modsign: use all trusted keys to verify module signature
authorKe Wu <mikewu@google.com>
Tue, 6 Nov 2018 23:21:30 +0000 (15:21 -0800)
committerJessica Yu <jeyu@kernel.org>
Wed, 7 Nov 2018 13:41:41 +0000 (14:41 +0100)
commite84cd7ee630e44a2cc8ae49e85920a271b214cb3
tree24392f7daf560a7346e6d85adea9de931c55ec20
parent651022382c7f8da46cb4872a545ee1da6d097d2a
modsign: use all trusted keys to verify module signature

Make mod_verify_sig to use all trusted keys. This allows keys in
secondary_trusted_keys to be used to verify PKCS#7 signature on a
kernel module.

Signed-off-by: Ke Wu <mikewu@google.com>
Signed-off-by: Jessica Yu <jeyu@kernel.org>
kernel/module_signing.c