ima: limit secure boot feedback scope for appraise
authorBruno Meneguele <bmeneg@redhat.com>
Sat, 5 Sep 2020 01:20:20 +0000 (22:20 -0300)
committerMimi Zohar <zohar@linux.ibm.com>
Thu, 10 Sep 2020 00:01:55 +0000 (20:01 -0400)
commite4d7e2df3a0903601bf12eb6ef1f0c8fa1042204
tree47b5cef9ab3a14b5fa00994f531cc4ee865b6ef5
parent7fe2bb7e7e5cf91d03ff9c35b7b997d088916cbc
ima: limit secure boot feedback scope for appraise

Only emit an unknown/invalid message when setting the IMA appraise mode
to anything other than "enforce", when secureboot is enabled.

Signed-off-by: Bruno Meneguele <bmeneg@redhat.com>
[zohar@linux.ibm.com: updated commit message]
Signed-off-by: Mimi Zohar <zohar@linux.ibm.com>
security/integrity/ima/ima_appraise.c