/Linux-v5.4/crypto/asymmetric_keys/ |
D | pkcs7_trust.c | 27 struct x509_certificate *x509, *last = NULL, *p; in pkcs7_validate_trust_one() local 38 for (x509 = sinfo->signer; x509; x509 = x509->signer) { in pkcs7_validate_trust_one() 39 if (x509->seen) { in pkcs7_validate_trust_one() 40 if (x509->verified) in pkcs7_validate_trust_one() 45 x509->seen = true; in pkcs7_validate_trust_one() 51 x509->id, x509->skid, false); in pkcs7_validate_trust_one() 59 sinfo->index, x509->index, key_serial(key)); in pkcs7_validate_trust_one() 68 if (x509->signer == x509) { in pkcs7_validate_trust_one() 74 last = x509; in pkcs7_validate_trust_one() 87 x509 = last; in pkcs7_validate_trust_one() [all …]
|
D | pkcs7_verify.c | 162 struct x509_certificate *x509; in pkcs7_find_key() local 167 for (x509 = pkcs7->certs; x509; x509 = x509->next, certix++) { in pkcs7_find_key() 173 if (!asymmetric_key_id_same(x509->id, sinfo->sig->auth_ids[0])) in pkcs7_find_key() 178 if (strcmp(x509->pub->pkey_algo, sinfo->sig->pkey_algo) != 0) { in pkcs7_find_key() 184 sinfo->signer = x509; in pkcs7_find_key() 204 struct x509_certificate *x509 = sinfo->signer, *p; in pkcs7_verify_sig_chain() local 215 x509->subject, in pkcs7_verify_sig_chain() 216 x509->raw_serial_size, x509->raw_serial); in pkcs7_verify_sig_chain() 217 x509->seen = true; in pkcs7_verify_sig_chain() 219 if (x509->blacklisted) { in pkcs7_verify_sig_chain() [all …]
|
D | Makefile | 21 x509.asn1.o \ 27 $(obj)/x509.asn1.h \ 30 $(obj)/x509.asn1.o: $(obj)/x509.asn1.c $(obj)/x509.asn1.h
|
D | pkcs7_parser.c | 381 struct x509_certificate *x509; in pkcs7_extract_cert() local 400 x509 = x509_cert_parse(value, vlen); in pkcs7_extract_cert() 401 if (IS_ERR(x509)) in pkcs7_extract_cert() 402 return PTR_ERR(x509); in pkcs7_extract_cert() 404 x509->index = ++ctx->x509_index; in pkcs7_extract_cert() 405 pr_debug("Got cert %u for %s\n", x509->index, x509->subject); in pkcs7_extract_cert() 406 pr_debug("- fingerprint %*phN\n", x509->id->len, x509->id->data); in pkcs7_extract_cert() 408 *ctx->ppcerts = x509; in pkcs7_extract_cert() 409 ctx->ppcerts = &x509->next; in pkcs7_extract_cert()
|
/Linux-v5.4/certs/ |
D | Makefile | 32 clean-files := x509_certificate_list .x509.list 54 $(obj)/signing_key.pem: $(obj)/x509.genkey 64 -batch -x509 -config $(obj)/x509.genkey \ 72 $(obj)/x509.genkey: 101 $(obj)/system_certificates.o: $(obj)/signing_key.x509 103 targets += signing_key.x509 104 $(obj)/signing_key.x509: scripts/extract-cert $(X509_DEP) FORCE
|
D | Kconfig | 41 form of DER-encoded *.x509 files in the top-level build directory,
|
/Linux-v5.4/scripts/ |
D | extract-cert.c | 76 static void write_cert(X509 *x509) in write_cert() argument 84 X509_NAME_oneline(X509_get_subject_name(x509), buf, sizeof(buf)); in write_cert() 85 ERR(!i2d_X509_bio(wb, x509), "%s", cert_dst); in write_cert() 139 X509 *x509; in main() local 145 x509 = PEM_read_bio_X509(b, NULL, NULL, NULL); in main() 146 if (wb && !x509) { in main() 154 ERR(!x509, "%s", cert_src); in main() 155 write_cert(x509); in main()
|
D | sign-file.c | 173 X509 *x509; in read_x509() local 198 x509 = d2i_X509_bio(b, NULL); in read_x509() 201 x509 = PEM_read_bio_X509(b, NULL, NULL, NULL); in read_x509() 204 ERR(!x509, "%s", x509_name); in read_x509() 206 return x509; in read_x509() 229 X509 *x509; in main() local 298 x509 = read_x509(x509_name); in main() 313 ERR(!CMS_add1_signer(cms, x509, private_key, digest_algo, in main() 322 pkcs7 = PKCS7_sign(x509, private_key, NULL, bm, in main()
|
/Linux-v5.4/Documentation/admin-guide/ |
D | module-signing.rst | 144 certs/x509.genkey 148 It is strongly recommended that you provide your own x509.genkey file. 150 Most notably, in the x509.genkey file, the req_distinguished_name section 165 x509.genkey key generation configuration file in the root node of the Linux 169 openssl req -new -nodes -utf8 -sha256 -days 36500 -batch -x509 \ 170 -config x509.genkey -outform PEM -out kernel_key.pem \ 204 keyctl padd asymmetric "" 0x223c7853 <my_public_key.x509 226 kernel-signkey.x509 module.ko
|
/Linux-v5.4/ |
D | .gitignore | 133 signing_key.x509 134 x509.genkey
|
D | Makefile | 992 …(CONFIG_MODULE_SIG_HASH) $(MODULE_SIG_KEY_SRCPREFIX)$(CONFIG_MODULE_SIG_KEY) certs/signing_key.x509 1371 signing_key.pem signing_key.priv signing_key.x509 \ 1372 x509.genkey extra_certificates signing_key.x509.keyid \ 1373 signing_key.x509.signer vmlinux-gdb.py \
|
/Linux-v5.4/net/wireless/ |
D | Makefile | 37 $(wildcard $(CONFIG_CFG80211_EXTRA_REGDB_KEYDIR:"%"=%)/*.x509)
|
/Linux-v5.4/include/linux/ |
D | fs.h | 2968 id(X509_CERTIFICATE, x509-certificate) \
|