• Icon: Story Story
    • Resolution: Unresolved
    • Icon: Undefined Undefined
    • None
    • None
    • osbuild
    • None
    • None
    • rhel-sst-image-builder
    • None
    • False
    • Hide

      None

      Show
      None
    • None
    • None
    • None
    • None
    • Unspecified
    • Unspecified
    • Unspecified
    • None

      IMA (Integrity Measurement Architecture) is somewhat newish in-kernel security framework to allow ensuring the integrity of a system by preventing access or executing tampered files. See https://access.redhat.com/documentation/en-us/red_hat_enterprise_linux/9/html/managing_monitoring_and_updating_the_kernel/enhancing-security-with-the-kernel-integrity-subsystem_managing-monitoring-and-updating-the-kernel. Note that as of today the documentation does not yet mention the newly added ima-setup tool which greatly simplifies IMA setup.

      Consider if/how IMA should be supported by RHEL Image Builder. Should it be documented (officially or RHKB article or blog post) how to use a firstboot script to configure that? Or should there be a new customization option that would do everything needed if enabled? Or perhaps something else?

      Thanks.

              osbuilders Osbuilders Bot Account
              myllynen Marko Myllynen
              Osbuilders Bot Account Osbuilders Bot Account
              Release Test Team Release Test Team
              Votes:
              0 Vote for this issue
              Watchers:
              1 Start watching this issue

                Created:
                Updated: