summaryrefslogtreecommitdiffstats
Commit message (Expand)AuthorAgeFilesLines
...
* tpm2.0-tools: rename -> tpm2-toolsTrevor Woerner2018-05-304-4/+4
* layer.conf: add LAYERSERIES_COMPATTrevor Woerner2018-05-268-0/+16
* sign_rpm_ext.bbclass: check rpm public key at image recipe parsing timeHongxu Jia2018-05-231-0/+4
* seloader: sync up with the latestJia Zhang2018-05-201-1/+1
* meta-integrity, meta-signing-key: Populate the secondary keyringTom Rini2018-05-172-2/+24
* meta-signing-key: Rename "extra trusted" to "secondary"Tom Rini2018-05-176-39/+39
* meta-integrity: init.ima: Switch to using keyctlTom Rini2018-05-172-3/+5
* grub-efi: remove aarch64 from COMPATIBLE_HOSTKai Kang2018-05-161-0/+3
* linux-yocto-efi-secure-boot: Package unversioned signature as symlinkTom Rini2018-05-131-1/+3
* key-store: Fix typo in key-store-ima-privkey nameTom Rini2018-05-121-1/+1
* grub-efi: fix compile errors for arm64Kai Kang2018-05-112-20/+32
* grub-efi: refresh patches to fix QA warningYi Zhao2018-05-103-13/+23
* meta-efi-secure-core: Move kernel-initramfs.bbappendTom Rini2018-05-061-0/+0
* kernel-initramfs: Rework to use update-alternatives directlyTom Rini2018-05-062-63/+39
* efitools: Rework how we deal with rpath and linking of Linux appsTom Rini2018-05-023-30/+28
* initrdscripts-secure-core: Provide all directories init requiresTom Rini2018-04-271-0/+6
* README: Clarify local.conf required changes for IMATom Rini2018-04-201-0/+2
* keyutils: refresh patches to fix QA warningYi Zhao2018-04-113-23/+26
* init.ima: Fix up the syntax errorJia Zhang2018-03-191-1/+1
* grub/boot-menu: Rename _bakup suffix to _backupJia Zhang2018-03-191-3/+3
* ima/linux-yocto: Enable CONFIG_IMA_READ_POLICY and CONFIG_IMA_APPRAISE_BOOTPARAMJia Zhang2018-03-191-1/+2
* integrity/linux-yocto: Enable CONFIG_SYSTEM_BLACKLIST_KEYRINGJia Zhang2018-03-191-0/+1
* init.ima: Fix the failure when importing the external policy from real rootfsJia Zhang2018-03-191-1/+3
* README: Document the instruction to install kernel imageJia Zhang2018-03-191-0/+1
* cryptfs-tpm2: Update the upstream URLJia Zhang2018-03-131-2/+2
* seloader: sync up with upstreamJia Zhang2018-02-281-1/+1
* meta-integrity: Ensure that we have CONFIG_SECURITY enabled in the kernelTom Rini2018-02-221-0/+1
* meta-secure-core: update TSS 2.0 to the latest stable versionJia Zhang2018-02-197-130/+80
* meta-integrity: Fix build problem on ima-inspectTom Rini2018-02-171-1/+1
* meta-integrity: Add ima-inspect utilityTom Rini2018-02-162-0/+12
* meta-integrity: Drop RPM patches that are upstream nowTom Rini2018-02-1412-796/+0
* kernel-initramfs: use oe.utils.read_fileJackie Huang2018-02-071-1/+1
* efitools: use oe.utils.str_filter_outJackie Huang2018-02-071-2/+2
* util-linux: Fix package name extensionHolger Dengler2017-12-092-3/+3
* README: update READMEJia Zhang2017-12-042-3/+12
* linux-yocto: fix loading kernel module due to being strippedJia Zhang2017-11-261-0/+2
* README.md: update to claim the support of modsignJia Zhang2017-11-211-1/+10
* meta-integrity: enable modsign support in kernelJia Zhang2017-11-213-5/+30
* meta-signing-key: support to build key-store with modsign and extra system tr...Jia Zhang2017-11-213-6/+120
* scripts/create-user-key-store.sh: support to generate the user keys for modsi...Jia Zhang2017-11-211-0/+26
* meta-signing-key: add the sample keys for modsign and extra system trusted keyJia Zhang2017-11-214-0/+94
* meta-signing-key, meta-efi-secure-boot: Rework for dependenciesTom Rini2017-11-1611-1/+1
* README updateTom Rini2017-11-161-0/+1
* initrdscripts: rename expected ima certificate (#28)Yunguo Wei2017-11-121-1/+1
* seloader: sync up with upstreamJia Zhang2017-10-271-1/+1
* rpm: always include rpm-integrity.inc for RPM signingJia Zhang2017-10-271-1/+1
* meta-integrity: fix build failure caused by 6aa83f98bJia Zhang2017-10-271-1/+1
* shim: drop fallbackJia Zhang2017-10-277-148/+7
* rpm: only apply bbappend file when ima in DISTRO_FEATURES (#27)Kai2017-10-272-22/+23
* shim: disable OVERRIDE_SECURITY_POLICY for 32bit target (#25)Wenzong Fan2017-09-301-1/+2