diff options
author | Kartik Agaram <vc@akkartik.com> | 2019-08-11 13:21:27 -0700 |
---|---|---|
committer | Kartik Agaram <vc@akkartik.com> | 2019-08-11 13:21:27 -0700 |
commit | b99466e81d50660b8f1a7d0a4aa80f5384e43bc0 (patch) | |
tree | 5ace10dde6def2fad6788c777049d2195ad350e6 | |
parent | d0a1e1b62fde7328189e148785b1fca302b1bf64 (diff) | |
download | mu-b99466e81d50660b8f1a7d0a4aa80f5384e43bc0.tar.gz |
5507
I'm working out the process for making changes to Mu's fork of the Linux kernel repo. At this point we've deleted all code for non-x86 architectures from kernel/arch.
-rw-r--r-- | kernel.config | 16 |
1 files changed, 12 insertions, 4 deletions
diff --git a/kernel.config b/kernel.config index f3f25c08..d460c335 100644 --- a/kernel.config +++ b/kernel.config @@ -4,10 +4,10 @@ # # -# Compiler: gcc (Ubuntu 8.3.0-6ubuntu1) 8.3.0 +# Compiler: gcc (Ubuntu 7.4.0-1ubuntu1~18.04.1) 7.4.0 # CONFIG_CC_IS_GCC=y -CONFIG_GCC_VERSION=80300 +CONFIG_GCC_VERSION=70400 CONFIG_CLANG_VERSION=0 CONFIG_CC_CAN_LINK=y CONFIG_CC_HAS_ASM_GOTO=y @@ -4083,17 +4083,24 @@ CONFIG_KEYS_COMPAT=y # CONFIG_KEY_DH_OPERATIONS is not set # CONFIG_SECURITY_DMESG_RESTRICT is not set CONFIG_SECURITY=y +CONFIG_SECURITY_WRITABLE_HOOKS=y # CONFIG_SECURITYFS is not set CONFIG_SECURITY_NETWORK=y CONFIG_PAGE_TABLE_ISOLATION=y # CONFIG_SECURITY_NETWORK_XFRM is not set # CONFIG_SECURITY_PATH is not set # CONFIG_INTEL_TXT is not set +CONFIG_LSM_MMAP_MIN_ADDR=65536 CONFIG_HAVE_HARDENED_USERCOPY_ALLOCATOR=y # CONFIG_HARDENED_USERCOPY is not set # CONFIG_FORTIFY_SOURCE is not set # CONFIG_STATIC_USERMODEHELPER is not set -# CONFIG_SECURITY_SELINUX is not set +CONFIG_SECURITY_SELINUX=y +CONFIG_SECURITY_SELINUX_BOOTPARAM=y +CONFIG_SECURITY_SELINUX_DISABLE=y +CONFIG_SECURITY_SELINUX_DEVELOP=y +CONFIG_SECURITY_SELINUX_AVC_STATS=y +CONFIG_SECURITY_SELINUX_CHECKREQPROT_VALUE=0 # CONFIG_SECURITY_SMACK is not set # CONFIG_SECURITY_TOMOYO is not set # CONFIG_SECURITY_APPARMOR is not set @@ -4105,7 +4112,8 @@ CONFIG_INTEGRITY=y CONFIG_INTEGRITY_AUDIT=y # CONFIG_IMA is not set # CONFIG_EVM is not set -CONFIG_DEFAULT_SECURITY_DAC=y +CONFIG_DEFAULT_SECURITY_SELINUX=y +# CONFIG_DEFAULT_SECURITY_DAC is not set CONFIG_LSM="yama,loadpin,safesetid,integrity,selinux,smack,tomoyo,apparmor" # |