IMA: allow reading back the current IMA policy
It is often useful to be able to read back the IMA policy. It is even more important after introducing CONFIG_IMA_WRITE_POLICY. This option allows the root user to see the current policy rules. Signed-off-by:Zbigniew Jasinski <z.jasinski@samsung.com> Signed-off-by:
Petko Manolov <petkan@mip-labs.com> Signed-off-by:
Mimi Zohar <zohar@linux.vnet.ibm.com>
Showing
- security/integrity/ima/Kconfig 10 additions, 0 deletionssecurity/integrity/ima/Kconfig
- security/integrity/ima/ima.h 13 additions, 2 deletionssecurity/integrity/ima/ima.h
- security/integrity/ima/ima_fs.c 25 additions, 4 deletionssecurity/integrity/ima/ima_fs.c
- security/integrity/ima/ima_policy.c 205 additions, 2 deletionssecurity/integrity/ima/ima_policy.c
Loading
Please register or sign in to comment