action #101148
closed
[sle][security][sle15sp4][feature][manual]: Apply ima_measure_critical_data patches [aarch64 only]
Added by rfan1 about 3 years ago.
Updated almost 3 years ago.
Description
https://jira.suse.com/browse/SLE-18388
Only need test on aarch64. we may have the kernel configuration already:
#cat /boot/config-5.14.5-1-default |grep CONFIG_IMA_QUEUE_EARLY_BOOT_KEYS=y
CONFIG_IMA_QUEUE_EARLY_BOOT_KEYS=y
Will try to double check this parameter as well on all other platform via openqa automation run.
no other function test requirements for now
- Status changed from New to In Progress
- Estimated time changed from 3.00 h to 10.00 h
Plan to do more tests upon checking kernel config
- Subject changed from [sle][security][sle15sp4]: Apply ima_measure_critical_data patches [aarch64 only] to [sle][security][sle15sp4][feature]: Apply ima_measure_critical_data patches [aarch64 only]
Added kernel parameter "ima_policy=critical_data" to see if any boot failure and measurement logs
- Subject changed from [sle][security][sle15sp4][feature]: Apply ima_measure_critical_data patches [aarch64 only] to [sle][security][sle15sp4][feature][manual]: Apply ima_measure_critical_data patches [aarch64 only]
- Copied to action #102707: [sle][security][sle15sp4][feature][automation]: Apply ima_measure_critical_data patches [aarch64 only] added
- Status changed from In Progress to Resolved
- % Done changed from 0 to 100
- Estimated time changed from 10.00 h to 12.00 h
Also available in: Atom
PDF