diff options
| author | Peter Jones <pjones@redhat.com> | 2022-03-31 16:19:53 -0400 |
|---|---|---|
| committer | Peter Jones <pjones@redhat.com> | 2022-05-17 19:01:03 -0400 |
| commit | df96f48f28fa94b62d06f39a3b014133dd38def5 (patch) | |
| tree | 31e8dc150efa36e57aaa263f18149e4867d6cb42 /Cryptlib | |
| parent | 226fee25ffcbd29988399ba080c7706eb1d52251 (diff) | |
| download | efi-boot-shim-df96f48f28fa94b62d06f39a3b014133dd38def5.tar.gz efi-boot-shim-df96f48f28fa94b62d06f39a3b014133dd38def5.zip | |
Add MokPolicy variable and MOK_POLICY_REQUIRE_NX
This adds a new MoK variable, MokPolicy (&MokPolicyRT) that's intended
as a bitmask of machine owner policy choices, and the bit
MOK_POLICY_REQUIRE_NX. This bit specifies whether it is permissible to
load binaries which do not support NX mitigations, and it currently
defaults to allowing such binaries to be loaded.
The broader intention here is to migrate all of the MoK policy variables
that are really just on/off flags to this variable.
Signed-off-by: Peter Jones <pjones@redhat.com>
Diffstat (limited to 'Cryptlib')
0 files changed, 0 insertions, 0 deletions
