Lines Matching full:evm
1 What: /sys/kernel/security/evm
2 What: /sys/kernel/security/*/evm
6 EVM protects a file's security extended attributes(xattrs)
9 value as the extended attribute 'security.evm'.
11 EVM supports two classes of security.evm. The first is
17 keyring using keyctl, and EVM is then enabled by
18 echoing a value to <securityfs>/evm made up of the
26 2 Permit modification of EVM-protected metadata at
29 31 Disable further runtime modification of EVM policy
34 echo 1 ><securityfs>/evm
40 echo 0x80000003 ><securityfs>/evm
47 echo 0x80000006 ><securityfs>/evm
50 modification of EVM-protected metadata and
54 echo 0x80000002 ><securityfs>/evm
56 as the outstanding issues that prevent the usage of EVM portable
64 echo 2 ><securityfs>/evm
68 echo 1 ><securityfs>/evm
77 echo 1 ><securityfs>/evm
84 Until key loading has been signaled EVM can not create
85 or validate the 'security.evm' xattr, but returns
86 INTEGRITY_UNKNOWN. Loading keys and signaling EVM
97 What: /sys/kernel/security/*/evm/evm_xattrs
102 validate the EVM signature, and allows additional attributes