Linux cryptographic layer development
 help / color / mirror / Atom feed
* Kexec_file_load failed with "Missing required AuthAttr"
@ 2016-01-07  5:25 Dave Young
  2016-01-15  8:12 ` Dave Young
  0 siblings, 1 reply; 6+ messages in thread
From: Dave Young @ 2016-01-07  5:25 UTC (permalink / raw)
  To: David Howells
  Cc: xlpang-H+wXaHxf7aLQT0dZR+AlfA,
	kexec-IAPFreCvJWM7uuMidbF8XUB+6BGkLq7r,
	linux-crypto-u79uwXL29TY76Z2rM5mHXA,
	vgoyal-H+wXaHxf7aLQT0dZR+AlfA,
	linux-kernel-u79uwXL29TY76Z2rM5mHXA

Hi,

I saw the warning "Missing required AuthAttr" when testing kexec, known issue?
Idea about how to fix it?

The kernel is latest linus tree plus sevral patches from Toshi to cleanup io resource structure.

in function pkcs7_sig_note_set_of_authattrs():
        if (!test_bit(sinfo_has_content_type, &sinfo->aa_set) ||
            !test_bit(sinfo_has_message_digest, &sinfo->aa_set) ||
            (ctx->msg->data_type == OID_msIndirectData &&
             !test_bit(sinfo_has_ms_opus_info, &sinfo->aa_set))) {
                pr_warn("Missing required AuthAttr\n");
                return -EBADMSG;
        }

The third condition below is true:
(ctx->msg->data_type == OID_msIndirectData &&
             !test_bit(sinfo_has_ms_opus_info, &sinfo->aa_set))

I signed the kernel with redhat test key like below:
pesign -c 'Red Hat Test Certificate' -i arch/x86/boot/bzImage -o /boot/vmlinuz-4.4.0-rc8+ -s --force

Thanks
Dave

^ permalink raw reply	[flat|nested] 6+ messages in thread

end of thread, other threads:[~2016-01-25 14:00 UTC | newest]

Thread overview: 6+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2016-01-07  5:25 Kexec_file_load failed with "Missing required AuthAttr" Dave Young
2016-01-15  8:12 ` Dave Young
2016-01-18 15:49   ` [PATCH] Don't require SpcSpOpusInfo in Authenticode pkcs7 signatures Peter Jones
2016-01-18 15:49   ` Peter Jones
2016-01-19  1:08     ` Dave Young
2016-01-25 14:00       ` Herbert Xu

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox