aboutsummaryrefslogtreecommitdiff
path: root/security/apparmor/domain.c
diff options
context:
space:
mode:
authorDimitri John Ledkov <dimitri.ledkov@canonical.com>2023-10-22 20:40:26 +0100
committerJohn Johansen <john.johansen@canonical.com>2023-11-19 00:47:56 -0800
commite44a4dc4b36cc087878596b937d52caca35e9b19 (patch)
tree2503fb92c4eff889a6987c747792c16141020ff9 /security/apparmor/domain.c
parentb85ea95d086471afb4ad062012a4d73cd328fa86 (diff)
apparmor: switch SECURITY_APPARMOR_HASH from sha1 to sha256
sha1 is insecure and has colisions, thus it is not useful for even lightweight policy hash checks. Switch to sha256, which on modern hardware is fast enough. Separately as per NIST Policy on Hash Functions, sha1 usage must be withdrawn by 2030. This config option currently is one of many that holds up sha1 usage. Signed-off-by: Dimitri John Ledkov <dimitri.ledkov@canonical.com> Signed-off-by: John Johansen <john.johansen@canonical.com>
Diffstat (limited to 'security/apparmor/domain.c')
0 files changed, 0 insertions, 0 deletions