[yocto] [meta-security][PATCH 14/14] image: add image for testing

Armin Kuster akuster808 at gmail.com
Sun May 26 21:56:41 PDT 2019


Signed-off-by: Armin Kuster <akuster808 at gmail.com>
---
 .../images/integrity-image-minimal.bb         | 22 +++++++++++++++++++
 1 file changed, 22 insertions(+)
 create mode 100644 meta-integrity/recipes-core/images/integrity-image-minimal.bb

diff --git a/meta-integrity/recipes-core/images/integrity-image-minimal.bb b/meta-integrity/recipes-core/images/integrity-image-minimal.bb
new file mode 100644
index 0000000..6ed724d
--- /dev/null
+++ b/meta-integrity/recipes-core/images/integrity-image-minimal.bb
@@ -0,0 +1,22 @@
+DESCRIPTION = "An image as an exmaple for Ima support"
+
+IMAGE_FEATURES += "ssh-server-openssh"
+
+
+IMAGE_INSTALL = "\
+    packagegroup-base \
+    packagegroup-core-boot \
+    packagegroup-ima-evm-utils \
+    os-release"
+
+
+LICENSE = "MIT"
+
+inherit core-image
+
+export IMAGE_BASENAME = "integrity-image-minimal"
+
+INHERIT += "ima-evm-rootfs"
+IMA_EVM_KEY_DIR = "${IMA_EVM_BASE}/data/debug-keys"
+
+QB_KERNEL_CMDLINE_APPEND_append = " ima_appraise=fix ima_policy=tcb ima_policy=appraise_tcb"
-- 
2.17.1



More information about the yocto mailing list