Enable support for dm-verity based on root hash signature
configname: CONFIG_IPE_PROP_DM_VERITY_SIGNATURE
Linux Kernel Configuration
└─>Security options
└─>Integrity Policy Enforcement (IPE)
└─>IPE Trust Providers
└─>Enable support for dm-verity based on root hash signature
In linux kernel since version 6.1.112 (release Date: 2024-09-30)
This option enables the 'dmverity_signature' property within IPE
policies. The property evaluates to TRUE when a file from a dm-verity
volume, which has been mounted with a valid signed root hash,
is evaluated.
If unsure, answer Y.
policies. The property evaluates to TRUE when a file from a dm-verity
volume, which has been mounted with a valid signed root hash,
is evaluated.
If unsure, answer Y.