From: Ondrej Mosnáček on
gitlab.com
https://gitlab.com/cki-project/kernel-ark/-/merge_requests/1284#note_7489...
@jforbes Thanks! Could you also please add a mention to the second commit that
it is needed because IMA uses trusted keys early in the boot process? That bit
of information is still missing there.