkaYViiduBWQavq8B7BuM068Cwb9fZTUK7 Rb1TqeF+9D2HgH8azr7enBV1uuntJajZ4M2s7jlstL6ztsgvo5Ce1L2D0VYmpm/wyp5J o22w== ARC-Authentication-Results: i=1; mx.google.com; dkim=pass header.i=@kernel.org header.s=default header.b=jmdWOYTM; spf=pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=pass (p=NONE sp=NONE dis=NONE) header.from=kernel.org Return-Path: Received: from vger.kernel.org (vger.kernel.org. [209.132.180.67]) by mx.google.com with ESMTP id x26si3486045eda.404.2019.10.31.02.13.26; Thu, 31 Oct 2019 02:13:49 -0700 (PDT) Received-SPF: pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) client-ip=209.132.180.67; Authentication-Results: mx.google.com; dkim=pass header.i=@kernel.org header.s=default header.b=jmdWOYTM; spf=pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=pass (p=NONE sp=NONE dis=NONE) header.from=kernel.org Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S1727023AbfJaJKp (ORCPT + 99 others); Thu, 31 Oct 2019 05:10:45 -0400 Received: from mail.kernel.org ([198.145.29.99]:57602 "EHLO mail.kernel.org" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S1726864AbfJaJKp (ORCPT ); Thu, 31 Oct 2019 05:10:45 -0400 Received: from localhost (unknown [91.217.168.176]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by mail.kernel.org (Postfix) with ESMTPSA id 4530420862; Thu, 31 Oct 2019 09:10:44 +0000 (UTC) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=kernel.org; s=default; t=1572513045; bh=A1TNL/R7BlC3QU3qiKk6Ab/C0PvvpHBMrLered6Ickc=; h=Date:From:To:Cc:Subject:References:In-Reply-To:From; b=jmdWOYTM7xT69SQn+rWSz2X9ceFDyZDsyaCYampZIqIR3tyR+htLAR3ReXIPjp81z Pbq/aqYEc9MY/DOx59hli0lCCO1iwb09PM+8gGWO+3BFTXC5nYw03k8BVs7NeYy6VG M49Jc48cbs0NarJiDJILn5ieFV4BRZO4iQ558npI= Date: Thu, 31 Oct 2019 05:10:41 -0400 From: Sasha Levin To: Lakshmi Ramasubramanian Cc: zohar@linux.ibm.com, dhowells@redhat.com, matthewgarrett@google.com, jamorris@linux.microsoft.com, linux-kernel@vger.kernel.org, linux-integrity@vger.kernel.org, linux-security-module@vger.kernel.org, keyrings@vger.kernel.org, prsriva@linux.microsoft.com Subject: Re: [PATCH v3 1/9] KEYS: Defined an IMA hook to measure keys on key create or update Message-ID: <20191031091041.GO1554@sasha-vm> References: <20191031011910.2574-1-nramas@linux.microsoft.com> <20191031011910.2574-2-nramas@linux.microsoft.com> MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii; format=flowed Content-Disposition: inline In-Reply-To: <20191031011910.2574-2-nramas@linux.microsoft.com> User-Agent: Mutt/1.10.1 (2018-07-13) Sender: linux-kernel-owner@vger.kernel.org Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org On Wed, Oct 30, 2019 at 06:19:02PM -0700, Lakshmi Ramasubramanian wrote: >Asymmetric keys used for verifying file signatures or certificates >are currently not included in the IMA measurement list. > >This patch defines a new IMA hook namely ima_post_key_create_or_update() >to measure asymmetric keys. > >Signed-off-by: Lakshmi Ramasubramanian What are the prerequisites for this patch? -- Thanks, Sasha