LMS verification support
"Mike Luken (mluken)" <[email protected]>
| Newsgroups | dev.linux.lists.cryptsetup |
|---|---|
| Message-ID | <[email protected]> |
NIST and NSA have both recommended the use of the LMS algorithm for firmware and software signatures and verification. NSA stated vendors should have this supported in products in 2025. What are the plans to add LMS support into the kernel for things like secure boot (I guess this is done via the SHIM which I don’t know if this is covered by kernel.org or not) , signed kernel modules and IMA?
smime.p7s
(application/pkcs7-signature, 5 KB) - not displayed