Received: by 2002:a25:1506:0:0:0:0:0 with SMTP id 6csp4570682ybv; Mon, 17 Feb 2020 01:37:25 -0800 (PST) X-Google-Smtp-Source: APXvYqzInK8Mcn3/F15GMVPUfsYEOmt0KZ9N7D5uypWyODnkemSYcA14vPruUvRINhrsKVaDF32U X-Received: by 2002:a9d:62d8:: with SMTP id z24mr11104485otk.362.1581932245269; Mon, 17 Feb 2020 01:37:25 -0800 (PST) ARC-Seal: i=1; a=rsa-sha256; t=1581932245; cv=none; d=google.com; s=arc-20160816; b=0nh0bydFoA0IDSibts4xCuOdxSenS/8JFxw78Zb2E9kqkZDBB6rZR8evu0NqnSwM2H tIQHeN4WUIDjuSpUWHMPAxo2iXrNumM2OumeVKDKtP/wQqGGL01/HWMCQ8zyFzMhaBWE BlV7cr7+iX5qOJWAtQ+YVzvxe6QZrpxxeFt7T8feuJYbiT/NVyu5ANUmyzWDl8zaFry5 QcWcPf6B+xN5VlsWao7RVe//TV7rY264QH3kxaOkyZtzFcLCQtybA2vdw6+JfQ5C931/ B2PT8RmG504lt29b/bkpmjGlc7niZF0sbDpv9hYDc6M6vsHfa5wqEj0jFrbjNH9Mqej4 LheA== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:sender:references:in-reply-to:message-id:date :subject:cc:to:from; bh=kyf8FMadahmWg8Kpr8paiJQ51r/U6NVGQQLjqHVfSR8=; b=J4sygDssJJN/Yg4PtqORI0g1oSJKk6bL6n+e7wp2EtogW4FLsYSt0wMuPYMOhBAtt7 8NeJn1ocq1VCntl3k+kVS9KS2PN7p1W44pOh017AyTOdoWCpaELvVrpztv4oggh9sGBJ Fyl+upJV89o26cda1rIW0TI+P/GYNf2aTufELY/F1l8Hj4xEi2asjXEbqhegjQYmtLlu g/0OtUWcQu5OkMddW0lXUtwLym7qysHgDHcFdwuPP4HKcy3WkmePJfr4AmpaQRtrSfoG p6YG3xJmh1vW/uRX3hHy9is7BO9iooZ6xg24vpHR037kGtb7KypLBD2dQ5GtrqFFM2gb f0wA== ARC-Authentication-Results: i=1; mx.google.com; spf=pass (google.com: best guess record for domain of linux-crypto-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) smtp.mailfrom=linux-crypto-owner@vger.kernel.org; dmarc=fail (p=NONE sp=NONE dis=NONE) header.from=alibaba.com Return-Path: Received: from vger.kernel.org (vger.kernel.org. [209.132.180.67]) by mx.google.com with ESMTP id g22si6357533otp.55.2020.02.17.01.37.13; Mon, 17 Feb 2020 01:37:25 -0800 (PST) Received-SPF: pass (google.com: best guess record for domain of linux-crypto-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) client-ip=209.132.180.67; Authentication-Results: mx.google.com; spf=pass (google.com: best guess record for domain of linux-crypto-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) smtp.mailfrom=linux-crypto-owner@vger.kernel.org; dmarc=fail (p=NONE sp=NONE dis=NONE) header.from=alibaba.com Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S1728922AbgBQJhE (ORCPT + 99 others); Mon, 17 Feb 2020 04:37:04 -0500 Received: from out30-54.freemail.mail.aliyun.com ([115.124.30.54]:44127 "EHLO out30-54.freemail.mail.aliyun.com" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S1728904AbgBQJhE (ORCPT ); Mon, 17 Feb 2020 04:37:04 -0500 X-Alimail-AntiSpam: AC=PASS;BC=-1|-1;BR=01201311R411e4;CH=green;DM=||false|;DS=||;FP=0|-1|-1|-1|0|-1|-1|-1;HT=e01e04407;MF=tianjia.zhang@linux.alibaba.com;NM=1;PH=DS;RN=12;SR=0;TI=SMTPD_---0Tq9WTV2_1581932218; Received: from localhost(mailfrom:tianjia.zhang@linux.alibaba.com fp:SMTPD_---0Tq9WTV2_1581932218) by smtp.aliyun-inc.com(127.0.0.1); Mon, 17 Feb 2020 17:36:58 +0800 From: Tianjia Zhang To: herbert@gondor.apana.org.au, davem@davemloft.net, jarkko.sakkinen@linux.intel.com, zohar@linux.ibm.com, ebiggers@kernel.org, dmitry.kasatkin@gmail.com, jmorris@namei.org, serge@hallyn.com Cc: linux-crypto@vger.kernel.org, linux-integrity@vger.kernel.org, linux-security-module@vger.kernel.org, linux-kernel@vger.kernel.org Subject: [PATCH v2 2/2] ima: add sm3 algorithm to hash algorithm configuration list Date: Mon, 17 Feb 2020 17:36:49 +0800 Message-Id: <20200217093649.97938-3-tianjia.zhang@linux.alibaba.com> X-Mailer: git-send-email 2.17.1 In-Reply-To: <20200217093649.97938-1-tianjia.zhang@linux.alibaba.com> References: <20200217093649.97938-1-tianjia.zhang@linux.alibaba.com> Sender: linux-crypto-owner@vger.kernel.org Precedence: bulk List-ID: X-Mailing-List: linux-crypto@vger.kernel.org sm3 has been supported by the ima hash algorithm, but it is not yet in the Kconfig configuration list. After adding, both ima and tpm2 can support sm3 well. Signed-off-by: Tianjia Zhang --- security/integrity/ima/Kconfig | 5 +++++ 1 file changed, 5 insertions(+) diff --git a/security/integrity/ima/Kconfig b/security/integrity/ima/Kconfig index 711ff10fa36e..3f3ee4e2eb0d 100644 --- a/security/integrity/ima/Kconfig +++ b/security/integrity/ima/Kconfig @@ -112,6 +112,10 @@ choice config IMA_DEFAULT_HASH_WP512 bool "WP512" depends on CRYPTO_WP512=y && !IMA_TEMPLATE + + config IMA_DEFAULT_HASH_SM3 + bool "SM3" + depends on CRYPTO_SM3=y && !IMA_TEMPLATE endchoice config IMA_DEFAULT_HASH @@ -121,6 +125,7 @@ config IMA_DEFAULT_HASH default "sha256" if IMA_DEFAULT_HASH_SHA256 default "sha512" if IMA_DEFAULT_HASH_SHA512 default "wp512" if IMA_DEFAULT_HASH_WP512 + default "sm3" if IMA_DEFAULT_HASH_SM3 config IMA_WRITE_POLICY bool "Enable multiple writes to the IMA policy" -- 2.17.1