commit | 008643b86c5f33c115c84ccdda1725cac3ad50ad | [log] [tgz] |
---|---|---|
author | David Howells <dhowells@redhat.com> | Fri Aug 30 16:07:37 2013 +0100 |
committer | David Howells <dhowells@redhat.com> | Wed Sep 25 17:17:01 2013 +0100 |
tree | 951ea0d3d7b84ce3570da17f03f45a53f3e4b35d | |
parent | b56e5a17b6b9acd16997960504b9940d0d7984e7 [diff] |
KEYS: Add a 'trusted' flag and a 'trusted only' flag Add KEY_FLAG_TRUSTED to indicate that a key either comes from a trusted source or had a cryptographic signature chain that led back to a trusted key the kernel already possessed. Add KEY_FLAGS_TRUSTED_ONLY to indicate that a keyring will only accept links to keys marked with KEY_FLAGS_TRUSTED. Signed-off-by: David Howells <dhowells@redhat.com> Reviewed-by: Kees Cook <keescook@chromium.org>