@@ -192,10 +192,6 @@ kernel-docs.txt
- listing of various WWW + books that document kernel internals.
- summary listing of command line / boot prompt args for the kernel.
- - description of the kernel key request service.
- - description of the kernel key retention service.
- info of the kobject infrastructure of the Linux kernel.
@@ -294,6 +290,8 @@ scheduler/
- directory with info on the scheduler.
- directory with info on Linux scsi support.
+ - directory that contains security-related info
- directory with info on the low level serial API.
@@ -47,8 +47,8 @@ request-key will find the first matching line and corresponding program. In
this case, /some/other/program will handle all uid lookups and
/usr/sbin/nfs.idmap will handle gid, user, and group lookups.
-See <file:Documentation/keys-request-keys.txt> for more information about the
-request-key function.
-request-key function.
+See <file:Documentation/security/keys-request-keys.txt> for more information
+about the request-key function.
+about the request-key function.
@@ -139,8 +139,8 @@ the key will be discarded and recreated when the data it holds has expired.
dns_query() returns a copy of the value attached to the key, or an error if
that is indicated instead.
-See <file:Documentation/keys-request-key.txt> for further information about
-request-key function.
-request-key function.
+See <file:Documentation/security/keys-request-key.txt> for further
+information about request-key function.
@@ -0,0 +1,18 @@
+ - this file.
+ - how to get started with the SELinux security enhancement.
+ - documentation on the Smack Linux Security Module.
+ - documentation on the AppArmor security extension.
+ - documentation about credentials in Linux.
+ - description of the kernel key request service.
+ - info on the Trusted and Encrypted keys in the kernel key ring service.
+ - description of the kernel key retention service.
+ - documentation on the TOMOYO Linux Security Module.
@@ -216,7 +216,7 @@ The Linux kernel supports the following types of credentials:
When a process accesses a key, if not already present, it will normally be
cached on one of these keyrings for future accesses to find.
- For more information on using keys, see Documentation/keys.txt.
+ For more information on using keys, see Documentation/security/keys.txt.
(5) LSM
@@ -3,8 +3,8 @@
The key request service is part of the key retention service (refer to
-Documentation/keys.txt). This document explains more fully how the requesting
-algorithm works.
-algorithm works.
+Documentation/security/keys.txt). This document explains more fully how
+the requesting algorithm works.
+the requesting algorithm works.
The process starts by either the kernel requesting a service by calling
@@ -434,7 +434,7 @@ The main syscalls are:
/sbin/request-key will be invoked in an attempt to obtain a key. The
callout_info string will be passed as an argument to the program.
- See also Documentation/keys-request-key.txt.
+ See also Documentation/security/keys-request-key.txt.
The keyctl syscall functions are:
@@ -864,7 +864,7 @@ payload contents" for more information.
If successful, the key will have been attached to the default keyring for
implicitly obtained request-key keys, as set by KEYCTL_SET_REQKEY_KEYRING.
- See also Documentation/keys-request-key.txt.
+ See also Documentation/security/keys-request-key.txt.
(*) To search for a key, passing auxiliary data to the upcaller, call:
