Lines Matching full:keys
22 select KEYS
29 to "lock" certain keyring to prevent adding new keys.
30 This is useful for evm and module keyrings, when keys are
34 bool "Enable asymmetric keys support"
44 asymmetric keys.
47 bool "Require all keys on the integrity keyrings be signed"
52 This option requires that all keys added to the .ima and
57 bool "Provide keyring for platform/firmware trusted keys"
61 Provide a separate, distinct keyring for platform trusted keys, which
67 bool "Provide a keyring to which Machine Owner Keys may be added"
73 If set, provide a keyring to which Machine Owner Keys (MOK) may
74 be added. This keyring shall contain just MOK keys. Unlike keys
75 in the platform keyring, keys contained in the .machine keyring will
85 and all Machine Owner Keys (MOK) are added to the machine keyring.
86 If enabled only CA keys are added to the machine keyring, all
87 other MOK keys load into the platform keyring.
90 bool "Only CA keys without DigitialSignature usage set"
94 When selected, only load CA keys are loaded into the machine
96 Usage field. Keys containing the digitialSignature Usage field
97 will not be loaded. The remaining MOK keys are loaded into the
111 bool "Enable loading of platform and blacklisted keys for POWER"
116 Enable loading of keys to the .platform keyring and blacklisted