[linux] 02/03: [amd64] Enable SIGNED_PE_FILE_VERIFICATION, KEXEC_FILE, KEXEC_VERIFY_SIG, KEXEC_BZIMAGE_VERIFY_SIG

debian-kernel at lists.debian.org debian-kernel at lists.debian.org
Fri Sep 9 09:10:48 UTC 2016


This is an automated email from the git hooks/post-receive script.

benh pushed a commit to branch sid
in repository linux.

commit db336de1541f8f84b497a21910556b254962b42a
Author: Ben Hutchings <ben at decadent.org.uk>
Date:   Wed Sep 7 22:09:23 2016 +0100

    [amd64] Enable SIGNED_PE_FILE_VERIFICATION, KEXEC_FILE, KEXEC_VERIFY_SIG, KEXEC_BZIMAGE_VERIFY_SIG
---
 debian/changelog           | 2 ++
 debian/config/amd64/config | 8 ++++++++
 2 files changed, 10 insertions(+)

diff --git a/debian/changelog b/debian/changelog
index 7eeeca9..844bb9b 100644
--- a/debian/changelog
+++ b/debian/changelog
@@ -118,6 +118,8 @@ linux (4.7.3-1) UNRELEASED; urgency=medium
 
   [ Ben Hutchings ]
   * [arm64] Add cpu_to_fdt32() when setting Secure Boot flag in FDT
+  * [amd64] Enable SIGNED_PE_FILE_VERIFICATION, KEXEC_FILE,
+    KEXEC_VERIFY_SIG, KEXEC_BZIMAGE_VERIFY_SIG
 
  -- Ben Hutchings <ben at decadent.org.uk>  Sat, 03 Sep 2016 18:34:31 +0100
 
diff --git a/debian/config/amd64/config b/debian/config/amd64/config
index 9c0367c..8e10c28 100644
--- a/debian/config/amd64/config
+++ b/debian/config/amd64/config
@@ -14,6 +14,9 @@ CONFIG_AMD_NUMA=y
 CONFIG_X86_64_ACPI_NUMA=y
 CONFIG_NUMA_EMU=y
 CONFIG_EFI_MIXED=y
+CONFIG_KEXEC_FILE=y
+CONFIG_KEXEC_VERIFY_SIG=y
+CONFIG_KEXEC_BZIMAGE_VERIFY_SIG=y
 CONFIG_PCI_MMCONFIG=y
 CONFIG_ISA_DMA_API=y
 CONFIG_X86_X32=y
@@ -62,6 +65,11 @@ CONFIG_CRYPTO_TWOFISH_X86_64_3WAY=m
 CONFIG_CRYPTO_TWOFISH_AVX_X86_64=m
 
 ##
+## file: crypto/asymmetric_keys/Kconfig
+##
+CONFIG_SIGNED_PE_FILE_VERIFICATION=y
+
+##
 ## file: drivers/acpi/Kconfig
 ##
 CONFIG_ACPI_BGRT=y

-- 
Alioth's /usr/local/bin/git-commit-notice on /srv/git.debian.org/git/kernel/linux.git



More information about the Kernel-svn-changes mailing list