MODSIGN: Export module signature definitions
IMA will use the module_signature format for append signatures, so export the relevant definitions and factor out the code which verifies that the appended signature trailer is valid. Also, create a CONFIG_MODULE_SIG_FORMAT option so that IMA can select it and be able to use mod_check_sig() without having to depend on either CONFIG_MODULE_SIG or CONFIG_MODULES. s390 duplicated the definition of struct module_signature so now they can use the new <linux/module_signature.h> header instead. Signed-off-by: NThiago Jung Bauermann <bauerman@linux.ibm.com> Acked-by: NJessica Yu <jeyu@kernel.org> Reviewed-by: NPhilipp Rudo <prudo@linux.ibm.com> Cc: Heiko Carstens <heiko.carstens@de.ibm.com> Signed-off-by: NMimi Zohar <zohar@linux.ibm.com>
Showing
include/linux/module_signature.h
0 → 100644
kernel/module_signature.c
0 → 100644
想要评论请 注册 或 登录