diff for duplicates of <1511186020.4729.66.camel@linux.vnet.ibm.com> diff --git a/a/1.txt b/N1/1.txt index d7e556f..e779469 100644 --- a/a/1.txt +++ b/N1/1.txt @@ -21,7 +21,7 @@ On Mon, 2017-11-20 at 10:40 +0100, Roberto Sassu wrote: There are a number of people interested in extending CPIO to support extended attributes, not just for IMA-appraisal. (Years ago I started -but unfortunately haven't had time to finish it.) Isn't the right +but unfortunately haven't had time to finish it.) ?Isn't the right solution to add extended attribute support to CPIO? > The second reason is that appraisal has to be temporarily disabled @@ -37,8 +37,13 @@ keyring, it is safe to load them on the IMA keyring without first validating the file signature. Once a public key is loaded on the IMA keyring, all other file -signatures can be appraised. There's no need for treating the digest +signatures can be appraised. ?There's no need for treating the digest list file any differently than other files, as there is for the x509 certificate. Mimi + +-- +To unsubscribe from this list: send the line "unsubscribe linux-security-module" in +the body of a message to majordomo at vger.kernel.org +More majordomo info at http://vger.kernel.org/majordomo-info.html diff --git a/a/content_digest b/N1/content_digest index 6da2661..41c8a9a 100644 --- a/a/content_digest +++ b/N1/content_digest @@ -3,17 +3,10 @@ "ref\020171118042030.GA13456@mail.hallyn.com\0" "ref\01511047410.5920.111.camel@linux.vnet.ibm.com\0" "ref\0175600e1-c472-69fc-2b4d-4255d8e827b5@huawei.com\0" - "From\0Mimi Zohar <zohar@linux.vnet.ibm.com>\0" - "Subject\0Re: [PATCH v2 06/15] ima: add parser of digest lists metadata\0" + "From\0zohar@linux.vnet.ibm.com (Mimi Zohar)\0" + "Subject\0[PATCH v2 06/15] ima: add parser of digest lists metadata\0" "Date\0Mon, 20 Nov 2017 08:53:40 -0500\0" - "To\0Roberto Sassu <roberto.sassu@huawei.com>" - " Serge E. Hallyn <serge@hallyn.com>\0" - "Cc\0linux-integrity@vger.kernel.org" - linux-security-module@vger.kernel.org - linux-fsdevel@vger.kernel.org - linux-doc@vger.kernel.org - linux-kernel@vger.kernel.org - " silviu.vlasceanu@huawei.com\0" + "To\0linux-security-module@vger.kernel.org\0" "\00:1\0" "b\0" "On Mon, 2017-11-20 at 10:40 +0100, Roberto Sassu wrote:\n" @@ -39,7 +32,7 @@ "\n" "There are a number of people interested in extending CPIO to support\n" "extended attributes, not just for IMA-appraisal. (Years ago I started\n" - "but unfortunately haven't had time to finish it.) Isn't the right\n" + "but unfortunately haven't had time to finish it.) ?Isn't the right\n" "solution to add extended attribute support to CPIO?\n" "\n" "> The second reason is that appraisal has to be temporarily disabled\n" @@ -55,10 +48,15 @@ "validating the file signature.\n" "\n" "Once a public key is loaded on the IMA keyring, all other file\n" - "signatures can be appraised. There's no need for treating the digest\n" + "signatures can be appraised. ?There's no need for treating the digest\n" "list file any differently than other files, as there is for the x509\n" "certificate.\n" "\n" - Mimi + "Mimi\n" + "\n" + "--\n" + "To unsubscribe from this list: send the line \"unsubscribe linux-security-module\" in\n" + "the body of a message to majordomo at vger.kernel.org\n" + More majordomo info at http://vger.kernel.org/majordomo-info.html -ab3eb14bd11ba25906fa291d1be6f42aef53dd9a02b0a50afdfb05c361f77f13 +850804438f4e11824c044c5a18239a76e106e6307f959f9f5e3f564bf548d0a7
diff --git a/a/1.txt b/N2/1.txt index d7e556f..59747bc 100644 --- a/a/1.txt +++ b/N2/1.txt @@ -21,7 +21,7 @@ On Mon, 2017-11-20 at 10:40 +0100, Roberto Sassu wrote: There are a number of people interested in extending CPIO to support extended attributes, not just for IMA-appraisal. (Years ago I started -but unfortunately haven't had time to finish it.) Isn't the right +but unfortunately haven't had time to finish it.) Isn't the right solution to add extended attribute support to CPIO? > The second reason is that appraisal has to be temporarily disabled @@ -37,7 +37,7 @@ keyring, it is safe to load them on the IMA keyring without first validating the file signature. Once a public key is loaded on the IMA keyring, all other file -signatures can be appraised. There's no need for treating the digest +signatures can be appraised. There's no need for treating the digest list file any differently than other files, as there is for the x509 certificate. diff --git a/a/content_digest b/N2/content_digest index 6da2661..da15e12 100644 --- a/a/content_digest +++ b/N2/content_digest @@ -39,7 +39,7 @@ "\n" "There are a number of people interested in extending CPIO to support\n" "extended attributes, not just for IMA-appraisal. (Years ago I started\n" - "but unfortunately haven't had time to finish it.) Isn't the right\n" + "but unfortunately haven't had time to finish it.) \302\240Isn't the right\n" "solution to add extended attribute support to CPIO?\n" "\n" "> The second reason is that appraisal has to be temporarily disabled\n" @@ -55,10 +55,10 @@ "validating the file signature.\n" "\n" "Once a public key is loaded on the IMA keyring, all other file\n" - "signatures can be appraised. There's no need for treating the digest\n" + "signatures can be appraised. \302\240There's no need for treating the digest\n" "list file any differently than other files, as there is for the x509\n" "certificate.\n" "\n" Mimi -ab3eb14bd11ba25906fa291d1be6f42aef53dd9a02b0a50afdfb05c361f77f13 +a2d380c677fd58228d956e3d149ef9cfbb361a2d9efc6e01e40a0c89e9ba6f01
This is an external index of several public inboxes, see mirroring instructions on how to clone and mirror all data and code used by this external index.