diff options
| author | Alexander Burmashev <alexander.burmashev@oracle.com> | 2020-07-12 15:25:14 +0200 |
|---|---|---|
| committer | Peter Jones <pjones@redhat.com> | 2020-08-04 15:43:49 -0400 |
| commit | 7184a89abf1fff48f48d01045d98e5df3f80a610 (patch) | |
| tree | e2a6bcadd39002df83d4725b991d24a1cef5947e /Cryptlib/OpenSSL/crypto/pqueue/pqueue.h | |
| parent | 290fc70ab6a0276daf6b6532e0d92120c4ed88cc (diff) | |
| download | efi-boot-shim-7184a89abf1fff48f48d01045d98e5df3f80a610.tar.gz efi-boot-shim-7184a89abf1fff48f48d01045d98e5df3f80a610.zip | |
Add support for vendor_db built-in shim whitelist
Potential new signing strategies ( for example signing grub, fwupdate and
vmlinuz with separate certificates ) require shim to support a vendor
provided bundle of trusted certificates and hashes, which allows shim to
"whitelist" EFI binaries matching either certificate by signature, or hash
in the vendor_db.. Functionality is similar to vendor_dbx ( vendor blacklist
). Patch is a polished version of code, authored by P. Jones.
Signed-off-by: Alex Burmashev <alexander.burmashev@oracle.com>
Diffstat (limited to 'Cryptlib/OpenSSL/crypto/pqueue/pqueue.h')
0 files changed, 0 insertions, 0 deletions
