Lines Matching full:keys
22 select KEYS
29 to "lock" certain keyring to prevent adding new keys.
30 This is useful for evm and module keyrings, when keys are
34 bool "Enable asymmetric keys support"
43 asymmetric keys.
46 bool "Require all keys on the integrity keyrings be signed"
51 This option requires that all keys added to the .ima and
56 bool "Provide keyring for platform/firmware trusted keys"
60 Provide a separate, distinct keyring for platform trusted keys, which
66 bool "Provide a keyring to which Machine Owner Keys may be added"
72 If set, provide a keyring to which Machine Owner Keys (MOK) may
73 be added. This keyring shall contain just MOK keys. Unlike keys
74 in the platform keyring, keys contained in the .machine keyring will
84 and all Machine Owner Keys (MOK) are added to the machine keyring.
85 If enabled only CA keys are added to the machine keyring, all
86 other MOK keys load into the platform keyring.
89 bool "Only CA keys without DigitialSignature usage set"
93 When selected, only load CA keys are loaded into the machine
95 Usage field. Keys containing the digitialSignature Usage field
96 will not be loaded. The remaining MOK keys are loaded into the
110 bool "Enable loading of platform and blacklisted keys for POWER"
115 Enable loading of keys to the .platform keyring and blacklisted