diff options
author | Justin M. Forbes <jforbes@fedoraproject.org> | 2020-12-18 13:19:08 -0600 |
---|---|---|
committer | Justin M. Forbes <jforbes@fedoraproject.org> | 2020-12-18 13:19:08 -0600 |
commit | 14ee173c279442e3546682022e462844c70b0bc4 (patch) | |
tree | c058e8d6595e0bc126894c54c66223190b41b6f1 /configs/fedora/generic/powerpc | |
parent | 9c80b51f739afa911f89b32f63e951140f653ee5 (diff) | |
download | kernel-14ee173c279442e3546682022e462844c70b0bc4.tar.gz kernel-14ee173c279442e3546682022e462844c70b0bc4.tar.xz kernel-14ee173c279442e3546682022e462844c70b0bc4.zip |
Linux v5.10.1 rebase
Signed-off-by: Justin M. Forbes <jforbes@fedoraproject.org>
Diffstat (limited to 'configs/fedora/generic/powerpc')
5 files changed, 24 insertions, 0 deletions
diff --git a/configs/fedora/generic/powerpc/CONFIG_IMA_ARCH_POLICY b/configs/fedora/generic/powerpc/CONFIG_IMA_ARCH_POLICY new file mode 100644 index 000000000..e0230b86d --- /dev/null +++ b/configs/fedora/generic/powerpc/CONFIG_IMA_ARCH_POLICY @@ -0,0 +1 @@ +CONFIG_IMA_ARCH_POLICY=y diff --git a/configs/fedora/generic/powerpc/CONFIG_IMA_SECURE_AND_OR_TRUSTED_BOOT b/configs/fedora/generic/powerpc/CONFIG_IMA_SECURE_AND_OR_TRUSTED_BOOT new file mode 100644 index 000000000..727598339 --- /dev/null +++ b/configs/fedora/generic/powerpc/CONFIG_IMA_SECURE_AND_OR_TRUSTED_BOOT @@ -0,0 +1 @@ +CONFIG_IMA_SECURE_AND_OR_TRUSTED_BOOT=y diff --git a/configs/fedora/generic/powerpc/CONFIG_PPC_RTAS_FILTER b/configs/fedora/generic/powerpc/CONFIG_PPC_RTAS_FILTER index 7470f4d4f..6105fa8ba 100644 --- a/configs/fedora/generic/powerpc/CONFIG_PPC_RTAS_FILTER +++ b/configs/fedora/generic/powerpc/CONFIG_PPC_RTAS_FILTER @@ -1 +1,21 @@ +# CONFIG_PPC_RTAS_FILTER: +# +# The RTAS syscall API has security issues that could be used to +# compromise system integrity. This option enforces restrictions on the +# RTAS calls and arguments passed by userspace programs to mitigate +# these issues. +# +# Say Y unless you know what you are doing and the filter is causing +# problems for you. +# +# Symbol: PPC_RTAS_FILTER [=y] +# Type : bool +# Defined at arch/powerpc/Kconfig:991 +# Prompt: Enable filtering of RTAS syscalls +# Depends on: PPC_RTAS [=y] +# Location: +# -> Kernel options +# +# +# CONFIG_PPC_RTAS_FILTER=y diff --git a/configs/fedora/generic/powerpc/CONFIG_PPC_SECURE_BOOT b/configs/fedora/generic/powerpc/CONFIG_PPC_SECURE_BOOT new file mode 100644 index 000000000..2ed7b7fa6 --- /dev/null +++ b/configs/fedora/generic/powerpc/CONFIG_PPC_SECURE_BOOT @@ -0,0 +1 @@ +CONFIG_PPC_SECURE_BOOT=y diff --git a/configs/fedora/generic/powerpc/CONFIG_PPC_SECVAR_SYSFS b/configs/fedora/generic/powerpc/CONFIG_PPC_SECVAR_SYSFS new file mode 100644 index 000000000..fea2a70fa --- /dev/null +++ b/configs/fedora/generic/powerpc/CONFIG_PPC_SECVAR_SYSFS @@ -0,0 +1 @@ +CONFIG_PPC_SECVAR_SYSFS=y |