~ [ source navigation ] ~ [ diff markup ] ~ [ identifier search ] ~

TOMOYO Linux Cross Reference
Linux/security/tomoyo/Kconfig

Version: ~ [ linux-6.12-rc7 ] ~ [ linux-6.11.7 ] ~ [ linux-6.10.14 ] ~ [ linux-6.9.12 ] ~ [ linux-6.8.12 ] ~ [ linux-6.7.12 ] ~ [ linux-6.6.60 ] ~ [ linux-6.5.13 ] ~ [ linux-6.4.16 ] ~ [ linux-6.3.13 ] ~ [ linux-6.2.16 ] ~ [ linux-6.1.116 ] ~ [ linux-6.0.19 ] ~ [ linux-5.19.17 ] ~ [ linux-5.18.19 ] ~ [ linux-5.17.15 ] ~ [ linux-5.16.20 ] ~ [ linux-5.15.171 ] ~ [ linux-5.14.21 ] ~ [ linux-5.13.19 ] ~ [ linux-5.12.19 ] ~ [ linux-5.11.22 ] ~ [ linux-5.10.229 ] ~ [ linux-5.9.16 ] ~ [ linux-5.8.18 ] ~ [ linux-5.7.19 ] ~ [ linux-5.6.19 ] ~ [ linux-5.5.19 ] ~ [ linux-5.4.285 ] ~ [ linux-5.3.18 ] ~ [ linux-5.2.21 ] ~ [ linux-5.1.21 ] ~ [ linux-5.0.21 ] ~ [ linux-4.20.17 ] ~ [ linux-4.19.323 ] ~ [ linux-4.18.20 ] ~ [ linux-4.17.19 ] ~ [ linux-4.16.18 ] ~ [ linux-4.15.18 ] ~ [ linux-4.14.336 ] ~ [ linux-4.13.16 ] ~ [ linux-4.12.14 ] ~ [ linux-4.11.12 ] ~ [ linux-4.10.17 ] ~ [ linux-4.9.337 ] ~ [ linux-4.4.302 ] ~ [ linux-3.10.108 ] ~ [ linux-2.6.32.71 ] ~ [ linux-2.6.0 ] ~ [ linux-2.4.37.11 ] ~ [ unix-v6-master ] ~ [ ccs-tools-1.8.12 ] ~ [ policy-sample ] ~
Architecture: ~ [ i386 ] ~ [ alpha ] ~ [ m68k ] ~ [ mips ] ~ [ ppc ] ~ [ sparc ] ~ [ sparc64 ] ~

Diff markup

Differences between /security/tomoyo/Kconfig (Version linux-6.12-rc7) and /security/tomoyo/Kconfig (Version linux-2.6.32.71)


  1 # SPDX-License-Identifier: GPL-2.0-only        << 
  2 config SECURITY_TOMOYO                              1 config SECURITY_TOMOYO
  3         bool "TOMOYO Linux Support"                 2         bool "TOMOYO Linux Support"
  4         depends on SECURITY                         3         depends on SECURITY
  5         depends on NET                         << 
  6         select SECURITYFS                           4         select SECURITYFS
  7         select SECURITY_PATH                        5         select SECURITY_PATH
  8         select SECURITY_NETWORK                << 
  9         default n                                   6         default n
 10         help                                        7         help
 11           This selects TOMOYO Linux, pathname-      8           This selects TOMOYO Linux, pathname-based access control.
 12           Required userspace tools and further      9           Required userspace tools and further information may be
 13           found at <https://tomoyo.sourceforge !!  10           found at <http://tomoyo.sourceforge.jp/>.
 14           If you are unsure how to answer this     11           If you are unsure how to answer this question, answer N.
 15                                                << 
 16 config SECURITY_TOMOYO_MAX_ACCEPT_ENTRY        << 
 17         int "Default maximal count for learnin << 
 18         default 2048                           << 
 19         range 0 2147483647                     << 
 20         depends on SECURITY_TOMOYO             << 
 21         help                                   << 
 22           This is the default value for maxima << 
 23           that are automatically appended into << 
 24           Some programs access thousands of ob << 
 25           such programs in "learning mode" dul << 
 26           and consumes much memory.            << 
 27           This is the safeguard for such progr << 
 28                                                << 
 29 config SECURITY_TOMOYO_MAX_AUDIT_LOG           << 
 30         int "Default maximal count for audit l << 
 31         default 1024                           << 
 32         range 0 2147483647                     << 
 33         depends on SECURITY_TOMOYO             << 
 34         help                                   << 
 35           This is the default value for maxima << 
 36           audit logs that the kernel can hold  << 
 37           You can read the log via /sys/kernel << 
 38           If you don't need audit logs, you ma << 
 39                                                << 
 40 config SECURITY_TOMOYO_OMIT_USERSPACE_LOADER   << 
 41         bool "Activate without calling userspa << 
 42         default n                              << 
 43         depends on SECURITY_TOMOYO             << 
 44         help                                   << 
 45           Say Y here if you want to activate a << 
 46           policy was loaded. This option will  << 
 47           operations which can lead to the hij << 
 48           needed before loading the policy. Fo << 
 49           immediately after loading the fixed  << 
 50           only operations needed for mounting  << 
 51           variant part of policy and verifying << 
 52           loading the variant part of policy.  << 
 53           enforcing mode from the beginning, y << 
 54           hijacking the boot sequence.         << 
 55                                                << 
 56 config SECURITY_TOMOYO_POLICY_LOADER           << 
 57         string "Location of userspace policy l << 
 58         default "/sbin/tomoyo-init"            << 
 59         depends on SECURITY_TOMOYO             << 
 60         depends on !SECURITY_TOMOYO_OMIT_USERS << 
 61         help                                   << 
 62           This is the default pathname of poli << 
 63           activation. You can override this se << 
 64           command line option.                 << 
 65                                                << 
 66 config SECURITY_TOMOYO_ACTIVATION_TRIGGER      << 
 67         string "Trigger for calling userspace  << 
 68         default "/sbin/init"                   << 
 69         depends on SECURITY_TOMOYO             << 
 70         depends on !SECURITY_TOMOYO_OMIT_USERS << 
 71         help                                   << 
 72           This is the default pathname of acti << 
 73           You can override this setting via TO << 
 74           option. For example, if you pass ini << 
 75           want to also pass TOMOYO_trigger=/bi << 
 76                                                << 
 77 config SECURITY_TOMOYO_INSECURE_BUILTIN_SETTIN << 
 78         bool "Use insecure built-in settings f << 
 79         default n                              << 
 80         depends on SECURITY_TOMOYO             << 
 81         select SECURITY_TOMOYO_OMIT_USERSPACE_ << 
 82         help                                   << 
 83           Enabling this option forces minimal  << 
 84           domain/program checks for run-time p << 
 85           this option only if this kernel is b << 
                                                      

~ [ source navigation ] ~ [ diff markup ] ~ [ identifier search ] ~

kernel.org | git.kernel.org | LWN.net | Project Home | SVN repository | Mail admin

Linux® is a registered trademark of Linus Torvalds in the United States and other countries.
TOMOYO® is a registered trademark of NTT DATA CORPORATION.

sflogo.php