ima: report policy load status
Audit messages are rate limited, often causing the policy update info to not be visible. Report policy loading status also using pr_info. Changes in v2: * reporting moved to ima_release_policy to notice parsing errors * reporting both completed and failed status Signed-off-by: Dmitry Kasatkin <d.kasatkin@samsung.com> Signed-off-by: Mimi Zohar <zohar@linux.vnet.ibm.com>
This commit is contained in:
parent
456f5fd3f6
commit
78bb5d0b4f
|
@ -311,6 +311,8 @@ static int ima_open_policy(struct inode *inode, struct file *filp)
|
||||||
*/
|
*/
|
||||||
static int ima_release_policy(struct inode *inode, struct file *file)
|
static int ima_release_policy(struct inode *inode, struct file *file)
|
||||||
{
|
{
|
||||||
|
pr_info("IMA: policy update %s\n",
|
||||||
|
valid_policy ? "completed" : "failed");
|
||||||
if (!valid_policy) {
|
if (!valid_policy) {
|
||||||
ima_delete_rules();
|
ima_delete_rules();
|
||||||
valid_policy = 1;
|
valid_policy = 1;
|
||||||
|
|
Loading…
Reference in New Issue