Re: sign-file and detached PKCS#7 firmware signatures

From: Luis R. Rodriguez
Date: Tue May 19 2015 - 14:35:18 EST



I'll also mention:

---
The $DIGEST_ALGORITHM needs to be supported on the running kernel and
can differ from CONFIG_MODULE_SIG_HASH.
---

As I do no think that is quite obvious to a system integrator at first.

Luis
--
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/