Commit abfa6cd8 authored by James Johnston's avatar James Johnston Committed by Jonathan Corbet

modsign: Fix documentation on module signing enforcement parameter.

Modify the documentation to match the actual parameter as implemented in
kernel/module.c:273.
Signed-off-by: default avatarJames Johnston <johnstonj.public@codenest.com>
Reviewed-by: default avatarDavid Howells <dhowells@redhat.com>
Signed-off-by: default avatarJonathan Corbet <corbet@lwn.net>
parent 0d6f3ebf
...@@ -254,7 +254,7 @@ signature checking is all done within the kernel. ...@@ -254,7 +254,7 @@ signature checking is all done within the kernel.
NON-VALID SIGNATURES AND UNSIGNED MODULES NON-VALID SIGNATURES AND UNSIGNED MODULES
========================================= =========================================
If CONFIG_MODULE_SIG_FORCE is enabled or enforcemodulesig=1 is supplied on If CONFIG_MODULE_SIG_FORCE is enabled or module.sig_enforce=1 is supplied on
the kernel command line, the kernel will only load validly signed modules the kernel command line, the kernel will only load validly signed modules
for which it has a public key. Otherwise, it will also load modules that are for which it has a public key. Otherwise, it will also load modules that are
unsigned. Any module for which the kernel has a key, but which proves to have unsigned. Any module for which the kernel has a key, but which proves to have
......
Markdown is supported
0%
or
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment