forked from Minki/linux
bb7aeae3d6
Pull security layer updates from James Morris: "There are a bunch of fixes to the TPM, IMA, and Keys code, with minor fixes scattered across the subsystem. IMA now requires signed policy, and that policy is also now measured and appraised" * 'next' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security: (67 commits) X.509: Make algo identifiers text instead of enum akcipher: Move the RSA DER encoding check to the crypto layer crypto: Add hash param to pkcs1pad sign-file: fix build with CMS support disabled MAINTAINERS: update tpmdd urls MODSIGN: linux/string.h should be #included to get memcpy() certs: Fix misaligned data in extra certificate list X.509: Handle midnight alternative notation in GeneralizedTime X.509: Support leap seconds Handle ISO 8601 leap seconds and encodings of midnight in mktime64() X.509: Fix leap year handling again PKCS#7: fix unitialized boolean 'want' firmware: change kernel read fail to dev_dbg() KEYS: Use the symbol value for list size, updated by scripts/insert-sys-cert KEYS: Reserve an extra certificate symbol for inserting without recompiling modsign: hide openssl output in silent builds tpm_tis: fix build warning with tpm_tis_resume ima: require signed IMA policy ima: measure and appraise the IMA policy itself ima: load policy using path ...
313 lines
7.1 KiB
Plaintext
313 lines
7.1 KiB
Plaintext
# CONFIG_64BIT is not set
|
|
CONFIG_EXPERIMENTAL=y
|
|
# CONFIG_LOCALVERSION_AUTO is not set
|
|
CONFIG_SYSVIPC=y
|
|
CONFIG_POSIX_MQUEUE=y
|
|
CONFIG_BSD_PROCESS_ACCT=y
|
|
CONFIG_TASKSTATS=y
|
|
CONFIG_TASK_DELAY_ACCT=y
|
|
CONFIG_TASK_XACCT=y
|
|
CONFIG_TASK_IO_ACCOUNTING=y
|
|
CONFIG_FHANDLE=y
|
|
CONFIG_AUDIT=y
|
|
CONFIG_NO_HZ=y
|
|
CONFIG_HIGH_RES_TIMERS=y
|
|
CONFIG_LOG_BUF_SHIFT=18
|
|
CONFIG_CGROUPS=y
|
|
CONFIG_CGROUP_FREEZER=y
|
|
CONFIG_CPUSETS=y
|
|
CONFIG_CGROUP_CPUACCT=y
|
|
CONFIG_RESOURCE_COUNTERS=y
|
|
CONFIG_CGROUP_SCHED=y
|
|
CONFIG_BLK_DEV_INITRD=y
|
|
# CONFIG_COMPAT_BRK is not set
|
|
CONFIG_PROFILING=y
|
|
CONFIG_KPROBES=y
|
|
CONFIG_JUMP_LABEL=y
|
|
CONFIG_MODULES=y
|
|
CONFIG_MODULE_UNLOAD=y
|
|
CONFIG_MODULE_FORCE_UNLOAD=y
|
|
CONFIG_PARTITION_ADVANCED=y
|
|
CONFIG_OSF_PARTITION=y
|
|
CONFIG_AMIGA_PARTITION=y
|
|
CONFIG_MAC_PARTITION=y
|
|
CONFIG_BSD_DISKLABEL=y
|
|
CONFIG_MINIX_SUBPARTITION=y
|
|
CONFIG_SOLARIS_X86_PARTITION=y
|
|
CONFIG_UNIXWARE_DISKLABEL=y
|
|
CONFIG_SGI_PARTITION=y
|
|
CONFIG_SUN_PARTITION=y
|
|
CONFIG_KARMA_PARTITION=y
|
|
CONFIG_EFI_PARTITION=y
|
|
CONFIG_SMP=y
|
|
CONFIG_X86_GENERIC=y
|
|
CONFIG_HPET_TIMER=y
|
|
CONFIG_SCHED_SMT=y
|
|
CONFIG_PREEMPT_VOLUNTARY=y
|
|
CONFIG_X86_REROUTE_FOR_BROKEN_BOOT_IRQS=y
|
|
CONFIG_X86_MCE=y
|
|
CONFIG_X86_REBOOTFIXUPS=y
|
|
CONFIG_MICROCODE=y
|
|
CONFIG_MICROCODE_AMD=y
|
|
CONFIG_X86_MSR=y
|
|
CONFIG_X86_CPUID=y
|
|
CONFIG_HIGHPTE=y
|
|
CONFIG_X86_CHECK_BIOS_CORRUPTION=y
|
|
# CONFIG_MTRR_SANITIZER is not set
|
|
CONFIG_EFI=y
|
|
CONFIG_HZ_1000=y
|
|
CONFIG_KEXEC=y
|
|
CONFIG_CRASH_DUMP=y
|
|
# CONFIG_COMPAT_VDSO is not set
|
|
CONFIG_HIBERNATION=y
|
|
CONFIG_PM_DEBUG=y
|
|
CONFIG_PM_TRACE_RTC=y
|
|
CONFIG_ACPI_DOCK=y
|
|
CONFIG_CPU_FREQ=y
|
|
# CONFIG_CPU_FREQ_STAT is not set
|
|
CONFIG_CPU_FREQ_DEFAULT_GOV_USERSPACE=y
|
|
CONFIG_CPU_FREQ_GOV_PERFORMANCE=y
|
|
CONFIG_CPU_FREQ_GOV_ONDEMAND=y
|
|
CONFIG_X86_ACPI_CPUFREQ=y
|
|
CONFIG_PCIEPORTBUS=y
|
|
CONFIG_PCI_MSI=y
|
|
CONFIG_PCCARD=y
|
|
CONFIG_YENTA=y
|
|
CONFIG_HOTPLUG_PCI=y
|
|
CONFIG_BINFMT_MISC=y
|
|
CONFIG_NET=y
|
|
CONFIG_PACKET=y
|
|
CONFIG_UNIX=y
|
|
CONFIG_XFRM_USER=y
|
|
CONFIG_INET=y
|
|
CONFIG_IP_MULTICAST=y
|
|
CONFIG_IP_ADVANCED_ROUTER=y
|
|
CONFIG_IP_MULTIPLE_TABLES=y
|
|
CONFIG_IP_ROUTE_MULTIPATH=y
|
|
CONFIG_IP_ROUTE_VERBOSE=y
|
|
CONFIG_IP_PNP=y
|
|
CONFIG_IP_PNP_DHCP=y
|
|
CONFIG_IP_PNP_BOOTP=y
|
|
CONFIG_IP_PNP_RARP=y
|
|
CONFIG_IP_MROUTE=y
|
|
CONFIG_IP_PIMSM_V1=y
|
|
CONFIG_IP_PIMSM_V2=y
|
|
CONFIG_SYN_COOKIES=y
|
|
# CONFIG_INET_XFRM_MODE_TRANSPORT is not set
|
|
# CONFIG_INET_XFRM_MODE_TUNNEL is not set
|
|
# CONFIG_INET_XFRM_MODE_BEET is not set
|
|
# CONFIG_INET_DIAG is not set
|
|
CONFIG_TCP_CONG_ADVANCED=y
|
|
# CONFIG_TCP_CONG_BIC is not set
|
|
# CONFIG_TCP_CONG_WESTWOOD is not set
|
|
# CONFIG_TCP_CONG_HTCP is not set
|
|
CONFIG_TCP_MD5SIG=y
|
|
CONFIG_IPV6=y
|
|
CONFIG_INET6_AH=y
|
|
CONFIG_INET6_ESP=y
|
|
CONFIG_NETLABEL=y
|
|
CONFIG_NETFILTER=y
|
|
# CONFIG_NETFILTER_ADVANCED is not set
|
|
CONFIG_NF_CONNTRACK=y
|
|
CONFIG_NF_CONNTRACK_FTP=y
|
|
CONFIG_NF_CONNTRACK_IRC=y
|
|
CONFIG_NF_CONNTRACK_SIP=y
|
|
CONFIG_NF_CT_NETLINK=y
|
|
CONFIG_NETFILTER_XT_TARGET_CONNSECMARK=y
|
|
CONFIG_NETFILTER_XT_TARGET_NFLOG=y
|
|
CONFIG_NETFILTER_XT_TARGET_SECMARK=y
|
|
CONFIG_NETFILTER_XT_TARGET_TCPMSS=y
|
|
CONFIG_NETFILTER_XT_MATCH_CONNTRACK=y
|
|
CONFIG_NETFILTER_XT_MATCH_POLICY=y
|
|
CONFIG_NETFILTER_XT_MATCH_STATE=y
|
|
CONFIG_NF_CONNTRACK_IPV4=y
|
|
CONFIG_IP_NF_IPTABLES=y
|
|
CONFIG_IP_NF_FILTER=y
|
|
CONFIG_IP_NF_TARGET_REJECT=y
|
|
CONFIG_IP_NF_TARGET_ULOG=y
|
|
CONFIG_NF_NAT=y
|
|
CONFIG_IP_NF_TARGET_MASQUERADE=y
|
|
CONFIG_IP_NF_MANGLE=y
|
|
CONFIG_NF_CONNTRACK_IPV6=y
|
|
CONFIG_IP6_NF_IPTABLES=y
|
|
CONFIG_IP6_NF_MATCH_IPV6HEADER=y
|
|
CONFIG_IP6_NF_FILTER=y
|
|
CONFIG_IP6_NF_TARGET_REJECT=y
|
|
CONFIG_IP6_NF_MANGLE=y
|
|
CONFIG_NET_SCHED=y
|
|
CONFIG_NET_EMATCH=y
|
|
CONFIG_NET_CLS_ACT=y
|
|
CONFIG_HAMRADIO=y
|
|
CONFIG_CFG80211=y
|
|
CONFIG_MAC80211=y
|
|
CONFIG_MAC80211_LEDS=y
|
|
CONFIG_RFKILL=y
|
|
CONFIG_UEVENT_HELPER_PATH="/sbin/hotplug"
|
|
CONFIG_DEVTMPFS=y
|
|
CONFIG_DEVTMPFS_MOUNT=y
|
|
CONFIG_DEBUG_DEVRES=y
|
|
CONFIG_CONNECTOR=y
|
|
CONFIG_BLK_DEV_LOOP=y
|
|
CONFIG_BLK_DEV_SD=y
|
|
CONFIG_BLK_DEV_SR=y
|
|
CONFIG_BLK_DEV_SR_VENDOR=y
|
|
CONFIG_CHR_DEV_SG=y
|
|
CONFIG_SCSI_CONSTANTS=y
|
|
CONFIG_SCSI_SPI_ATTRS=y
|
|
# CONFIG_SCSI_LOWLEVEL is not set
|
|
CONFIG_ATA=y
|
|
CONFIG_SATA_AHCI=y
|
|
CONFIG_ATA_PIIX=y
|
|
CONFIG_PATA_AMD=y
|
|
CONFIG_PATA_OLDPIIX=y
|
|
CONFIG_PATA_SCH=y
|
|
CONFIG_PATA_MPIIX=y
|
|
CONFIG_ATA_GENERIC=y
|
|
CONFIG_MD=y
|
|
CONFIG_BLK_DEV_MD=y
|
|
CONFIG_BLK_DEV_DM=y
|
|
CONFIG_DM_MIRROR=y
|
|
CONFIG_DM_ZERO=y
|
|
CONFIG_MACINTOSH_DRIVERS=y
|
|
CONFIG_MAC_EMUMOUSEBTN=y
|
|
CONFIG_NETDEVICES=y
|
|
CONFIG_NETCONSOLE=y
|
|
CONFIG_BNX2=y
|
|
CONFIG_TIGON3=y
|
|
CONFIG_NET_TULIP=y
|
|
CONFIG_E100=y
|
|
CONFIG_E1000=y
|
|
CONFIG_E1000E=y
|
|
CONFIG_SKY2=y
|
|
CONFIG_NE2K_PCI=y
|
|
CONFIG_FORCEDETH=y
|
|
CONFIG_8139TOO=y
|
|
# CONFIG_8139TOO_PIO is not set
|
|
CONFIG_R8169=y
|
|
CONFIG_FDDI=y
|
|
CONFIG_INPUT_POLLDEV=y
|
|
# CONFIG_INPUT_MOUSEDEV_PSAUX is not set
|
|
CONFIG_INPUT_EVDEV=y
|
|
CONFIG_INPUT_JOYSTICK=y
|
|
CONFIG_INPUT_TABLET=y
|
|
CONFIG_INPUT_TOUCHSCREEN=y
|
|
CONFIG_INPUT_MISC=y
|
|
CONFIG_VT_HW_CONSOLE_BINDING=y
|
|
# CONFIG_LEGACY_PTYS is not set
|
|
CONFIG_SERIAL_NONSTANDARD=y
|
|
CONFIG_SERIAL_8250=y
|
|
CONFIG_SERIAL_8250_CONSOLE=y
|
|
CONFIG_SERIAL_8250_NR_UARTS=32
|
|
CONFIG_SERIAL_8250_EXTENDED=y
|
|
CONFIG_SERIAL_8250_MANY_PORTS=y
|
|
CONFIG_SERIAL_8250_SHARE_IRQ=y
|
|
CONFIG_SERIAL_8250_DETECT_IRQ=y
|
|
CONFIG_SERIAL_8250_RSA=y
|
|
CONFIG_HW_RANDOM=y
|
|
CONFIG_NVRAM=y
|
|
CONFIG_HPET=y
|
|
# CONFIG_HPET_MMAP is not set
|
|
CONFIG_I2C_I801=y
|
|
CONFIG_WATCHDOG=y
|
|
CONFIG_AGP=y
|
|
CONFIG_AGP_AMD64=y
|
|
CONFIG_AGP_INTEL=y
|
|
CONFIG_DRM=y
|
|
CONFIG_DRM_I915=y
|
|
CONFIG_FB_MODE_HELPERS=y
|
|
CONFIG_FB_TILEBLITTING=y
|
|
CONFIG_FB_EFI=y
|
|
# CONFIG_LCD_CLASS_DEVICE is not set
|
|
CONFIG_VGACON_SOFT_SCROLLBACK=y
|
|
CONFIG_LOGO=y
|
|
# CONFIG_LOGO_LINUX_MONO is not set
|
|
# CONFIG_LOGO_LINUX_VGA16 is not set
|
|
CONFIG_SOUND=y
|
|
CONFIG_SND=y
|
|
CONFIG_SND_SEQUENCER=y
|
|
CONFIG_SND_SEQ_DUMMY=y
|
|
CONFIG_SND_MIXER_OSS=y
|
|
CONFIG_SND_PCM_OSS=y
|
|
CONFIG_SND_SEQUENCER_OSS=y
|
|
CONFIG_SND_HRTIMER=y
|
|
CONFIG_SND_HDA_INTEL=y
|
|
CONFIG_SND_HDA_HWDEP=y
|
|
CONFIG_HIDRAW=y
|
|
CONFIG_HID_GYRATION=y
|
|
CONFIG_LOGITECH_FF=y
|
|
CONFIG_HID_NTRIG=y
|
|
CONFIG_HID_PANTHERLORD=y
|
|
CONFIG_PANTHERLORD_FF=y
|
|
CONFIG_HID_PETALYNX=y
|
|
CONFIG_HID_SAMSUNG=y
|
|
CONFIG_HID_SONY=y
|
|
CONFIG_HID_SUNPLUS=y
|
|
CONFIG_HID_TOPSEED=y
|
|
CONFIG_HID_PID=y
|
|
CONFIG_USB_HIDDEV=y
|
|
CONFIG_USB=y
|
|
CONFIG_USB_ANNOUNCE_NEW_DEVICES=y
|
|
CONFIG_USB_MON=y
|
|
CONFIG_USB_EHCI_HCD=y
|
|
CONFIG_USB_EHCI_TT_NEWSCHED=y
|
|
CONFIG_USB_OHCI_HCD=y
|
|
CONFIG_USB_UHCI_HCD=y
|
|
CONFIG_USB_PRINTER=y
|
|
CONFIG_USB_STORAGE=y
|
|
CONFIG_USB_LIBUSUAL=y
|
|
CONFIG_EDAC=y
|
|
CONFIG_RTC_CLASS=y
|
|
# CONFIG_RTC_HCTOSYS is not set
|
|
CONFIG_DMADEVICES=y
|
|
CONFIG_EEEPC_LAPTOP=y
|
|
CONFIG_EFI_VARS=y
|
|
CONFIG_EXT4_FS=y
|
|
CONFIG_EXT4_FS_POSIX_ACL=y
|
|
CONFIG_EXT4_FS_SECURITY=y
|
|
CONFIG_QUOTA=y
|
|
CONFIG_QUOTA_NETLINK_INTERFACE=y
|
|
# CONFIG_PRINT_QUOTA_WARNING is not set
|
|
CONFIG_QFMT_V2=y
|
|
CONFIG_AUTOFS4_FS=y
|
|
CONFIG_ISO9660_FS=y
|
|
CONFIG_JOLIET=y
|
|
CONFIG_ZISOFS=y
|
|
CONFIG_MSDOS_FS=y
|
|
CONFIG_VFAT_FS=y
|
|
CONFIG_PROC_KCORE=y
|
|
CONFIG_TMPFS_POSIX_ACL=y
|
|
CONFIG_HUGETLBFS=y
|
|
CONFIG_NFS_FS=y
|
|
CONFIG_NFS_V3_ACL=y
|
|
CONFIG_NFS_V4=y
|
|
CONFIG_ROOT_NFS=y
|
|
CONFIG_NLS_DEFAULT="utf8"
|
|
CONFIG_NLS_CODEPAGE_437=y
|
|
CONFIG_NLS_ASCII=y
|
|
CONFIG_NLS_ISO8859_1=y
|
|
CONFIG_NLS_UTF8=y
|
|
CONFIG_PRINTK_TIME=y
|
|
# CONFIG_ENABLE_WARN_DEPRECATED is not set
|
|
CONFIG_FRAME_WARN=1024
|
|
CONFIG_MAGIC_SYSRQ=y
|
|
# CONFIG_UNUSED_SYMBOLS is not set
|
|
CONFIG_DEBUG_KERNEL=y
|
|
# CONFIG_SCHED_DEBUG is not set
|
|
CONFIG_SCHEDSTATS=y
|
|
CONFIG_TIMER_STATS=y
|
|
CONFIG_DEBUG_STACK_USAGE=y
|
|
CONFIG_BLK_DEV_IO_TRACE=y
|
|
CONFIG_PROVIDE_OHCI1394_DMA_INIT=y
|
|
CONFIG_EARLY_PRINTK_DBGP=y
|
|
CONFIG_DEBUG_STACKOVERFLOW=y
|
|
# CONFIG_DEBUG_RODATA_TEST is not set
|
|
CONFIG_DEBUG_BOOT_PARAMS=y
|
|
CONFIG_OPTIMIZE_INLINING=y
|
|
CONFIG_SECURITY=y
|
|
CONFIG_SECURITY_NETWORK=y
|
|
CONFIG_SECURITY_SELINUX=y
|
|
CONFIG_SECURITY_SELINUX_BOOTPARAM=y
|
|
CONFIG_SECURITY_SELINUX_DISABLE=y
|
|
CONFIG_CRYPTO_AES_586=y
|
|
# CONFIG_CRYPTO_ANSI_CPRNG is not set
|