RE: [PATCH v2 00/11] ima: appraisal extension

From: Ryan Ware
Date: Tue Mar 13 2012 - 05:43:54 EST




> -----Original Message-----
> From: linux-security-module-owner@xxxxxxxxxxxxxxx [mailto:linux-security-
> module-owner@xxxxxxxxxxxxxxx] On Behalf Of James Morris
> Sent: Wednesday, March 07, 2012 12:08 PM
> To: Mimi Zohar
> Cc: linux-security-module@xxxxxxxxxxxxxxx; linux-kernel@xxxxxxxxxxxxxxx;
> linux-fsdevel@xxxxxxxxxxxxxxx; David Safford; Kasatkin, Dmitry
> Subject: Re: [PATCH v2 00/11] ima: appraisal extension
>
> On Thu, 1 Mar 2012, Mimi Zohar wrote:
>
> > IMA currently maintains an integrity measurement list used to assert
> > the integrity of the running system to a third party. The
> > IMA-appraisal extension adds local integrity validation and
> > enforcement of the measurement against a "good" value stored as an
> > extended attribute 'security.ima'.
>
> Do you know if any distros are planning on integrating EVM/IMA?
>
> What about Tizen ? The now defunct MeeGo project weas previously the main
> intended user.

James, we are intending on incorporating this into Tizen for product
verticals that require the additional integrity protections these features
provide.

Ryan

--
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/