summaryrefslogtreecommitdiffstats
path: root/configs/fedora/generic/powerpc
diff options
context:
space:
mode:
Diffstat (limited to 'configs/fedora/generic/powerpc')
-rw-r--r--configs/fedora/generic/powerpc/CONFIG_IMA_ARCH_POLICY1
-rw-r--r--configs/fedora/generic/powerpc/CONFIG_IMA_SECURE_AND_OR_TRUSTED_BOOT1
-rw-r--r--configs/fedora/generic/powerpc/CONFIG_PPC_RTAS_FILTER20
-rw-r--r--configs/fedora/generic/powerpc/CONFIG_PPC_SECURE_BOOT1
-rw-r--r--configs/fedora/generic/powerpc/CONFIG_PPC_SECVAR_SYSFS1
5 files changed, 24 insertions, 0 deletions
diff --git a/configs/fedora/generic/powerpc/CONFIG_IMA_ARCH_POLICY b/configs/fedora/generic/powerpc/CONFIG_IMA_ARCH_POLICY
new file mode 100644
index 000000000..e0230b86d
--- /dev/null
+++ b/configs/fedora/generic/powerpc/CONFIG_IMA_ARCH_POLICY
@@ -0,0 +1 @@
+CONFIG_IMA_ARCH_POLICY=y
diff --git a/configs/fedora/generic/powerpc/CONFIG_IMA_SECURE_AND_OR_TRUSTED_BOOT b/configs/fedora/generic/powerpc/CONFIG_IMA_SECURE_AND_OR_TRUSTED_BOOT
new file mode 100644
index 000000000..727598339
--- /dev/null
+++ b/configs/fedora/generic/powerpc/CONFIG_IMA_SECURE_AND_OR_TRUSTED_BOOT
@@ -0,0 +1 @@
+CONFIG_IMA_SECURE_AND_OR_TRUSTED_BOOT=y
diff --git a/configs/fedora/generic/powerpc/CONFIG_PPC_RTAS_FILTER b/configs/fedora/generic/powerpc/CONFIG_PPC_RTAS_FILTER
index 7470f4d4f..6105fa8ba 100644
--- a/configs/fedora/generic/powerpc/CONFIG_PPC_RTAS_FILTER
+++ b/configs/fedora/generic/powerpc/CONFIG_PPC_RTAS_FILTER
@@ -1 +1,21 @@
+# CONFIG_PPC_RTAS_FILTER:
+#
+# The RTAS syscall API has security issues that could be used to
+# compromise system integrity. This option enforces restrictions on the
+# RTAS calls and arguments passed by userspace programs to mitigate
+# these issues.
+#
+# Say Y unless you know what you are doing and the filter is causing
+# problems for you.
+#
+# Symbol: PPC_RTAS_FILTER [=y]
+# Type : bool
+# Defined at arch/powerpc/Kconfig:991
+# Prompt: Enable filtering of RTAS syscalls
+# Depends on: PPC_RTAS [=y]
+# Location:
+# -> Kernel options
+#
+#
+#
CONFIG_PPC_RTAS_FILTER=y
diff --git a/configs/fedora/generic/powerpc/CONFIG_PPC_SECURE_BOOT b/configs/fedora/generic/powerpc/CONFIG_PPC_SECURE_BOOT
new file mode 100644
index 000000000..2ed7b7fa6
--- /dev/null
+++ b/configs/fedora/generic/powerpc/CONFIG_PPC_SECURE_BOOT
@@ -0,0 +1 @@
+CONFIG_PPC_SECURE_BOOT=y
diff --git a/configs/fedora/generic/powerpc/CONFIG_PPC_SECVAR_SYSFS b/configs/fedora/generic/powerpc/CONFIG_PPC_SECVAR_SYSFS
new file mode 100644
index 000000000..fea2a70fa
--- /dev/null
+++ b/configs/fedora/generic/powerpc/CONFIG_PPC_SECVAR_SYSFS
@@ -0,0 +1 @@
+CONFIG_PPC_SECVAR_SYSFS=y