From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: X-Spam-Checker-Version: SpamAssassin 3.4.0 (2014-02-07) on aws-us-west-2-korg-lkml-1.web.codeaurora.org Received: from bombadil.infradead.org (bombadil.infradead.org [198.137.202.133]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by smtp.lore.kernel.org (Postfix) with ESMTPS id 2F895C433EF for ; Fri, 4 Mar 2022 02:05:25 +0000 (UTC) DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=lists.infradead.org; s=bombadil.20210309; h=Sender: Content-Transfer-Encoding:Content-Type:List-Subscribe:List-Help:List-Post: List-Archive:List-Unsubscribe:List-Id:MIME-Version:Message-Id:Date:Subject:Cc :To:From:Reply-To:Content-ID:Content-Description:Resent-Date:Resent-From: Resent-Sender:Resent-To:Resent-Cc:Resent-Message-ID:In-Reply-To:References: List-Owner; bh=Ua9RdwX+0/tAwpRj1eeZqumJHS8QGJFaXuhBw59bWcE=; b=Ur5dTsi1a7f4di zPj57+NWiziusZ2wTTbqRTtOYmNhYPyY+IE1EelqSOZ3yaBb543qWkSDHH3E7aLeCeg0+ERUXwVib 6vLMNBHW/NA7Qngesvw/pulUbibGuW8MFN0yIYxJ/oNj8qdJdT5IW2YbMUn3t6QbTC0Qzstmo+vtt i0IMcw10RbR0uvk9mnx6YHxPJdyN2s3MrOZ2SRt6piocTXNe4ORr5LLp8TsWD2Oo0Noa/K9EKOHLy caQI2O7IXzA9gIyAL7qNk58yhfirgEKHhKvZ3dfNAxVPL9qLKOlnoycLoaEbD2qlWNhPd+siHESl9 iaGSaRiJN8hs7Nq8BywA==; Received: from localhost ([::1] helo=bombadil.infradead.org) by bombadil.infradead.org with esmtp (Exim 4.94.2 #2 (Red Hat Linux)) id 1nPxIV-008HAL-Ie; Fri, 04 Mar 2022 02:03:59 +0000 Received: from mail-pf1-x434.google.com ([2607:f8b0:4864:20::434]) by bombadil.infradead.org with esmtps (Exim 4.94.2 #2 (Red Hat Linux)) id 1nPxIM-008H9T-T5; Fri, 04 Mar 2022 02:03:52 +0000 Received: by mail-pf1-x434.google.com with SMTP id p8so6335346pfh.8; Thu, 03 Mar 2022 18:03:49 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20210112; h=from:to:cc:subject:date:message-id:mime-version :content-transfer-encoding; bh=dQEhPlo2+wuSCot//IBiYNwNqEUPPTwz5jN+r3Nok6w=; b=p8PVb+o2blsbdBmnZzlQ9UJMb0rLml0r/kebkv+W4Fz0/9px6bLcfrXnCSn7wfAYoj Nwb/fPUYsPthKuYpYk5ot5Xn+RoFxRtV69W+evSR0w0E5BtjiZoDSSMId8D7WnCwHlXr mi1MoGxQxIix0i19pygwR/6Mik+ek/p3pguJoDWHZNVi2vX35UPrWuuW18ZZWksIWwDT fRWIPtbye6+JzZtxSQTclmPYcKHpf6lm62Kqm+LR/w+ET5jWB0m/TGUxcOtx/JrkHl8Y foo9cfyTCzNM/ms+VaGyfqa9VKfZXmq+Owgu6UvZT1hqco4is5lxM2QDAYv6EuBvd8Ca Q8Tw== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20210112; h=x-gm-message-state:from:to:cc:subject:date:message-id:mime-version :content-transfer-encoding; bh=dQEhPlo2+wuSCot//IBiYNwNqEUPPTwz5jN+r3Nok6w=; b=qimFgszaOr+GLj/DEMTkk1OBroo2H7sz/7p2udERQogb6bG30kBbLekNgBvqvH6OR+ 7A6NawR0mHIQYGHCUT/RaxY/olA/y2RAiN7Ews18lh2WJR1J1p8uHvGvripjwZfNLs+9 rsvNtYhi1UTgOqgyKGI1nmY7zoFN9Bs0sr68Z8QUH2WAHwdxjCUa7S2Eg4qttUzPXD80 +DDAq5sD9fLhZ9sn/CQb17/0sBrsVr6Qz+4aql/xmjtnh58Bpgx0TiII+UUHVyN/xy6u DiIglnAC8Rslga+V1bm5POLnmrba7Tls3Ewq2B8jtl/wLKcgcQU2M1czlGH8YIjfuQ3h Dhww== X-Gm-Message-State: AOAM533dCj2lyCfiK90kgs+hv7dIWWi2MDqNi5kopvWeAzzizMttWPiS WNyUfLTnZWGDMPLNDXqF5dYZjDDWAFRdP+Fi X-Google-Smtp-Source: ABdhPJxFD9cGM9f0szbkl8a1qik3dQIvc2EnH+unucyLRvngmW7sTLK12VBBB5ALxMPh2RpOBHDavQ== X-Received: by 2002:a05:6a00:1307:b0:4b0:b1c:6fd9 with SMTP id j7-20020a056a00130700b004b00b1c6fd9mr41090584pfu.27.1646359429269; Thu, 03 Mar 2022 18:03:49 -0800 (PST) Received: from localhost ([240e:3a1:2e5:800:f995:6136:f760:a3d0]) by smtp.gmail.com with ESMTPSA id b21-20020a17090a551500b001b90ef40301sm3434226pji.22.2022.03.03.18.03.47 (version=TLS1_3 cipher=TLS_AES_256_GCM_SHA384 bits=256/256); Thu, 03 Mar 2022 18:03:48 -0800 (PST) From: Coiby Xu To: kexec@lists.infradead.org Cc: linux-arm-kernel@lists.infradead.org, Baoquan He , Dave Young , Will Deacon , "Eric W . Biederman" Subject: [RESEND PATCH v3 0/3] use more system keyrings to verify arm64 kdump kernel image signature Date: Fri, 4 Mar 2022 10:03:38 +0800 Message-Id: <20220304020341.85583-1-coiby.xu@gmail.com> X-Mailer: git-send-email 2.34.1 MIME-Version: 1.0 X-CRM114-Version: 20100106-BlameMichelson ( TRE 0.8.0 (BSD) ) MR-646709E3 X-CRM114-CacheID: sfid-20220303_180350_981650_C4ECD7A9 X-CRM114-Status: UNSURE ( 8.00 ) X-CRM114-Notice: Please train this message. X-BeenThere: linux-arm-kernel@lists.infradead.org X-Mailman-Version: 2.1.34 Precedence: list List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Content-Type: text/plain; charset="us-ascii" Content-Transfer-Encoding: 7bit Sender: "linux-arm-kernel" Errors-To: linux-arm-kernel-bounces+linux-arm-kernel=archiver.kernel.org@lists.infradead.org This patch set allows arm64 to use more system keyrings to verify kdump kernel image signature by making the existing code in x64 public. v3: - s/arch_kexec_kernel_verify_pe_sig/kexec_kernel_verify_pe_sig [Eric] - clean up arch_kexec_kernel_verify_sig [Eric] v2: - only x86_64 and arm64 need to enable PE file signature check [Dave] Coiby Xu (3): kexec: clean up arch_kexec_kernel_verify_sig kexec, KEYS: make the code in bzImage64_verify_sig generic arm64: kexec_file: use more system keyrings to verify kernel image signature arch/arm64/kernel/kexec_image.c | 4 +-- arch/x86/kernel/kexec-bzimage64.c | 13 +------- include/linux/kexec.h | 7 +++-- kernel/kexec_file.c | 51 ++++++++++++++++++------------- 4 files changed, 37 insertions(+), 38 deletions(-) -- 2.34.1 _______________________________________________ linux-arm-kernel mailing list linux-arm-kernel@lists.infradead.org http://lists.infradead.org/mailman/listinfo/linux-arm-kernel