diff options
Diffstat (limited to 'configs/fedora/generic/powerpc')
5 files changed, 24 insertions, 0 deletions
diff --git a/configs/fedora/generic/powerpc/CONFIG_IMA_ARCH_POLICY b/configs/fedora/generic/powerpc/CONFIG_IMA_ARCH_POLICY new file mode 100644 index 000000000..e0230b86d --- /dev/null +++ b/configs/fedora/generic/powerpc/CONFIG_IMA_ARCH_POLICY @@ -0,0 +1 @@ +CONFIG_IMA_ARCH_POLICY=y diff --git a/configs/fedora/generic/powerpc/CONFIG_IMA_SECURE_AND_OR_TRUSTED_BOOT b/configs/fedora/generic/powerpc/CONFIG_IMA_SECURE_AND_OR_TRUSTED_BOOT new file mode 100644 index 000000000..727598339 --- /dev/null +++ b/configs/fedora/generic/powerpc/CONFIG_IMA_SECURE_AND_OR_TRUSTED_BOOT @@ -0,0 +1 @@ +CONFIG_IMA_SECURE_AND_OR_TRUSTED_BOOT=y diff --git a/configs/fedora/generic/powerpc/CONFIG_PPC_RTAS_FILTER b/configs/fedora/generic/powerpc/CONFIG_PPC_RTAS_FILTER index 7470f4d4f..6105fa8ba 100644 --- a/configs/fedora/generic/powerpc/CONFIG_PPC_RTAS_FILTER +++ b/configs/fedora/generic/powerpc/CONFIG_PPC_RTAS_FILTER @@ -1 +1,21 @@ +# CONFIG_PPC_RTAS_FILTER: +# +# The RTAS syscall API has security issues that could be used to +# compromise system integrity. This option enforces restrictions on the +# RTAS calls and arguments passed by userspace programs to mitigate +# these issues. +# +# Say Y unless you know what you are doing and the filter is causing +# problems for you. +# +# Symbol: PPC_RTAS_FILTER [=y] +# Type : bool +# Defined at arch/powerpc/Kconfig:991 +# Prompt: Enable filtering of RTAS syscalls +# Depends on: PPC_RTAS [=y] +# Location: +# -> Kernel options +# +# +# CONFIG_PPC_RTAS_FILTER=y diff --git a/configs/fedora/generic/powerpc/CONFIG_PPC_SECURE_BOOT b/configs/fedora/generic/powerpc/CONFIG_PPC_SECURE_BOOT new file mode 100644 index 000000000..2ed7b7fa6 --- /dev/null +++ b/configs/fedora/generic/powerpc/CONFIG_PPC_SECURE_BOOT @@ -0,0 +1 @@ +CONFIG_PPC_SECURE_BOOT=y diff --git a/configs/fedora/generic/powerpc/CONFIG_PPC_SECVAR_SYSFS b/configs/fedora/generic/powerpc/CONFIG_PPC_SECVAR_SYSFS new file mode 100644 index 000000000..fea2a70fa --- /dev/null +++ b/configs/fedora/generic/powerpc/CONFIG_PPC_SECVAR_SYSFS @@ -0,0 +1 @@ +CONFIG_PPC_SECVAR_SYSFS=y |