summaryrefslogtreecommitdiffstats
Commit message (Expand)AuthorAgeFilesLines
...
* ima_policy: update the commentLans Zhang2017-08-151-1/+2
* meta-integrity/README.md: updateLans Zhang2017-08-151-15/+14
* sbsigntool: update to support openssl-1.1.0Lans Zhang2017-08-153-0/+209
* meta-integrity/README.md: updateLans Zhang2017-08-151-30/+38
* meta-signing-key: clean up the default values of sample RPM signing keyLans Zhang2017-08-151-1/+2
* meta-signing-key: renew the sample keys for UEFI Secure BootLans Zhang2017-08-146-127/+129
* create-user-key-store.sh: gpg key creation updatesLans Zhang2017-08-112-20/+34
* shim: refresh fallback patchsetLans Zhang2017-08-116-14/+294
* init: don't explicitly set the LUKS partition nameLans Zhang2017-08-091-1/+1
* cryptfs-tpm2: sync up with upstreamLans Zhang2017-08-091-1/+1
* shim: sync up with upstreamLans Zhang2017-08-091-2/+2
* systemd: work around circular dependency chains found if systemd is configure...Lans Zhang2017-08-091-4/+4
* systemd: fix the conditions of PACKAGECONFIG for ima and cryptsetupLans Zhang2017-08-042-2/+2
* systemd: enable ima and cryptsetupLans Zhang2017-08-042-0/+8
* cryptsetup: depend on lvm2 to include dmsetupLans Zhang2017-08-041-0/+1
* cryptfs-tpm2: fix RDEPENDSLans Zhang2017-08-041-5/+2
* meta-encrypted-storage: depend on meta-oeLans Zhang2017-08-041-0/+1
* kernel-initramfs: set the default priority to -1Lans Zhang2017-08-031-0/+2
* shim: sync up with upstreamLans Zhang2017-08-032-8/+8
* shim: don't set CSV boot entry as the first boot optionLans Zhang2017-08-012-0/+50
* create-user-key-store.sh: self-sign KEK and DBLans Zhang2017-08-011-2/+2
* README.md: simplify the commits for boot flowLans Zhang2017-07-311-5/+5
* rpm: remove PACKAGECONFIG[imaevm]Lans Zhang2017-07-281-1/+0
* meta-secure-core: code style fixupLans Zhang2017-07-287-24/+27
* grub-efi: remove the depreciated replacement for initrd= parameterLans Zhang2017-07-281-7/+1
* grub/boot-menu.inc: use linux and initrd commands instead of chainloader to b...Lans Zhang2017-07-271-2/+4
* tpm2.0-tss: remove systemd from inherit commandLans Zhang2017-07-271-1/+1
* packagegroup-encrypted-storage.inc: add cryptfs-tpm2Lans Zhang2017-07-271-0/+4
* initrdscripts-secure-core: install udevd and udevadm provided by either eudev...Lans Zhang2017-07-261-3/+2
* initrdscripts-secure-core: don't install sysvinitLans Zhang2017-07-261-2/+0
* user-key-store.bbclass: set SYSTEM_TRUSTED only if ima is configuredLans Zhang2017-07-251-1/+1
* user-key-store.bbclass: don't run check_deploy_keys in parallelLans Zhang2017-07-251-0/+2
* IMA: move the default policy file to /etc/ima directoryLans Zhang2017-07-252-8/+10
* meta-efi-secure-boot/README: update to reflect using fallback to chainloader ...Lans Zhang2017-07-251-12/+17
* shim: use fallback loading SELoaderLans Zhang2017-07-244-24/+69
* sbsigntool: code style fixupLans Zhang2017-07-241-21/+40
* efivar: clean upLans Zhang2017-07-242-57/+0
* meta-efi-secure-boot: depend on meta-perlLans Zhang2017-07-242-17/+1
* shim: update to the latestLans Zhang2017-07-242-35/+2
* openssl-tpm-engine: fix cmdline parsing failure on arm platformLans Zhang2017-07-212-0/+35
* tpm2simulator: add the native buildLans Zhang2017-07-212-0/+65
* trouser: a minor fix for debug packageLans Zhang2017-07-211-1/+1
* IMA: allow to write policy but deny to read policyLans Zhang2017-07-201-1/+1
* meta-tpm2: code style fixupLans Zhang2017-07-206-6/+9
* tss2.0-tss: don't create tss user accountLans Zhang2017-07-201-6/+0
* tpm2-abrmd: update to the latest and code style fixupLans Zhang2017-07-202-326/+39
* tpm2.0-tools: clean up .m4Lans Zhang2017-07-204-232/+2
* tpm2.0-tss: update to the latest and code style fixupLans Zhang2017-07-207-642/+45
* tpm2.0-tools: update to the latest and code style fixupLans Zhang2017-07-203-43/+31
* meta-secure-core: define the oe index nameLans Zhang2017-07-207-0/+16