[yocto] [meta-security][PATCH 14/14] image: add image for testing
Armin Kuster
akuster808 at gmail.com
Sun May 26 21:56:41 PDT 2019
Signed-off-by: Armin Kuster <akuster808 at gmail.com>
---
.../images/integrity-image-minimal.bb | 22 +++++++++++++++++++
1 file changed, 22 insertions(+)
create mode 100644 meta-integrity/recipes-core/images/integrity-image-minimal.bb
diff --git a/meta-integrity/recipes-core/images/integrity-image-minimal.bb b/meta-integrity/recipes-core/images/integrity-image-minimal.bb
new file mode 100644
index 0000000..6ed724d
--- /dev/null
+++ b/meta-integrity/recipes-core/images/integrity-image-minimal.bb
@@ -0,0 +1,22 @@
+DESCRIPTION = "An image as an exmaple for Ima support"
+
+IMAGE_FEATURES += "ssh-server-openssh"
+
+
+IMAGE_INSTALL = "\
+ packagegroup-base \
+ packagegroup-core-boot \
+ packagegroup-ima-evm-utils \
+ os-release"
+
+
+LICENSE = "MIT"
+
+inherit core-image
+
+export IMAGE_BASENAME = "integrity-image-minimal"
+
+INHERIT += "ima-evm-rootfs"
+IMA_EVM_KEY_DIR = "${IMA_EVM_BASE}/data/debug-keys"
+
+QB_KERNEL_CMDLINE_APPEND_append = " ima_appraise=fix ima_policy=tcb ima_policy=appraise_tcb"
--
2.17.1
More information about the yocto
mailing list