KEYS: CA link restriction
authorEric Snowberg <eric.snowberg@oracle.com>
Thu, 2 Mar 2023 16:46:51 +0000 (11:46 -0500)
committerJarkko Sakkinen <jarkko@kernel.org>
Mon, 24 Apr 2023 13:15:53 +0000 (16:15 +0300)
commit76adb2fbc69a13c80b39042aab4d34e99309c8d4
tree3b3400c19916ea1a2db285fdb7d324c5642cad15
parent567671281a751b80918a4531c4ba84b90a2a42c0
KEYS: CA link restriction

Add a new link restriction.  Restrict the addition of keys in a keyring
based on the key to be added being a CA.

Signed-off-by: Eric Snowberg <eric.snowberg@oracle.com>
Reviewed-by: Mimi Zohar <zohar@linux.ibm.com>
Reviewed-by: Jarkko Sakkinen <jarkko@kernel.org>
Tested-by: Mimi Zohar <zohar@linux.ibm.com>
Signed-off-by: Jarkko Sakkinen <jarkko@kernel.org>
crypto/asymmetric_keys/restrict.c
include/crypto/public_key.h