[LTP] [PATCH] security/ima: limit the scope of the LTP policy rules based on the UUID

Mimi Zohar zohar@linux.ibm.com
Wed Oct 12 15:02:16 CEST 2022


Hi Petr,

On Wed, 2022-10-12 at 13:54 +0200, Petr Vorel wrote:

> For some reason ima_violations.sh works, when run as the first test after boot
> (at least with only "ima_policy=tcb" setup), but not when whole ima runtest file
> is run (as there are tests run before it).  I'm still trying to figure out
> what's wrong.

Sounds like initially the tests are run with the builtin "tcb" policy. 
Loading any IMA policy rules replaces the existing builtin policy with
the new custom policy.

-- 
thanks,

Mimi



More information about the ltp mailing list