Searched refs:lockdown (Results 1 – 13 of 13) sorted by relevance
| /Linux-v5.15/security/lockdown/ |
| D | Kconfig | 2 bool "Basic module for enforcing kernel lockdown" 6 Build support for an LSM that enforces a coarse kernel lockdown 10 bool "Enable lockdown LSM early in init" 13 Enable the lockdown LSM early in boot. This is necessary in order 14 to ensure that lockdown enforcement can be carried out on kernel 16 subsystem is fully initialised. If enabled, lockdown will 20 prompt "Kernel default lockdown mode" 25 lockdown. 30 No lockdown functionality is enabled by default. Lockdown may be 31 enabled via the kernel commandline or /sys/kernel/security/lockdown.
|
| D | lockdown.c | 161 DEFINE_EARLY_LSM(lockdown) = { 163 DEFINE_LSM(lockdown) = {
|
| D | Makefile | 1 obj-$(CONFIG_SECURITY_LOCKDOWN_LSM) += lockdown.o
|
| /Linux-v5.15/Documentation/usb/ |
| D | authorization.rst | 44 Example system lockdown (lame) 47 Imagine you want to implement a lockdown so only devices of type XYZ 67 Now, device_is_my_type() is where the juice for a lockdown is. Just 80 if [ $sum = $(cat /etc/lockdown/keysum) ]
|
| /Linux-v5.15/arch/powerpc/configs/ |
| D | security.config | 1 # This is the equivalent of booting with lockdown=integrity
|
| /Linux-v5.15/security/ |
| D | Kconfig | 240 source "security/lockdown/Kconfig" 281 …default "landlock,lockdown,yama,loadpin,safesetid,integrity,smack,selinux,tomoyo,apparmor,bpf" if … 282 …default "landlock,lockdown,yama,loadpin,safesetid,integrity,apparmor,selinux,smack,tomoyo,bpf" if … 283 default "landlock,lockdown,yama,loadpin,safesetid,integrity,tomoyo,bpf" if DEFAULT_SECURITY_TOMOYO 284 default "landlock,lockdown,yama,loadpin,safesetid,integrity,bpf" if DEFAULT_SECURITY_DAC 285 default "landlock,lockdown,yama,loadpin,safesetid,integrity,selinux,smack,tomoyo,apparmor,bpf"
|
| D | Makefile | 23 obj-$(CONFIG_SECURITY_LOCKDOWN_LSM) += lockdown/
|
| /Linux-v5.15/drivers/input/rmi4/ |
| D | rmi_f34.h | 183 u16 lockdown; member 220 struct block_data lockdown; member
|
| D | rmi_f34v7.c | 412 blkcount->lockdown = partition_length; in rmi_f34v7_parse_partition_table() 415 __func__, blkcount->lockdown); in rmi_f34v7_parse_partition_table() 1064 f34->v7.img.lockdown.data = content; in rmi_f34v7_parse_img_header_10_bl_container() 1065 f34->v7.img.lockdown.size = length; in rmi_f34v7_parse_img_header_10_bl_container()
|
| /Linux-v5.15/arch/mips/configs/ |
| D | gcw0_defconfig | 147 CONFIG_LSM="lockdown,yama,loadpin,safesetid,integrity"
|
| /Linux-v5.15/arch/powerpc/xmon/ |
| D | xmon.c | 309 static bool lockdown; in xmon_is_locked_down() local 311 if (!lockdown) { in xmon_is_locked_down() 312 lockdown = !!security_locked_down(LOCKDOWN_XMON_RW); in xmon_is_locked_down() 313 if (lockdown) { in xmon_is_locked_down() 325 return lockdown; in xmon_is_locked_down()
|
| /Linux-v5.15/init/ |
| D | Kconfig | 2158 CONFIG_SECURITY_LOCKDOWN_LSM or lockdown functionality imposed via 2160 of the lockdown policy.
|
| /Linux-v5.15/Documentation/admin-guide/ |
| D | kernel-parameters.txt | 2616 lockdown= [SECURITY] 2618 Enable the kernel lockdown feature. If set to
|