> I realize that fips_enabled is only for crazy people, but it's exactly
> code like this that limits it to only crazy people. Is there some
> *reason* for this?
Presumably its so a typical server with reboot on panic will reboot so
the attacker can hide the attempt better ;-)
Alan
--
To unsubsc
On Sun, Oct 14, 2012 at 1:11 PM, Linus Torvalds
wrote:
>
> I've pulled and resolved the branch, and I'm going through it now, but
> I'd like this verified before I push out if it all looks fine..
Hmm. So this thing makes me wonder:
/* Not having a signature is only an error if we're stri
On Wed, Oct 10, 2012 at 2:57 AM, Rusty Russell wrote:
>
>
> module signing is the highlight, but it's an all-over David Howells frenzy...
>
>
Hmm. What happened here?