|
From: Reiner S. <sa...@us...> - 2007-07-31 13:25:10
|
Hi Till, I am making a new patch for 22.1. However, on my system, the old 21.3 patch applies with only a few offsets to 22.1. No mention of 'patch already applied'. It also shows the TCG IMA entry in the configs once I enable SHA1=y and TPM=y (after 'make oldconfig'). Probably try the 22.1 kernel with the current 21.3 patch or wait until I push the new patch up on sourceforge hopefully today/tonight. Reiner __________________________________________________________ Reiner Sailer, Research Staff Member, Secure Systems Department IBM T J Watson Research Ctr, 19 Skyline Drive, Hawthorne NY 10532 Phone: 914 784 6280 (t/l 863) Fax: 914 784 6205, sa...@us... http://www.research.ibm.com/people/s/sailer/ "Till Bentz" <ti...@on...> Sent by: til...@go... 07/31/2007 03:29 AM Please respond to ti...@on... To Reiner Sailer/Watson/IBM@IBMUS cc lin...@li... Subject Re: [Linux-ima-user] Problems using IMA Hi Reiner On 7/31/07, Reiner Sailer <sa...@us...> wrote: Hi, let us do some cross-checking for the configuration: - do you see NSA SELinux as an option (under security)? - do you have SHA1 enabled --y-- (in crypto options)? - do you TPM eneabled --y-- (in drivers/char)? I think I can answer all questions with yes. Tonight I can send you a copy of the config, if you are interested. Thanks. Unfortunately, it seems that dependent configs only become visible once the dependencies are resolved. If all the answers above are yes, then it is time for creating a new patch ... Let me know Reiner "Till Bentz" <ti...@on...> Sent by: lin...@li... 07/30/2007 06:00 PM Please respond to ti...@on... To lin...@li... cc Subject [Linux-ima-user] Problems using IMA Hello, I am trying to get IMA running on my T60 laptop. As far as I understood it has a TPM that is working using TPM_Tis. I have kernel 2.6.22 and ibm_ima_8.0_2.6.21.3.patch. If I apply the patch it works fine except the changes in the Makefile which seem to be applied already. My problem is now, that in my config (using make xconfig) is no option to enable IMA as stated in the Readme. Thanks for any help. -- MfG Till ********************************************** Der Benutzer ist eine nicht zu tolerierende Quelle der Unsicherheit ********************************************** ------------------------------------------------------------------------- This SF.net email is sponsored by: Splunk Inc. Still grepping through log files to find problems? Stop. Now Search log events and configuration files using AJAX and a browser. Download your FREE copy of Splunk now >> http://get.splunk.com/ _______________________________________________ Linux-ima-user mailing list Lin...@li... https://lists.sourceforge.net/lists/listinfo/linux-ima-user -- MfG Till ********************************************** Der Benutzer ist eine nicht zu tolerierende Quelle der Unsicherheit ********************************************** |