Groups | Search | Server Info | Keyboard shortcuts | Login | Register [http] [https] [nntp] [nntps]


Groups > linux.debian.kernel > #72784 > unrolled thread

Bug#993535: linux: Enable CONFIG_EVM

Started byPetr Vorel <petr.vorel@gmail.com>
First post2021-09-02 21:30 +0200
Last post2021-09-05 21:30 +0200
Articles 3 — 2 participants

Back to article view | Back to linux.debian.kernel


Contents

  Bug#993535: linux: Enable CONFIG_EVM Petr Vorel <petr.vorel@gmail.com> - 2021-09-02 21:30 +0200
    Bug#993535: linux: Enable CONFIG_EVM Petr Vorel <petr.vorel@gmail.com> - 2021-09-02 21:50 +0200
    Bug#993535: marked as done (linux: Enable CONFIG_EVM) "Debian Bug Tracking System" <owner@bugs.debian.org> - 2021-09-05 21:30 +0200

#72784 — Bug#993535: linux: Enable CONFIG_EVM

FromPetr Vorel <petr.vorel@gmail.com>
Date2021-09-02 21:30 +0200
SubjectBug#993535: linux: Enable CONFIG_EVM
Message-ID<CT0zn-2ZK-5@gated-at.bofh.it>
Source: linux
Version: linux-support-5.13.0-trunk
Severity: wishlist

Dear Maintainer,

#972459 reenabled CONFIG_IMA for linux/5.13.9-1~exp1 (thanks!). Could you please
enable also CONFIG_EVM, as EVM is commonly used with IMA?

I'd also consider to enable non-default CONFIG_EVM_ATTR_FSUUID.

If you have additional questions about the setup, feel free to ask on
linux-integrity ML or directly Mimi Zohar (IMA/EVM maintainer).

Thanks!

Kind regards,
Petr

-- System Information:
Debian Release: bookworm/sid
  APT prefers stable-security
  APT policy: (500, 'stable-security'), (500, 'unstable'), (500, 'testing'), (500, 'stable'), (1, 'experimental')
Architecture: amd64 (x86_64)
Foreign Architectures: i386

Kernel: Linux 5.13.0-trunk-amd64 (SMP w/4 CPU threads)
Locale: LANG=en_GB.utf8, LC_CTYPE=cs_CZ.UTF-8 (charmap=UTF-8), LANGUAGE=en_GB.utf8
Shell: /bin/sh linked to /usr/bin/dash
Init: systemd (via /run/systemd/system)
LSM: AppArmor: enabled

[toc] | [next] | [standalone]


#72785

FromPetr Vorel <petr.vorel@gmail.com>
Date2021-09-02 21:50 +0200
Message-ID<CT0SL-379-13@gated-at.bofh.it>
In reply to#72784

[Multipart message — attachments visible in raw view] — view raw

> I'd also consider to enable non-default CONFIG_EVM_ATTR_FSUUID.

Actually CONFIG_EVM_ATTR_FSUUID is enabled by default. But I'd consider
enabling
also CONFIG_ENCRYPTED_KEYS as it's enabled for Ubuntu [1]

Thanks!

Kind regards,
Petr

[1]
https://patchwork.ozlabs.org/project/ubuntu-kernel/patch/1403911081-32056-6-git-send-email-tyhicks@canonical.com/

[toc] | [prev] | [next] | [standalone]


#72817 — Bug#993535: marked as done (linux: Enable CONFIG_EVM)

From"Debian Bug Tracking System" <owner@bugs.debian.org>
Date2021-09-05 21:30 +0200
SubjectBug#993535: marked as done (linux: Enable CONFIG_EVM)
Message-ID<CU603-4PX-21@gated-at.bofh.it>
In reply to#72784

[Multipart message — attachments visible in raw view] — view raw

Your message dated Sun, 05 Sep 2021 19:19:00 +0000
with message-id <E1mMxfQ-000Fyp-KX@fasolo.debian.org>
and subject line Bug#993535: fixed in linux 5.14-1~exp2
has caused the Debian Bug report #993535,
regarding linux: Enable CONFIG_EVM
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact owner@bugs.debian.org
immediately.)


-- 
993535: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=993535
Debian Bug Tracking System
Contact owner@bugs.debian.org with problems

[toc] | [prev] | [standalone]


Back to top | Article view | linux.debian.kernel


csiph-web