maugustosilva
maugustosilva
Just to confirm. You are talking about https://keylime.dev, right?
@mpeters @THS-on @stefanberger @ansasaki @aplanas @sergio-correia Based on discussions during the monthly video-meeting in June/24, we are ready to merge it in the next 24 hours. Please let me know...
Waiting for one last batch of tests, and then committing. Disclaimer, we are ignoring `CodeQL` and `fedora-rawhide` failures (i.e., these will NOT block the merge).
> The test failures in Fedora Rawhide and Centos Stream 10 are caused by a regression introduced by `python-requests 2.32.3` which makes it to not load the default CA certificates...
We should/could make it more readable indeed, but functionally there is nothing "wrong" here, and WARNING is the correct debug level.
I have re-checked my experiments, and you're right, MB LOG is disabled unless you pass `--mb_refstate` on `keylime_tenant` CLI, but IMA is "always on", and perhaps we should apply the...