summaryrefslogtreecommitdiffstats
path: root/drivers/md/dm-ima.h
diff options
context:
space:
mode:
authorTushar Sugandhi <tusharsu@linux.microsoft.com>2021-08-13 23:37:56 +0200
committerMike Snitzer <snitzer@redhat.com>2021-08-20 21:59:43 +0200
commit8f509fd4a53ffaf07feeef6dd48cc6bd060ca4f3 (patch)
tree43c5d2e80e6609103284f12f173b7d43621412c7 /drivers/md/dm-ima.h
parentdm crypt: Avoid percpu_counter spinlock contention in crypt_page_alloc() (diff)
downloadlinux-8f509fd4a53ffaf07feeef6dd48cc6bd060ca4f3.tar.xz
linux-8f509fd4a53ffaf07feeef6dd48cc6bd060ca4f3.zip
dm ima: prefix dm table hashes in ima log with hash algorithm
The active/inactive table hashes measured in the ima log do not contain the information about hash algorithm. This information is useful for the attestation servers to recreate the hashes and compare them with the ones present in the ima log to verify the table contents. Prefix the table hashes in various DM events in ima log with the hash algorithm used to compute those hashes. Signed-off-by: Tushar Sugandhi <tusharsu@linux.microsoft.com> Suggested-by: Mimi Zohar <zohar@linux.ibm.com> Signed-off-by: Mike Snitzer <snitzer@redhat.com>
Diffstat (limited to 'drivers/md/dm-ima.h')
-rw-r--r--drivers/md/dm-ima.h1
1 files changed, 1 insertions, 0 deletions
diff --git a/drivers/md/dm-ima.h b/drivers/md/dm-ima.h
index 6e6f18bf05b4..0731a51565d6 100644
--- a/drivers/md/dm-ima.h
+++ b/drivers/md/dm-ima.h
@@ -16,6 +16,7 @@
#define DM_IMA_TARGET_METADATA_BUF_LEN 128
#define DM_IMA_TARGET_DATA_BUF_LEN 2048
#define DM_IMA_DEVICE_CAPACITY_BUF_LEN 128
+#define DM_IMA_TABLE_HASH_ALG "sha256"
#ifdef CONFIG_IMA