summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorPetr Vorel <pvorel@suse.cz>2019-04-04 20:23:22 +0200
committerMimi Zohar <zohar@linux.ibm.com>2019-04-10 16:41:01 -0400
commit41475a3ebaceb270e47a77356ddc30960354cb00 (patch)
treee938f41afa17d46f1647a46ac8993914f5234d50
parent3d45ad9260c35c597706847e196aae8d966a574f (diff)
downloadlinux-41475a3ebaceb270e47a77356ddc30960354cb00.tar.bz2
doc/kernel-parameters.txt: Deprecate ima_appraise_tcb
Signed-off-by: Petr Vorel <pvorel@suse.cz> Signed-off-by: Mimi Zohar <zohar@linux.ibm.com>
-rw-r--r--Documentation/admin-guide/kernel-parameters.txt5
1 files changed, 2 insertions, 3 deletions
diff --git a/Documentation/admin-guide/kernel-parameters.txt b/Documentation/admin-guide/kernel-parameters.txt
index 2b8ee90bb644..45147fc40a57 100644
--- a/Documentation/admin-guide/kernel-parameters.txt
+++ b/Documentation/admin-guide/kernel-parameters.txt
@@ -1585,7 +1585,7 @@
Format: { "off" | "enforce" | "fix" | "log" }
default: "enforce"
- ima_appraise_tcb [IMA]
+ ima_appraise_tcb [IMA] Deprecated. Use ima_policy= instead.
The builtin appraise policy appraises all files
owned by uid=0.
@@ -1612,8 +1612,7 @@
uid=0.
The "appraise_tcb" policy appraises the integrity of
- all files owned by root. (This is the equivalent
- of ima_appraise_tcb.)
+ all files owned by root.
The "secure_boot" policy appraises the integrity
of files (eg. kexec kernel image, kernel modules,