mirror of
https://github.com/ibm-s390-linux/s390-tools.git
synced 2026-08-05 02:14:52 +00:00
zkey: Allow to associate non-existing APQNs with a key
Add option --no-apqn-check to the generate, import, change, and validate commands to disable checking of the specified APQNs. With this option a currently non-existing APQN can be associated with a key. This is useful to associate APQNs that exist only on other systems, such as disaster recovery systems, but not on the current system. When generating keys, at least one of the specified APQNs must be available to generate the key. Signed-off-by: Ingo Franzki <ifranzki@linux.ibm.com> Signed-off-by: Jan Höppner <hoeppner@linux.ibm.com>
This commit is contained in:
committed by
Jan Höppner
parent
d8c630e5f4
commit
f97d048643
@@ -28,25 +28,27 @@ struct keystore *keystore_new(const char *directory, bool verbose);
|
||||
|
||||
int keystore_generate_key(struct keystore *keystore, const char *name,
|
||||
const char *description, const char *volumes,
|
||||
const char *apqns, size_t sector_size,
|
||||
size_t keybits, bool xts, const char *clear_key_file,
|
||||
const char *volume_type, int pkey_fd);
|
||||
const char *apqns, bool noapqncheck,
|
||||
size_t sector_size, size_t keybits, bool xts,
|
||||
const char *clear_key_file, const char *volume_type,
|
||||
int pkey_fd);
|
||||
|
||||
int keystore_import_key(struct keystore *keystore, const char *name,
|
||||
const char *description, const char *volumes,
|
||||
const char *apqns, size_t sector_size,
|
||||
const char *apqns, bool noapqncheck, size_t sector_size,
|
||||
const char *import_file, const char *volume_type);
|
||||
|
||||
int keystore_change_key(struct keystore *keystore, const char *name,
|
||||
const char *description, const char *volumes,
|
||||
const char *apqns, long int sector_size,
|
||||
const char *volume_type);
|
||||
const char *apqns, bool noapqncheck,
|
||||
long int sector_size, const char *volume_type);
|
||||
|
||||
int keystore_rename_key(struct keystore *keystore, const char *name,
|
||||
const char *newname);
|
||||
|
||||
int keystore_validate_key(struct keystore *keystore, const char *name_filter,
|
||||
const char *apqn_filter, int pkey_fd);
|
||||
const char *apqn_filter, bool noapqncheck,
|
||||
int pkey_fd);
|
||||
|
||||
int keystore_reencipher_key(struct keystore *keystore, const char *name_filter,
|
||||
const char *apqn_filter,
|
||||
|
||||
Reference in New Issue
Block a user