On Tue, 15 Oct 2019, James Morse wrote: > > The IMA logs are event logs for module load time signature validation(based on policies) > > which are backed by the TPM. No SecureBoot information is present in the log other than > > the boot aggregate. > > Okay, so SecureBoot is optional with this thing. Correct. Verified boot is one alternative. -- James Morris <jmorris@xxxxxxxxx>