xref: /aosp_15_r20/external/kernel-headers/original/uapi/linux/loadpin.h (revision f80ad8b4341604f5951dab671d41019a6d7087ce)
1*f80ad8b4SAndroid Build Coastguard Worker /* SPDX-License-Identifier: GPL-2.0 WITH Linux-syscall-note */
2*f80ad8b4SAndroid Build Coastguard Worker /*
3*f80ad8b4SAndroid Build Coastguard Worker  * Copyright (c) 2022, Google LLC
4*f80ad8b4SAndroid Build Coastguard Worker  */
5*f80ad8b4SAndroid Build Coastguard Worker 
6*f80ad8b4SAndroid Build Coastguard Worker #ifndef _UAPI_LINUX_LOOP_LOADPIN_H
7*f80ad8b4SAndroid Build Coastguard Worker #define _UAPI_LINUX_LOOP_LOADPIN_H
8*f80ad8b4SAndroid Build Coastguard Worker 
9*f80ad8b4SAndroid Build Coastguard Worker #define LOADPIN_IOC_MAGIC	'L'
10*f80ad8b4SAndroid Build Coastguard Worker 
11*f80ad8b4SAndroid Build Coastguard Worker /**
12*f80ad8b4SAndroid Build Coastguard Worker  * LOADPIN_IOC_SET_TRUSTED_VERITY_DIGESTS - Set up the root digests of verity devices
13*f80ad8b4SAndroid Build Coastguard Worker  *                                          that loadpin should trust.
14*f80ad8b4SAndroid Build Coastguard Worker  *
15*f80ad8b4SAndroid Build Coastguard Worker  * Takes a file descriptor from which to read the root digests of trusted verity devices. The file
16*f80ad8b4SAndroid Build Coastguard Worker  * is expected to contain a list of digests in ASCII format, with one line per digest. The ioctl
17*f80ad8b4SAndroid Build Coastguard Worker  * must be issued on the securityfs attribute 'loadpin/dm-verity' (which can be typically found
18*f80ad8b4SAndroid Build Coastguard Worker  * under /sys/kernel/security/loadpin/dm-verity).
19*f80ad8b4SAndroid Build Coastguard Worker  */
20*f80ad8b4SAndroid Build Coastguard Worker #define LOADPIN_IOC_SET_TRUSTED_VERITY_DIGESTS _IOW(LOADPIN_IOC_MAGIC, 0x00, unsigned int)
21*f80ad8b4SAndroid Build Coastguard Worker 
22*f80ad8b4SAndroid Build Coastguard Worker #endif /* _UAPI_LINUX_LOOP_LOADPIN_H */
23