Commit 41475a3e authored by Petr Vorel's avatar Petr Vorel Committed by Mimi Zohar
Browse files

doc/kernel-parameters.txt: Deprecate ima_appraise_tcb



Signed-off-by: default avatarPetr Vorel <pvorel@suse.cz>
Signed-off-by: default avatarMimi Zohar <zohar@linux.ibm.com>
parent 3d45ad92
Loading
Loading
Loading
Loading
+2 −3
Original line number Diff line number Diff line
@@ -1585,7 +1585,7 @@
			Format: { "off" | "enforce" | "fix" | "log" }
			default: "enforce"

	ima_appraise_tcb [IMA]
	ima_appraise_tcb [IMA] Deprecated.  Use ima_policy= instead.
			The builtin appraise policy appraises all files
			owned by uid=0.

@@ -1612,8 +1612,7 @@
			uid=0.

			The "appraise_tcb" policy appraises the integrity of
			all files owned by root. (This is the equivalent
			of ima_appraise_tcb.)
			all files owned by root.

			The "secure_boot" policy appraises the integrity
			of files (eg. kexec kernel image, kernel modules,