> Key payloads sit in memory in plain text for as long as the key exists, > and a kdump crash dump captures them along with everything else. > > Allocate the payloads of the user-defined, trusted and encrypted key > types from the new secret pool, so that their backing pages are marked > by crash_memaction for the kdump kernel to wipe. > > This commit covers the key types used by dm-crypt/cryptsetup. Additional > key types can be added if needed in future commits. > > Signed-off-by: Jan Sebastian Götte <[email protected]>
Sashiko has reviewed this patch and found no issues. It looks great! -- Sashiko AI review · https://sashiko.dev/#/patchset/20260928-crash-memaction-upstream-20260921-v3-0-e511e9ee2...@jaseg.de?part=7

