Re: [RFC PATCH v3 00/13] Clavis LSM

2025-03-20 Thread James Bottomley
On Thu, 2025-03-20 at 16:24 +, Eric Snowberg wrote: > Having lockdown enforcement has always been > a requirement to get a shim signed by Microsoft. This is factually incorrect. Microsoft transferred shim signing to an independent process run by a group of open source maintainers a while ago

Re: [RFC PATCH v3 00/13] Clavis LSM

2025-03-20 Thread Eric Snowberg
> On Mar 6, 2025, at 7:46 PM, Paul Moore wrote: > > On March 6, 2025 5:29:36 PM Eric Snowberg wrote: >>> On Mar 5, 2025, at 6:12 PM, Paul Moore wrote: >>> >>> On Wed, Mar 5, 2025 at 4:30 PM Eric Snowberg >>> wrote: > On Mar 4, 2025, at 5:23 PM, Paul Moore wrote: > On Tue, Mar 4, 2

Re: [RFC PATCH v3 00/13] Clavis LSM

2025-03-20 Thread Paul Moore
On Thu, Mar 20, 2025 at 12:29 PM Eric Snowberg wrote: > > On Mar 6, 2025, at 7:46 PM, Paul Moore wrote: > > On March 6, 2025 5:29:36 PM Eric Snowberg wrote: ... > >> Does this mean Microsoft will begin signing shims in the future without > >> the lockdown requirement? > > > > That's not a ques