Lines Matching +full:system +full:- +full:wide
1 # SPDX-License-Identifier: GPL-2.0
16 certificate as described in Documentation/admin-guide/module-signing.rst
45 bool "Provide system-wide ring of trusted keys"
50 Provide a system keyring to which trusted keys can be added. Keys in
52 by the kernel from compiled-in data and from hardware key stores, but
59 string "Additional X.509 keys for default system keyring"
62 If set, this option should be the filename of a PEM-formatted file
64 system keyring. Any certificate used for module signing is implicitly
67 NOTE: If you previously provided keys for the system keyring in the
68 form of DER-encoded *.x509 files in the top-level build directory,
77 system keyring without recompiling the kernel.
110 bool "Provide system-wide ring of blacklisted keys"
113 Provide a system keyring to which blacklisted keys can be added.
119 string "Hashes to be preloaded into the system blacklist keyring"
128 tools/certs/print-cert-tbs-hash.sh .
131 bool "Provide system-wide ring of revocation certificates"
140 string "X.509 certificates to be preloaded into the system blacklist keyring"
143 If set, this option should be the filename of a PEM-formatted file