| /linux/security/lockdown/ |
| H A D | Kconfig | 2 bool "Basic module for enforcing kernel lockdown" 6 Build support for an LSM that enforces a coarse kernel lockdown 10 bool "Enable lockdown LSM early in init" 13 Enable the lockdown LSM early in boot. This is necessary in order 14 to ensure that lockdown enforcement can be carried out on kernel 16 subsystem is fully initialised. If enabled, lockdown will 20 prompt "Kernel default lockdown mode" 25 lockdown. 30 No lockdown functionality is enabled by default. Lockdown may be 31 enabled via the kernel commandline or /sys/kernel/security/lockdown.
|
| H A D | lockdown.c | 165 DEFINE_EARLY_LSM(lockdown) = { 167 DEFINE_LSM(lockdown) = {
|
| H A D | Makefile | 1 obj-$(CONFIG_SECURITY_LOCKDOWN_LSM) += lockdown.o
|
| /linux/Documentation/usb/ |
| H A D | authorization.rst | 41 Example system lockdown (lame) 44 Imagine you want to implement a lockdown so only devices of type XYZ 64 Now, device_is_my_type() is where the juice for a lockdown is. Just 77 if [ $sum = $(cat /etc/lockdown/keysum) ]
|
| /linux/security/ |
| H A D | Kconfig | 228 source "security/lockdown/Kconfig" 271 default "landlock,lockdown,yama,loadpin,safesetid,smack,selinux,tomoyo,apparmor,ipe,bpf" if DEFAULT_SECURITY_SMACK 272 default "landlock,lockdown,yama,loadpin,safesetid,apparmor,selinux,smack,tomoyo,ipe,bpf" if DEFAULT_SECURITY_APPARMOR 273 default "landlock,lockdown,yama,loadpin,safesetid,tomoyo,ipe,bpf" if DEFAULT_SECURITY_TOMOYO 274 default "landlock,lockdown,yama,loadpin,safesetid,ipe,bpf" if DEFAULT_SECURITY_DAC 275 default "landlock,lockdown,yama,loadpin,safesetid,selinux,smack,tomoyo,apparmor,ipe,bpf"
|
| H A D | Makefile | 24 obj-$(CONFIG_SECURITY_LOCKDOWN_LSM) += lockdown/
|
| /linux/drivers/input/rmi4/ |
| H A D | rmi_f34.h | 183 u16 lockdown; member 220 struct block_data lockdown; member
|
| H A D | rmi_f34v7.c | 434 blkcount->lockdown = partition_length; in rmi_f34v7_parse_partition_table() 437 __func__, blkcount->lockdown); in rmi_f34v7_parse_partition_table() 905 f34->v7.img.lockdown.data = content; in rmi_f34v7_parse_img_header_10_bl_container() 906 f34->v7.img.lockdown.size = length; in rmi_f34v7_parse_img_header_10_bl_container()
|
| /linux/arch/powerpc/configs/ |
| H A D | security.config | 3 # This is the equivalent of booting with lockdown=integrity
|
| /linux/Documentation/userspace-api/ |
| H A D | landlock.rst | 748 CONFIG_LSM="lockdown,yama,integrity,apparmor" 755 lsm=lockdown,yama,integrity,apparmor 760 lsm=landlock,lockdown,yama,integrity,apparmor 768 [ 0.000000] Command line: [...] lsm=landlock,lockdown,yama,integrity,apparmor 769 [ 0.000000] Kernel command line: [...] lsm=landlock,lockdown,yama,integrity,apparmor 770 [ 0.000000] LSM: initializing lsm=lockdown,capability,landlock,yama,integrity,apparmor 773 The kernel may be configured at build time to always load the ``lockdown`` and
|
| /linux/arch/mips/configs/ |
| H A D | gcw0_defconfig | 144 CONFIG_LSM="lockdown,yama,loadpin,safesetid,integrity"
|
| /linux/kernel/module/ |
| H A D | Kconfig | 265 CONFIG_SECURITY_LOCKDOWN_LSM or lockdown functionality imposed via 267 of the lockdown policy.
|
| /linux/Documentation/admin-guide/ |
| H A D | kernel-parameters.txt | 3568 lockdown= [SECURITY,EARLY] 3570 Enable the kernel lockdown feature. If set to
|
| /linux/ |
| H A D | MAINTAINERS | 14982 F: security/lockdown/
|