Re: [RFC PATCH v2 00/13] ima: get rid of hard dependency on SHA-1

2025-03-25 Thread Mimi Zohar
On Sun, 2025-03-23 at 15:08 +0100, Nicolai Stange wrote: > Hi, > > this is v2 of the RFC series to disentangle IMA from its current > dependency on a working SHA-1 implementation. > > For reference, v1 can be found at [1]. > > Several options for when and how to invalidate unsupported TPM PCR ba

[RFC PATCH v2 00/13] ima: get rid of hard dependency on SHA-1

2025-03-23 Thread Nicolai Stange
Hi, this is v2 of the RFC series to disentangle IMA from its current dependency on a working SHA-1 implementation. For reference, v1 can be found at [1]. Several options for when and how to invalidate unsupported TPM PCR banks by extending them with a unique constant had been discussed at the v1