/ 详情

【21.03】arm/x86物理机出现内核报错integrity: Unable to open file: /etc/keys/x509_ima.der (-2)

Accepted
Bug
Opened this issue  
2021-03-03 19:01

【环境信息】
环境信息:arm/x86物理机
OS版本:21.03
【问题复现步骤】
1.安装最小化
2.安装成功进入系统查看dmesg日志
【预期结果】
无异常报错
【实际结果】
输入图片说明

Attachments
ga_beng_cui 2021-03-03 19:02

Comments (5)

ga_beng_cui created缺陷
ga_beng_cui set related repository to openEuler/kernel
展开全部操作日志

Hey ga_beng_cui, Welcome to openEuler Community.
All of the projects in openEuler Community are maintained by @openeuler-ci-bot .
That means the developers can comment below every pull request or issue to trigger Bot Commands.
Please follow instructions at https://gitee.com/openeuler/community/blob/master/en/sig-infrastructure/command.md to find the details.

ga_beng_cui upload filedmesg_min_stand
ga_beng_cui set assignee to XieXiuQi
ga_beng_cui set deadline to 2021-03-04
ga_beng_cui set start time to 2021-03-03
ga_beng_cui changed deadline from 2021-03-04 to 2021-03-05
ga_beng_cui set priority to Serious
ga_beng_cui changed priority from Serious to Secondary
ga_beng_cui set branch to openEuler-21.03

这个文件由ima的工具生成,非内核软件问题

该报错是因为开启了IMA的内核试图在/etc/keys/目录下寻找验签证书(该路径是通过CONFIG指定的),但系统并未提供该文件,对正常IMA功能无影响。
该行为与最新内核表现一致,并无异常,之后会添加该证书文件,建议不修改。

该报错是因为开启了IMA的内核试图在/etc/keys/目录下寻找验签证书(该路径是通过CONFIG指定的),但系统并未提供该文件,对正常IMA功能无影响。
该行为与最新内核表现一致,并无异常,之后会添加该证书文件,建议不修改。

@nettingsisyphus
添加证书后,此日志不会出现?

是的,添加证书后就不会再提示找不到证书了 :smiley:

XieXiuQi changed issue state from 待办的 to 已完成
ga_beng_cui changed issue state from 已完成 to 已验收

Sign in to comment

状态
Assignees
Labels
Projects
Milestones
Pull Requests
关联的 Pull Requests 被合并后可能会关闭此 issue
Branches
Planed to start   -   Planed to end
-
Top level
Priority
参与者(5)
5329419 openeuler ci bot 1578984659 6518579 nettingsisyphus 1583322164