linux: enable AppArmor-related options if needed
Using AppArmor requires support in the kernel, so do for AppArmor what we did for SElinux, and enabled the necessary options. Note that a single LSM can be the default one, so as of today, SELinux wins, by virtue of being the last to be enabled. Signed-off-by: Angelo Compagnucci <angelo@amarulasolutions.com> [yann.morin.1998@free.fr: - don't force DEFAULT_SECURITY_APPARMOR, it does not exist in all kernel versions - move closer to SELinux - split into its own patch, write a commit log ] Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr> Tested-by: Angelo Compagnucci <angelo@amarulasolutions.com>
This commit is contained in:
parent
01a82c1401
commit
67e576fab5
@ -408,6 +408,11 @@ define LINUX_KCONFIG_FIXUP_CMDS
|
||||
$(call KCONFIG_ENABLE_OPT,CONFIG_FB,$(@D)/.config)
|
||||
$(call KCONFIG_ENABLE_OPT,CONFIG_LOGO,$(@D)/.config)
|
||||
$(call KCONFIG_ENABLE_OPT,CONFIG_LOGO_LINUX_CLUT224,$(@D)/.config))
|
||||
$(if $(BR2_PACKAGE_LIBAPPARMOR),
|
||||
$(call KCONFIG_ENABLE_OPT,CONFIG_AUDIT,$(@D)/.config)
|
||||
$(call KCONFIG_ENABLE_OPT,CONFIG_SECURITY,$(@D)/.config)
|
||||
$(call KCONFIG_ENABLE_OPT,CONFIG_SECURITY_APPARMOR,$(@D)/.config)
|
||||
$(call KCONFIG_ENABLE_OPT,CONFIG_DEFAULT_SECURITY_APPARMOR,$(@D)/.config))
|
||||
$(if $(BR2_PACKAGE_LIBSELINUX),
|
||||
$(call KCONFIG_ENABLE_OPT,CONFIG_AUDIT,$(@D)/.config)
|
||||
$(call KCONFIG_ENABLE_OPT,CONFIG_DEFAULT_SECURITY_SELINUX,$(@D)/.config)
|
||||
|
Loading…
Reference in New Issue
Block a user