summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
-rw-r--r--meta-integrity/recipes-kernel/linux/linux-yocto/ima.cfg3
1 files changed, 2 insertions, 1 deletions
diff --git a/meta-integrity/recipes-kernel/linux/linux-yocto/ima.cfg b/meta-integrity/recipes-kernel/linux/linux-yocto/ima.cfg
index 52c741f..9cd609b 100644
--- a/meta-integrity/recipes-kernel/linux/linux-yocto/ima.cfg
+++ b/meta-integrity/recipes-kernel/linux/linux-yocto/ima.cfg
@@ -2,7 +2,7 @@ CONFIG_IMA=y
2# CONFIG_IMA_KEXEC is not set 2# CONFIG_IMA_KEXEC is not set
3# CONFIG_IMA_LSM_RULES is not set 3# CONFIG_IMA_LSM_RULES is not set
4CONFIG_IMA_WRITE_POLICY=y 4CONFIG_IMA_WRITE_POLICY=y
5# CONFIG_IMA_READ_POLICY is not set 5CONFIG_IMA_READ_POLICY=y
6CONFIG_IMA_MEASURE_PCR_IDX=10 6CONFIG_IMA_MEASURE_PCR_IDX=10
7# CONFIG_IMA_TEMPLATE is not set 7# CONFIG_IMA_TEMPLATE is not set
8# CONFIG_IMA_NG_TEMPLATE=y is not set 8# CONFIG_IMA_NG_TEMPLATE=y is not set
@@ -15,6 +15,7 @@ CONFIG_IMA_DEFAULT_HASH_SHA256=y
15CONFIG_IMA_DEFAULT_HASH="sha256" 15CONFIG_IMA_DEFAULT_HASH="sha256"
16CONFIG_IMA_APPRAISE=y 16CONFIG_IMA_APPRAISE=y
17CONFIG_IMA_LOAD_X509=y 17CONFIG_IMA_LOAD_X509=y
18CONFIG_IMA_APPRAISE_BOOTPARAM=y
18CONFIG_IMA_TRUSTED_KEYRING=y 19CONFIG_IMA_TRUSTED_KEYRING=y
19CONFIG_IMA_KEYRINGS_PERMIT_SIGNED_BY_BUILTIN_OR_SECONDARY=y 20CONFIG_IMA_KEYRINGS_PERMIT_SIGNED_BY_BUILTIN_OR_SECONDARY=y
20CONFIG_IMA_BLACKLIST_KEYRING=y 21CONFIG_IMA_BLACKLIST_KEYRING=y