summaryrefslogtreecommitdiff
path: root/net/netlink
diff options
context:
space:
mode:
authorMimi Zohar <zohar@linux.vnet.ibm.com>2014-05-11 00:05:23 -0400
committerGreg Kroah-Hartman <gregkh@linuxfoundation.org>2014-06-26 15:15:38 -0400
commit73b49c736fefb5f772e13df33c44356e42e18e0b (patch)
tree4c5d98c39f6a3f96010a6df31c289d60f8cbe1e2 /net/netlink
parenta3af538e0c6af0b6d1ab8da37b1b6796300b6c2e (diff)
downloadlinux-rt-73b49c736fefb5f772e13df33c44356e42e18e0b.tar.gz
evm: prohibit userspace writing 'security.evm' HMAC value
commit 2fb1c9a4f2dbc2f0bd2431c7fa64d0b5483864e4 upstream. Calculating the 'security.evm' HMAC value requires access to the EVM encrypted key. Only the kernel should have access to it. This patch prevents userspace tools(eg. setfattr, cp --preserve=xattr) from setting/modifying the 'security.evm' HMAC value directly. Signed-off-by: Mimi Zohar <zohar@linux.vnet.ibm.com> Signed-off-by: Greg Kroah-Hartman <gregkh@linuxfoundation.org>
Diffstat (limited to 'net/netlink')
0 files changed, 0 insertions, 0 deletions