Files
meta-secure-core/meta-integrity/recipes-base/packagegroups/packagegroup-ima.bb
Dmitry Eremin-Solenikov 24d27e9f97 packagegroup-ima: RRECOMMEND certificates rather than private keys
Do not even try pulling private keys into rootfs.

Signed-off-by: Dmitry Eremin-Solenikov <dmitry_eremin-solenikov@mentor.com>
2019-09-16 14:07:11 +03:00

21 lines
414 B
BlitzBasic

DESCRIPTION = "Linux Integrity Measurement Architecture (IMA) subsystem"
include packagegroup-ima.inc
DEPENDS += "\
ima-evm-utils-native \
attr-native \
"
RDEPENDS_${PN} += "\
attr \
ima-inspect \
util-linux-switch-root.static \
"
# Note any private key is not available if user key signing model used.
RRECOMMENDS_${PN} += "\
key-store-ima-cert \
key-store-system-trusted-cert \
"