PFK is a new module that accompanies eCryptfs and enables it to utilize ICE hw encryption engine. Module is responsible for storing encryption/decryption keys inside eCryptfs inodes for each file and loading them to ICE Change-Id: I6e755ca657164919147fe0d9482477e14a4be5eb Signed-off-by: Andrey Markovytch <andreym@codeaurora.org> [gbroner@codeaurora.org: fix merge conflicts, adapted LSM hooks and added missing qseecom headers to fix compilation] Signed-off-by: Gilad Broner <gbroner@codeaurora.org>
28 lines
779 B
Text
28 lines
779 B
Text
menu "Qualcomm Technologies, Inc Per File Encryption security device drivers"
|
|
depends on ARCH_QCOM
|
|
|
|
config PFT
|
|
bool "Per-File-Tagger driver"
|
|
depends on SECURITY
|
|
default n
|
|
help
|
|
This driver is used for tagging enterprise files.
|
|
It is part of the Per-File-Encryption (PFE) feature.
|
|
The driver is tagging files when created by
|
|
registered application.
|
|
Tagged files are encrypted using the dm-req-crypt driver.
|
|
|
|
config PFK
|
|
bool "Per-File-Key driver"
|
|
depends on SECURITY
|
|
depends on ECRYPT_FS
|
|
default n
|
|
help
|
|
This driver is used for storing eCryptfs information
|
|
in file node.
|
|
This is part of eCryptfs hardware enhanced solution
|
|
provided by Qualcomm Technologies, Inc.
|
|
Information is used when file is encrypted later using
|
|
ICE or dm crypto engine
|
|
|
|
endmenu
|