)]}'
{
  "commit": "3323eec921efd815178a23107ab63588c605c0b2",
  "tree": "bc9e9714ac4881ebc515c1bd155674c52c356d6a",
  "parents": [
    "6146f0d5e47ca4047ffded0fb79b6c25359b386c"
  ],
  "author": {
    "name": "Mimi Zohar",
    "email": "zohar@linux.vnet.ibm.com",
    "time": "Wed Feb 04 09:06:58 2009 -0500"
  },
  "committer": {
    "name": "James Morris",
    "email": "jmorris@namei.org",
    "time": "Fri Feb 06 09:05:30 2009 +1100"
  },
  "message": "integrity: IMA as an integrity service provider\n\nIMA provides hardware (TPM) based measurement and attestation for\nfile measurements. As the Trusted Computing (TPM) model requires,\nIMA measures all files before they are accessed in any way (on the\nintegrity_bprm_check, integrity_path_check and integrity_file_mmap\nhooks), and commits the measurements to the TPM. Once added to the\nTPM, measurements can not be removed.\n\nIn addition, IMA maintains a list of these file measurements, which\ncan be used to validate the aggregate value stored in the TPM.  The\nTPM can sign these measurements, and thus the system can prove, to\nitself and to a third party, the system\u0027s integrity in a way that\ncannot be circumvented by malicious or compromised software.\n\n- alloc ima_template_entry before calling ima_store_template()\n- log ima_add_boot_aggregate() failure\n- removed unused IMA_TEMPLATE_NAME_LEN\n- replaced hard coded string length with #define name\n\nSigned-off-by: Mimi Zohar \u003czohar@us.ibm.com\u003e\nSigned-off-by: James Morris \u003cjmorris@namei.org\u003e\n",
  "tree_diff": [
    {
      "type": "modify",
      "old_id": "7c67b94d1823d03f371f307b5a5dbfacde291578",
      "old_mode": 33188,
      "old_path": "Documentation/kernel-parameters.txt",
      "new_id": "31e0c2c3c6e3ae476418499d802cd0898b6a6c17",
      "new_mode": 33188,
      "new_path": "Documentation/kernel-parameters.txt"
    },
    {
      "type": "modify",
      "old_id": "26c4f6f65a46f5a18a1db4066045aa294109111f",
      "old_mode": 33188,
      "old_path": "include/linux/audit.h",
      "new_id": "8d1f67789b53aae80d0d35ca54271a310e87d2cd",
      "new_mode": 33188,
      "new_path": "include/linux/audit.h"
    },
    {
      "type": "modify",
      "old_id": "4ed1e4d962e2d1163227520ce4e1c836774cfc25",
      "old_mode": 33188,
      "old_path": "include/linux/ima.h",
      "new_id": "dcc3664feee8fce99a05f430a797e0cdbd4f60aa",
      "new_mode": 33188,
      "new_path": "include/linux/ima.h"
    },
    {
      "type": "modify",
      "old_id": "d9f47ce7e2076877064e50eb2e34fd0f9c9fbd2a",
      "old_mode": 33188,
      "old_path": "security/Kconfig",
      "new_id": "a79b23f73d0347b7ba02883b667f1b18765629ca",
      "new_mode": 33188,
      "new_path": "security/Kconfig"
    },
    {
      "type": "modify",
      "old_id": "c05c127fff9a795d9b3c21d7c1a510c6b7a5a4cc",
      "old_mode": 33188,
      "old_path": "security/Makefile",
      "new_id": "595536cbffb234679b6827457d7c74e62efa2304",
      "new_mode": 33188,
      "new_path": "security/Makefile"
    },
    {
      "type": "add",
      "old_id": "0000000000000000000000000000000000000000",
      "old_mode": 0,
      "old_path": "/dev/null",
      "new_id": "2a761c8ac996a8ba38408437d23485046c6fe179",
      "new_mode": 33188,
      "new_path": "security/integrity/ima/Kconfig"
    },
    {
      "type": "add",
      "old_id": "0000000000000000000000000000000000000000",
      "old_mode": 0,
      "old_path": "/dev/null",
      "new_id": "9d6bf973b9bed03bb121eb53d77f1679146d28c4",
      "new_mode": 33188,
      "new_path": "security/integrity/ima/Makefile"
    },
    {
      "type": "add",
      "old_id": "0000000000000000000000000000000000000000",
      "old_mode": 0,
      "old_path": "/dev/null",
      "new_id": "bfa72ed41b9bac455d5532d9aeab956a8b713304",
      "new_mode": 33188,
      "new_path": "security/integrity/ima/ima.h"
    },
    {
      "type": "add",
      "old_id": "0000000000000000000000000000000000000000",
      "old_mode": 0,
      "old_path": "/dev/null",
      "new_id": "a148a25804f66db940519f5dae592bc29cdf043d",
      "new_mode": 33188,
      "new_path": "security/integrity/ima/ima_api.c"
    },
    {
      "type": "add",
      "old_id": "0000000000000000000000000000000000000000",
      "old_mode": 0,
      "old_path": "/dev/null",
      "new_id": "8a0f1e23ccf10bd6066d0cd015ce84357d6187e0",
      "new_mode": 33188,
      "new_path": "security/integrity/ima/ima_audit.c"
    },
    {
      "type": "add",
      "old_id": "0000000000000000000000000000000000000000",
      "old_mode": 0,
      "old_path": "/dev/null",
      "new_id": "c2a46e40999d3b2a9ed24c1285ce60c925d90cc9",
      "new_mode": 33188,
      "new_path": "security/integrity/ima/ima_crypto.c"
    },
    {
      "type": "add",
      "old_id": "0000000000000000000000000000000000000000",
      "old_mode": 0,
      "old_path": "/dev/null",
      "new_id": "750db3c993a760ff71e10dcb1f3c46d92d221e84",
      "new_mode": 33188,
      "new_path": "security/integrity/ima/ima_iint.c"
    },
    {
      "type": "add",
      "old_id": "0000000000000000000000000000000000000000",
      "old_mode": 0,
      "old_path": "/dev/null",
      "new_id": "e0f02e328d774c34865f37dcb6c6c150cadfc391",
      "new_mode": 33188,
      "new_path": "security/integrity/ima/ima_init.c"
    },
    {
      "type": "add",
      "old_id": "0000000000000000000000000000000000000000",
      "old_mode": 0,
      "old_path": "/dev/null",
      "new_id": "53cee4c512ce4d39b238b0ba992fa0637cba89b4",
      "new_mode": 33188,
      "new_path": "security/integrity/ima/ima_main.c"
    },
    {
      "type": "add",
      "old_id": "0000000000000000000000000000000000000000",
      "old_mode": 0,
      "old_path": "/dev/null",
      "new_id": "7c3d1ffb14722a26d11871fabf2a4cab649cd4d4",
      "new_mode": 33188,
      "new_path": "security/integrity/ima/ima_policy.c"
    },
    {
      "type": "add",
      "old_id": "0000000000000000000000000000000000000000",
      "old_mode": 0,
      "old_path": "/dev/null",
      "new_id": "7ec94314ac0ca28126b7c051d8663bbd1319f9de",
      "new_mode": 33188,
      "new_path": "security/integrity/ima/ima_queue.c"
    }
  ]
}
