|
From: Peter M. <pm...@go...> - 2014-01-12 19:13:39
|
On Sun, Jan 12 2014 at 07:11, Mimi Zohar wrote: > On Thu, 2014-01-09 at 20:41 +0100, hassan Ahamad wrote: >> A second question: is there IMA package available for ubuntu and SE Linux? > > For measurement, the kernel needs to be configured with CONFIG_IMA > enabled. The builtin policy 'ima_tcb' needs to be specified on the boot > command line. There are dracut patches for loading a different policy, > but unlike for appraisal, no other packages are required. IMA will be enabled in the ubuntu kernel starting with 14.04 (due to be released in April). You'll still need to include ima_tcb on the boot command line. Cheers, peter |