From mboxrd@z Thu Jan 1 00:00:00 1970
Return-Path:
Received: from lists.gentoo.org (pigeon.gentoo.org [208.92.234.80])
by finch.gentoo.org (Postfix) with ESMTP id A53F11381FB
for ; Thu, 27 Dec 2012 20:32:50 +0000 (UTC)
Received: from pigeon.gentoo.org (localhost [127.0.0.1])
by pigeon.gentoo.org (Postfix) with SMTP id A47D021C27D;
Thu, 27 Dec 2012 20:32:42 +0000 (UTC)
Received: from smtp.gentoo.org (smtp.gentoo.org [140.211.166.183])
(using TLSv1 with cipher AECDH-AES256-SHA (256/256 bits))
(No client certificate requested)
by pigeon.gentoo.org (Postfix) with ESMTPS id 0706D21C28D
for ; Thu, 27 Dec 2012 20:32:41 +0000 (UTC)
Received: from flycatcher.gentoo.org (flycatcher.gentoo.org [81.93.255.6])
(using TLSv1 with cipher AECDH-AES256-SHA (256/256 bits))
(No client certificate requested)
by smtp.gentoo.org (Postfix) with ESMTPS id EBBCF33C3B4
for ; Thu, 27 Dec 2012 20:32:40 +0000 (UTC)
Received: by flycatcher.gentoo.org (Postfix, from userid 617)
id B3A2C2171D; Thu, 27 Dec 2012 20:32:39 +0000 (UTC)
From: "Sven Vermeulen (swift)"
To: gentoo-commits@lists.gentoo.org
Reply-To: gentoo-dev@lists.gentoo.org, swift@gentoo.org
Subject: [gentoo-commits] gentoo commit in xml/htdocs/proj/en/hardened/integrity/docs: ima-guide.xml
X-VCS-Repository: gentoo
X-VCS-Files: ima-guide.xml
X-VCS-Directories: xml/htdocs/proj/en/hardened/integrity/docs
X-VCS-Committer: swift
X-VCS-Committer-Name: Sven Vermeulen
Content-Type: text/plain; charset=utf8
Content-Transfer-Encoding: 8bit
Message-Id: <20121227203239.B3A2C2171D@flycatcher.gentoo.org>
Date: Thu, 27 Dec 2012 20:32:39 +0000 (UTC)
Precedence: bulk
List-Post:
List-Help:
List-Unsubscribe:
List-Subscribe:
List-Id: Gentoo Linux mail
X-BeenThere: gentoo-commits@lists.gentoo.org
X-Archives-Salt: 923e8160-321e-427e-a51e-e473d710c0e6
X-Archives-Hash: f1a4dea3dab714fbf23b2847c16db13b
swift 12/12/27 20:32:39
Modified: ima-guide.xml
Log:
Further updates on IMA
Revision Changes Path
1.3 xml/htdocs/proj/en/hardened/integrity/docs/ima-guide.xml
file : http://sources.gentoo.org/viewvc.cgi/gentoo/xml/htdocs/proj/en/hardened/integrity/docs/ima-guide.xml?rev=1.3&view=markup
plain: http://sources.gentoo.org/viewvc.cgi/gentoo/xml/htdocs/proj/en/hardened/integrity/docs/ima-guide.xml?rev=1.3&content-type=text/plain
diff : http://sources.gentoo.org/viewvc.cgi/gentoo/xml/htdocs/proj/en/hardened/integrity/docs/ima-guide.xml?r1=1.2&r2=1.3
Index: ima-guide.xml
===================================================================
RCS file: /var/cvsroot/gentoo/xml/htdocs/proj/en/hardened/integrity/docs/ima-guide.xml,v
retrieving revision 1.2
retrieving revision 1.3
diff -u -r1.2 -r1.3
--- ima-guide.xml 26 Dec 2012 20:07:30 -0000 1.2
+++ ima-guide.xml 27 Dec 2012 20:32:39 -0000 1.3
@@ -1,6 +1,6 @@
-
+
Using Integrity Measurement Architecture in Gentoo
@@ -21,8 +21,8 @@
-2
-2012-12-26
+3
+2012-12-27
Purpose of IMA
@@ -48,8 +48,8 @@
-With a pending patch, called the IMA appraisal patch,
-the IMA subsystem can even register the measured
+Since kernel 3.7, an additional patch, called the IMA appraisal patch,
+has been merged within the IMA subsystem so it can even register the measured
value as an extended attribute, and after subsequent measurement(s)
validate this extended attribute against the measured value and refuse
to load the file (or execute the application) if the hash does not match.
@@ -81,6 +81,36 @@