Toggle navigation
Patchwork
linux-crypto
Patches
Bundles
About this project
Login
Register
Mail settings
Show patches with
: Submitter =
Eric Snowberg
| Archived =
No
| 131 patches
Series
Submitter
State
any
Action Required
New
Under Review
Accepted
Rejected
RFC
Not Applicable
Changes Requested
Awaiting Upstream
Superseded
Deferred
Search
Archived
No
Yes
Both
Delegate
------
Nobody
andy.doan@linaro.org
andy.doan@linaro.org
Apply
«
1
2
»
Patch
Series
S/W/F
Date
Submitter
Delegate
State
[RFC,v3,13/13] clavis: Kunit support
Clavis LSM
-
-
-
2024-10-17
Eric Snowberg
New
[RFC,v3,12/13] clavis: Add function redirection for Kunit support
Clavis LSM
-
-
-
2024-10-17
Eric Snowberg
New
[RFC,v3,11/13] clavis: Prevent boot param change during kexec
Clavis LSM
-
-
-
2024-10-17
Eric Snowberg
New
[RFC,v3,10/13] efi: Make clavis boot param persist across kexec
Clavis LSM
-
-
-
2024-10-17
Eric Snowberg
New
[RFC,v3,09/13] clavis: Allow user to define acl at build time
Clavis LSM
-
-
-
2024-10-17
Eric Snowberg
New
[RFC,v3,08/13] clavis: Introduce new LSM called clavis
Clavis LSM
-
-
-
2024-10-17
Eric Snowberg
New
[RFC,v3,07/13] keys: Add ability to track intended usage of the public key
Clavis LSM
-
-
-
2024-10-17
Eric Snowberg
New
[RFC,v3,06/13] clavis: Populate clavis keyring acl with kernel module signature
Clavis LSM
-
-
-
2024-10-17
Eric Snowberg
New
[RFC,v3,05/13] clavis: Introduce a new key type called clavis_key_acl
Clavis LSM
-
-
-
2024-10-17
Eric Snowberg
New
[RFC,v3,04/13] keys: Add new verification type (VERIFYING_CLAVIS_SIGNATURE)
Clavis LSM
-
-
-
2024-10-17
Eric Snowberg
New
[RFC,v3,03/13] clavis: Introduce a new system keyring called clavis
Clavis LSM
-
-
-
2024-10-17
Eric Snowberg
New
[RFC,v3,02/13] certs: Introduce ability to link to a system key
Clavis LSM
-
-
-
2024-10-17
Eric Snowberg
New
[RFC,v3,01/13] certs: Remove CONFIG_INTEGRITY_PLATFORM_KEYRING check
Clavis LSM
-
-
-
2024-10-17
Eric Snowberg
New
[RFC,v2,7/8] clavis: Introduce a new key type called clavis_key_acl
[RFC,v2,1/8] certs: Introduce ability to link to a system key
-
-
-
2024-05-31
Eric Snowberg
New
[RFC,v2,6/8] keys: Add ability to track intended usage of the public key
[RFC,v2,1/8] certs: Introduce ability to link to a system key
-
-
-
2024-05-31
Eric Snowberg
Superseded
[RFC,v2,5/8] keys: Add new verification type (VERIFYING_CLAVIS_SIGNATURE)
[RFC,v2,1/8] certs: Introduce ability to link to a system key
-
-
-
2024-05-31
Eric Snowberg
Superseded
[RFC,v2,1/8] certs: Introduce ability to link to a system key
[RFC,v2,1/8] certs: Introduce ability to link to a system key
-
-
-
2024-05-31
Eric Snowberg
New
[RFC,8/8] clavis: Introduce new LSM called clavis
Clavis LSM
-
-
-
2024-03-11
Eric Snowberg
New
[RFC,7/8] clavis: Introduce a new key type called clavis_key_acl
Clavis LSM
-
-
-
2024-03-11
Eric Snowberg
Superseded
[RFC,6/8] keys: Add ability to track intended usage of the public key
Clavis LSM
-
-
-
2024-03-11
Eric Snowberg
Superseded
[RFC,5/8] keys: Add new verification type (VERIFYING_CLAVIS_SIGNATURE)
Clavis LSM
-
-
-
2024-03-11
Eric Snowberg
Superseded
[RFC,4/8] clavis: Prevent clavis boot param from changing during kexec
Clavis LSM
-
-
-
2024-03-11
Eric Snowberg
New
[RFC,3/8] efi: Make clavis boot param persist across kexec
Clavis LSM
-
-
-
2024-03-11
Eric Snowberg
Superseded
[RFC,2/8] clavis: Introduce a new system keyring called clavis
Clavis LSM
-
-
-
2024-03-11
Eric Snowberg
New
[RFC,1/8] certs: Introduce ability to link to a system key
Clavis LSM
-
-
-
2024-03-11
Eric Snowberg
New
[v2,3/3] integrity: Remove EXPERIMENTAL from Kconfig
Add digitalSignature enforcement keyring restrictions
-
-
-
2023-05-22
Eric Snowberg
New
[v2,2/3] integrity: Enforce digitalSignature usage in the ima and evm keyrings
Add digitalSignature enforcement keyring restrictions
-
-
-
2023-05-22
Eric Snowberg
Accepted
[v2,1/3] KEYS: DigitalSignature link restriction
Add digitalSignature enforcement keyring restrictions
-
-
-
2023-05-22
Eric Snowberg
Accepted
[3/3] integrity: Remove EXPERIMENTAL from Kconfig
Add digitalSignature enforcement keyring restrictions
-
-
-
2023-05-08
Eric Snowberg
Superseded
[2/3] integrity: Enforce digitalSignature usage in the ima and evm keyrings
Add digitalSignature enforcement keyring restrictions
-
-
-
2023-05-08
Eric Snowberg
Superseded
[1/3] KEYS: DigitalSignature link restriction
Add digitalSignature enforcement keyring restrictions
-
-
-
2023-05-08
Eric Snowberg
Superseded
[v6,6/6] integrity: machine keyring CA configuration
[v6,1/6] KEYS: Create static version of public_key_verify_signature
-
-
-
2023-03-22
Eric Snowberg
Accepted
[v6,3/6] KEYS: X.509: Parse Basic Constraints for CA
[v6,1/6] KEYS: Create static version of public_key_verify_signature
-
-
-
2023-03-22
Eric Snowberg
Accepted
[v6,1/6] KEYS: Create static version of public_key_verify_signature
[v6,1/6] KEYS: Create static version of public_key_verify_signature
-
-
-
2023-03-22
Eric Snowberg
Accepted
[v5,6/6] integrity: machine keyring CA configuration
Add CA enforcement keyring restrictions
-
-
-
2023-03-02
Eric Snowberg
Superseded
[v5,5/6] KEYS: CA link restriction
Add CA enforcement keyring restrictions
-
-
-
2023-03-02
Eric Snowberg
Accepted
[v5,4/6] KEYS: X.509: Parse Key Usage
Add CA enforcement keyring restrictions
-
-
-
2023-03-02
Eric Snowberg
Accepted
[v5,3/6] KEYS: X.509: Parse Basic Constraints for CA
Add CA enforcement keyring restrictions
-
-
-
2023-03-02
Eric Snowberg
Superseded
[v5,2/6] KEYS: Add missing function documentation
Add CA enforcement keyring restrictions
-
-
-
2023-03-02
Eric Snowberg
Accepted
[v5,1/6] KEYS: Create static version of public_key_verify_signature
Add CA enforcement keyring restrictions
-
-
-
2023-03-02
Eric Snowberg
Superseded
[v4,6/6] integrity: machine keyring CA configuration
[v4,1/6] KEYS: Create static version of public_key_verify_signature
-
-
-
2023-02-07
Eric Snowberg
New
[v4,3/6] KEYS: X.509: Parse Basic Constraints for CA
[v4,1/6] KEYS: Create static version of public_key_verify_signature
-
-
-
2023-02-07
Eric Snowberg
Superseded
[v4,1/6] KEYS: Create static version of public_key_verify_signature
[v4,1/6] KEYS: Create static version of public_key_verify_signature
-
-
-
2023-02-07
Eric Snowberg
Superseded
[v3,10/10] integrity: restrict INTEGRITY_KEYRING_MACHINE to restrict_link_by_ca
Add CA enforcement keyring restrictions
-
-
-
2022-12-14
Eric Snowberg
New
[v3,07/10] KEYS: X.509: Flag Intermediate CA certs as endorsed
Add CA enforcement keyring restrictions
-
-
-
2022-12-14
Eric Snowberg
New
[v3,06/10] KEYS: Introduce keyring restriction that validates ca trust
Add CA enforcement keyring restrictions
-
-
-
2022-12-14
Eric Snowberg
New
[v3,03/10] KEYS: X.509: Parse Basic Constraints for CA
Add CA enforcement keyring restrictions
-
-
-
2022-12-14
Eric Snowberg
New
[v3,01/10] KEYS: Create static version of public_key_verify_signature
Add CA enforcement keyring restrictions
-
-
-
2022-12-14
Eric Snowberg
Superseded
[v2,10/10] integrity: restrict INTEGRITY_KEYRING_MACHINE to restrict_link_by_ca
Add CA enforcement keyring restrictions
-
-
-
2022-12-07
Eric Snowberg
Superseded
[v2,09/10] KEYS: CA link restriction
Add CA enforcement keyring restrictions
-
-
-
2022-12-07
Eric Snowberg
New
[v2,08/10] integrity: Use root of trust signature restriction
Add CA enforcement keyring restrictions
-
-
-
2022-12-07
Eric Snowberg
New
[v2,07/10] KEYS: X.509: Flag Intermediate CA certs as endorsed
Add CA enforcement keyring restrictions
-
-
-
2022-12-07
Eric Snowberg
Superseded
[v2,06/10] KEYS: Introduce keyring restriction that validates ca trust
Add CA enforcement keyring restrictions
-
-
-
2022-12-07
Eric Snowberg
Superseded
[v2,05/10] KEYS: Introduce a CA endorsed flag
Add CA enforcement keyring restrictions
-
-
-
2022-12-07
Eric Snowberg
New
[v2,04/10] KEYS: X.509: Parse Key Usage
Add CA enforcement keyring restrictions
-
-
-
2022-12-07
Eric Snowberg
New
[v2,03/10] KEYS: X.509: Parse Basic Constraints for CA
Add CA enforcement keyring restrictions
-
-
-
2022-12-07
Eric Snowberg
Superseded
[v2,02/10] KEYS: Add missing function documentation
Add CA enforcement keyring restrictions
-
-
-
2022-12-07
Eric Snowberg
Superseded
[v2,01/10] KEYS: Create static version of public_key_verify_signature
Add CA enforcement keyring restrictions
-
-
-
2022-12-07
Eric Snowberg
Superseded
[7/7] integrity: Use root of trust signature restriction
Add CA enforcement keyring restrictions
-
-
-
2022-04-06
Eric Snowberg
New
[6/7] KEYS: X.509: Flag Intermediate CA certs as built in
Add CA enforcement keyring restrictions
-
-
-
2022-04-06
Eric Snowberg
New
[5/7] KEYS: Introduce sig restriction that validates root of trust
Add CA enforcement keyring restrictions
-
-
-
2022-04-06
Eric Snowberg
New
[4/7] KEYS: Introduce a builtin root of trust key flag
Add CA enforcement keyring restrictions
-
-
-
2022-04-06
Eric Snowberg
New
[3/7] KEYS: X.509: Parse Key Usage
Add CA enforcement keyring restrictions
-
-
-
2022-04-06
Eric Snowberg
Superseded
[2/7] KEYS: X.509: Parse Basic Constraints for CA
Add CA enforcement keyring restrictions
-
-
-
2022-04-06
Eric Snowberg
Superseded
[1/7] KEYS: Create static version of public_key_verify_signature
Add CA enforcement keyring restrictions
-
-
-
2022-04-06
Eric Snowberg
Superseded
[3/4] KEYS: CA link restriction
Untitled series #168842
-
-
-
2022-03-01
Eric Snowberg
Superseded
[2/4] X.509: Parse Basic Constraints for CA
Untitled series #168842
-
-
-
2022-03-01
Eric Snowberg
New
[v6,13/13] integrity: Only use machine keyring when uefi_check_trust_mok_keys is true
[v6,01/13] integrity: Introduce a Linux keyring called machine
-
-
-
2021-09-14
Eric Snowberg
New
[v6,10/13] KEYS: link secondary_trusted_keys to machine trusted keys
[v6,01/13] integrity: Introduce a Linux keyring called machine
-
-
-
2021-09-14
Eric Snowberg
New
[v6,09/13] KEYS: integrity: change link restriction to trust the machine keyring
[v6,01/13] integrity: Introduce a Linux keyring called machine
-
-
-
2021-09-14
Eric Snowberg
New
[v6,06/13] KEYS: Rename get_builtin_and_secondary_restriction
[v6,01/13] integrity: Introduce a Linux keyring called machine
-
-
-
2021-09-14
Eric Snowberg
New
[v6,04/13] integrity: restrict INTEGRITY_KEYRING_MACHINE to restrict_link_by_ca
[v6,01/13] integrity: Introduce a Linux keyring called machine
-
-
-
2021-09-14
Eric Snowberg
New
[v6,03/13] KEYS: CA link restriction
[v6,01/13] integrity: Introduce a Linux keyring called machine
-
-
-
2021-09-14
Eric Snowberg
New
[v6,01/13] integrity: Introduce a Linux keyring called machine
[v6,01/13] integrity: Introduce a Linux keyring called machine
-
-
-
2021-09-14
Eric Snowberg
New
[v5,12/12] integrity: Only use machine keyring when uefi_check_trust_mok_keys is true
Enroll kernel keys thru MOK
-
-
-
2021-09-07
Eric Snowberg
Superseded
[v5,11/12] integrity: Trust MOK keys if MokListTrustedRT found
Enroll kernel keys thru MOK
-
-
-
2021-09-07
Eric Snowberg
New
[v5,10/12] integrity: store reference to machine keyring
Enroll kernel keys thru MOK
-
-
-
2021-09-07
Eric Snowberg
New
[v5,09/12] KEYS: link secondary_trusted_keys to machine trusted keys
Enroll kernel keys thru MOK
-
-
-
2021-09-07
Eric Snowberg
Superseded
[v5,08/12] KEYS: integrity: change link restriction to trust the machine keyring
Enroll kernel keys thru MOK
-
-
-
2021-09-07
Eric Snowberg
Superseded
[v5,07/12] KEYS: Introduce link restriction to include builtin, secondary and machine keys
Enroll kernel keys thru MOK
-
-
-
2021-09-07
Eric Snowberg
New
[v5,06/12] KEYS: add a reference to machine keyring
Enroll kernel keys thru MOK
-
-
-
2021-09-07
Eric Snowberg
New
[v5,05/12] integrity: add new keyring handler for mok keys
Enroll kernel keys thru MOK
-
-
-
2021-09-07
Eric Snowberg
Accepted
[v5,04/12] integrity: restrict INTEGRITY_KEYRING_MACHINE to restrict_link_by_ca
Enroll kernel keys thru MOK
-
-
-
2021-09-07
Eric Snowberg
New
[v5,03/12] KEYS: CA link restriction
Enroll kernel keys thru MOK
-
-
-
2021-09-07
Eric Snowberg
Superseded
[v5,02/12] integrity: Do not allow machine keyring updates following init
Enroll kernel keys thru MOK
-
-
-
2021-09-07
Eric Snowberg
New
[v5,01/12] integrity: Introduce a Linux keyring called machine
Enroll kernel keys thru MOK
-
-
-
2021-09-07
Eric Snowberg
Superseded
[v4,12/12] integrity: Only use mok keyring when uefi_check_trust_mok_keys is true
Enroll kernel keys thru MOK
-
-
-
2021-08-19
Eric Snowberg
Superseded
[v4,11/12] integrity: Trust MOK keys if MokListTrustedRT found
Enroll kernel keys thru MOK
-
-
-
2021-08-19
Eric Snowberg
Superseded
[v4,10/12] integrity: store reference to mok keyring
Enroll kernel keys thru MOK
-
-
-
2021-08-19
Eric Snowberg
Superseded
[v4,09/12] KEYS: link secondary_trusted_keys to mok trusted keys
Enroll kernel keys thru MOK
-
-
-
2021-08-19
Eric Snowberg
Superseded
[v4,08/12] KEYS: integrity: change link restriction to trust the mok keyring
Enroll kernel keys thru MOK
-
-
-
2021-08-19
Eric Snowberg
Superseded
[v4,07/12] KEYS: Introduce link restriction to include builtin, secondary and mok keys
Enroll kernel keys thru MOK
-
-
-
2021-08-19
Eric Snowberg
Superseded
[v4,06/12] KEYS: add a reference to mok keyring
Enroll kernel keys thru MOK
-
-
-
2021-08-19
Eric Snowberg
Superseded
[v4,05/12] integrity: add new keyring handler for mok keys
Enroll kernel keys thru MOK
-
-
-
2021-08-19
Eric Snowberg
Superseded
[v4,04/12] integrity: restrict INTEGRITY_KEYRING_MOK to restrict_link_by_ca
Enroll kernel keys thru MOK
-
-
-
2021-08-19
Eric Snowberg
Superseded
[v4,03/12] KEYS: CA link restriction
Enroll kernel keys thru MOK
-
-
-
2021-08-19
Eric Snowberg
Superseded
[v4,02/12] integrity: Do not allow mok keyring updates following init
Enroll kernel keys thru MOK
-
-
-
2021-08-19
Eric Snowberg
Superseded
[v4,01/12] integrity: Introduce a Linux keyring for the Machine Owner Key (MOK)
Enroll kernel keys thru MOK
-
-
-
2021-08-19
Eric Snowberg
Superseded
[v3,14/14] integrity: change ima link restriction to include mok keys
Enroll kernel keys thru MOK
-
-
-
2021-08-12
Eric Snowberg
New
[v3,13/14] integrity: store reference to mok keyring
Enroll kernel keys thru MOK
-
-
-
2021-08-12
Eric Snowberg
Superseded
«
1
2
»