Hi Roberto, On Fri, 2018-01-05 at 15:55 +0100, Roberto Sassu wrote: > On 1/5/2018 2:43 PM, Mimi Zohar wrote: > > Hi James, > > > > Mimi Zohar (2): > > ima: relax requiring a file signature for new files with zero length > > ima: support new "hash" and "dont_hash" policy actions > Hi Mimi > > I think there is an issue in the patch above. > > + /* HASH just sets the digital signature flag, nothing else */ > + if ((action & IMA_HASH) && !(iint->flags & IMA_DIGSIG)) { > > IMA_DIGSIG now is an atomic flag. Yes, this caused me grief, but is fixed in next-integrity branch. Mimi