Component Type: kbuild config
Description: Enable carrying the IMA measurement list across a soft boot
More info: TPM PCRs are only reset on a hard reboot. In order to validate a TPM's quote after a soft boot, the IMA measurement list of the running kernel must be saved and restored on boot. Depending on the IMA policy, the measurement list can grow to be very large.
Build project: Kconfig (Linux kconfig) (Path: security\integrity\ima\Kconfig )
Other views: file explorer