summaryrefslogtreecommitdiff
path: root/Cryptlib/OpenSSL/crypto/pqueue/pqueue.h
diff options
context:
space:
mode:
authorAlexander Burmashev <alexander.burmashev@oracle.com>2020-07-12 15:25:14 +0200
committerPeter Jones <pjones@redhat.com>2020-08-04 15:43:49 -0400
commit7184a89abf1fff48f48d01045d98e5df3f80a610 (patch)
treee2a6bcadd39002df83d4725b991d24a1cef5947e /Cryptlib/OpenSSL/crypto/pqueue/pqueue.h
parent290fc70ab6a0276daf6b6532e0d92120c4ed88cc (diff)
downloadefi-boot-shim-7184a89abf1fff48f48d01045d98e5df3f80a610.tar.gz
efi-boot-shim-7184a89abf1fff48f48d01045d98e5df3f80a610.zip
Add support for vendor_db built-in shim whitelist
Potential new signing strategies ( for example signing grub, fwupdate and vmlinuz with separate certificates ) require shim to support a vendor provided bundle of trusted certificates and hashes, which allows shim to "whitelist" EFI binaries matching either certificate by signature, or hash in the vendor_db.. Functionality is similar to vendor_dbx ( vendor blacklist ). Patch is a polished version of code, authored by P. Jones. Signed-off-by: Alex Burmashev <alexander.burmashev@oracle.com>
Diffstat (limited to 'Cryptlib/OpenSSL/crypto/pqueue/pqueue.h')
0 files changed, 0 insertions, 0 deletions