diff options
author | Mimi Zohar <zohar@linux.vnet.ibm.com> | 2013-08-20 14:36:27 -0400 |
---|---|---|
committer | Mimi Zohar <zohar@linux.vnet.ibm.com> | 2014-07-17 09:35:15 -0400 |
commit | be807708895f8ae1f3dc38785582b3f3c7b5d5e3 (patch) | |
tree | 88e5b32768c63aea14e1d4bc35412bc2c6507ad2 /crypto/async_tx | |
parent | 9b40a3dd3d4e3ff9904e049f6794c972b603272f (diff) | |
download | linux-crypto-be807708895f8ae1f3dc38785582b3f3c7b5d5e3.tar.gz linux-crypto-be807708895f8ae1f3dc38785582b3f3c7b5d5e3.zip |
KEYS: verify a certificate is signed by a 'trusted' key
Only public keys, with certificates signed by an existing
'trusted' key on the system trusted keyring, should be added
to a trusted keyring. This patch adds support for verifying
a certificate's signature.
This is derived from David Howells pkcs7_request_asymmetric_key() patch.
Changelog v6:
- on error free key - Dmitry
- validate trust only for not already trusted keys - Dmitry
- formatting cleanup
Changelog:
- define get_system_trusted_keyring() to fix kbuild issues
Signed-off-by: Mimi Zohar <zohar@linux.vnet.ibm.com>
Signed-off-by: David Howells <dhowells@redhat.com>
Acked-by: Dmitry Kasatkin <dmitry.kasatkin@gmail.com>
Diffstat (limited to 'crypto/async_tx')
0 files changed, 0 insertions, 0 deletions