Skip to content
  • David Howells's avatar
    KEYS: Set the asymmetric-key type default search method · cd0421dc
    David Howells authored
    
    
    The keyring expansion patches introduces a new search method by which
    key_search() attempts to walk directly to the key that has exactly the same
    description as the requested one.
    
    However, this causes inexact matching of asymmetric keys to fail.  The
    solution to this is to select iterative rather than direct search as the
    default search type for asymmetric keys.
    
    As an example, the kernel might have a key like this:
    
    	Magrathea: Glacier signing key: 6a2a0f82bad7e396665f465e4e3e1f9bd24b1226
    
    and:
    
    	keyctl search <keyring-ID> asymmetric id:d24b1226
    
    should find the key, despite that not being its exact description.
    
    Signed-off-by: default avatarDavid Howells <dhowells@redhat.com>
    cd0421dc