| Commit message (Expand) | Author | Age | Files | Lines |
* | certs: make system keyring depend on built-in x509 parser | Masahiro Yamada | 2022-09-23 | 1 | -1/+1 |
* | Merge tag 'kbuild-v5.20' of git://git.kernel.org/pub/scm/linux/kernel/git/mas... | Linus Torvalds | 2022-08-10 | 4 | -15/+43 |
|\ |
|
| * | certs: unify blacklist_hashes.c and blacklist_nohashes.c | Masahiro Yamada | 2022-07-27 | 3 | -14/+5 |
| * | certs: move scripts/check-blacklist-hashes.awk to certs/ | Masahiro Yamada | 2022-07-27 | 2 | -1/+38 |
* | | certs: make system keyring depend on x509 parser | Adam Borowski | 2022-07-24 | 1 | -0/+1 |
|/ |
|
* | Merge tag 'certs-20220621' of git://git.kernel.org/pub/scm/linux/kernel/git/d... | Linus Torvalds | 2022-06-21 | 5 | -75/+9 |
|\ |
|
| * | certs: Move load_certificate_list() to be with the asymmetric keys code | David Howells | 2022-06-21 | 5 | -75/+9 |
* | | certs: fix and refactor CONFIG_SYSTEM_BLACKLIST_HASH_LIST build | Masahiro Yamada | 2022-06-15 | 3 | -12/+12 |
* | | certs/blacklist_hashes.c: fix const confusion in certs blacklist | Masahiro Yamada | 2022-06-15 | 1 | -1/+1 |
|/ |
|
* | certs: Convert spaces in certs/Makefile to a tab | David Howells | 2022-06-10 | 1 | -1/+1 |
* | cert host tools: Stop complaining about deprecated OpenSSL functions | Linus Torvalds | 2022-06-08 | 1 | -0/+7 |
* | Merge tag 'kbuild-v5.19' of git://git.kernel.org/pub/scm/linux/kernel/git/mas... | Linus Torvalds | 2022-05-26 | 1 | -2/+2 |
|\ |
|
| * | kbuild: Allow kernel installation packaging to override pkg-config | Chun-Tse Shao | 2022-04-05 | 1 | -2/+2 |
* | | certs: Explain the rationale to call panic() | Mickaël Salaün | 2022-05-23 | 1 | -0/+9 |
* | | certs: Allow root user to append signed hashes to the blacklist keyring | Mickaël Salaün | 2022-05-23 | 2 | -21/+85 |
* | | certs: Check that builtin blacklist hashes are valid | Mickaël Salaün | 2022-05-23 | 3 | -3/+19 |
* | | certs: Make blacklist_vet_description() more strict | Mickaël Salaün | 2022-05-23 | 1 | -10/+36 |
* | | certs: Factor out the blacklist hash creation | Mickaël Salaün | 2022-05-23 | 1 | -18/+58 |
|/ |
|
* | Merge tag 'kbuild-v5.18-v2' of git://git.kernel.org/pub/scm/linux/kernel/git/... | Linus Torvalds | 2022-03-31 | 2 | -29/+11 |
|\ |
|
| * | certs: simplify empty certs creation in certs/Makefile | Masahiro Yamada | 2022-03-03 | 1 | -10/+11 |
| * | certs: include certs/signing_key.x509 unconditionally | Masahiro Yamada | 2022-03-03 | 2 | -19/+0 |
* | | KEYS: Introduce link restriction for machine keys | Eric Snowberg | 2022-03-08 | 1 | -1/+34 |
* | | KEYS: store reference to machine keyring | Eric Snowberg | 2022-03-08 | 1 | -0/+9 |
|/ |
|
* | certs: Fix build error when CONFIG_MODULE_SIG_KEY is empty | Masahiro Yamada | 2022-01-22 | 1 | -1/+1 |
* | certs: Fix build error when CONFIG_MODULE_SIG_KEY is PKCS#11 URI | Masahiro Yamada | 2022-01-22 | 1 | -1/+1 |
* | certs: move scripts/extract-cert to certs/ | Masahiro Yamada | 2022-01-08 | 3 | -4/+172 |
* | kbuild: do not quote string values in include/config/auto.conf | Masahiro Yamada | 2022-01-08 | 1 | -8/+2 |
* | certs: simplify $(srctree)/ handling and remove config_filename macro | Masahiro Yamada | 2022-01-08 | 1 | -19/+13 |
* | certs: remove misleading comments about GCC PR | Masahiro Yamada | 2022-01-08 | 1 | -2/+0 |
* | certs: refactor file cleaning | Masahiro Yamada | 2022-01-08 | 1 | -4/+5 |
* | certs: remove unneeded -I$(srctree) option for system_certificates.o | Masahiro Yamada | 2022-01-08 | 1 | -3/+0 |
* | certs: unify duplicated cmd_extract_certs and improve the log | Masahiro Yamada | 2022-01-08 | 1 | -6/+3 |
* | certs: use $< and $@ to simplify the key generation rule | Masahiro Yamada | 2022-01-08 | 1 | -3/+2 |
* | certs: use if_changed to re-generate the key when the key type is changed | Masahiro Yamada | 2021-12-11 | 1 | -24/+6 |
* | certs: use 'cmd' to hide openssl output in silent builds more simply | Masahiro Yamada | 2021-12-11 | 1 | -6/+6 |
* | certs: remove noisy messages while generating the signing key | Masahiro Yamada | 2021-12-11 | 1 | -11/+0 |
* | certs: check-in the default x509 config file | Masahiro Yamada | 2021-12-11 | 2 | -18/+23 |
* | certs: remove meaningless $(error ...) in certs/Makefile | Masahiro Yamada | 2021-12-11 | 1 | -3/+0 |
* | certs: move the 'depends on' to the choice of module signing keys | Masahiro Yamada | 2021-12-11 | 1 | -3/+1 |
* | certs: Add support for using elliptic curve keys for signing modules | Stefan Berger | 2021-08-23 | 2 | -0/+39 |
* | certs: Trigger creation of RSA module signing key if it's not an RSA key | Stefan Berger | 2021-08-23 | 1 | -0/+8 |
* | Merge tag 'kbuild-v5.13-2' of git://git.kernel.org/pub/scm/linux/kernel/git/m... | Linus Torvalds | 2021-05-08 | 1 | -2/+2 |
|\ |
|
| * | .gitignore: prefix local generated files with a slash | Masahiro Yamada | 2021-05-01 | 1 | -2/+2 |
* | | Merge tag 'integrity-v5.13' of git://git.kernel.org/pub/scm/linux/kernel/git/... | Linus Torvalds | 2021-05-02 | 4 | -4/+47 |
|\ \
| |/
|/| |
|
| * | ima: ensure IMA_APPRAISE_MODSIG has necessary dependencies | Nayna Jain | 2021-04-27 | 3 | -2/+5 |
| * | ima: enable loading of build time generated key on .ima keyring | Nayna Jain | 2021-04-09 | 2 | -11/+52 |
| * | ima: enable signing of modules with build time generated key | Nayna Jain | 2021-04-09 | 2 | -1/+9 |
* | | certs: add 'x509_revocation_list' to gitignore | Linus Torvalds | 2021-04-26 | 1 | -0/+1 |
* | | certs: Add ability to preload revocation certs | Eric Snowberg | 2021-03-11 | 4 | -2/+67 |
* | | certs: Move load_system_certificate_list to a common function | Eric Snowberg | 2021-03-11 | 4 | -47/+70 |