|
@@ -1646,6 +1646,18 @@ config MMAP_ALLOW_UNINITIALIZED
|
|
|
|
|
|
See Documentation/nommu-mmap.txt for more information.
|
|
See Documentation/nommu-mmap.txt for more information.
|
|
|
|
|
|
|
|
+config SYSTEM_TRUSTED_KEYRING
|
|
|
|
+ bool "Provide system-wide ring of trusted keys"
|
|
|
|
+ depends on KEYS
|
|
|
|
+ help
|
|
|
|
+ Provide a system keyring to which trusted keys can be added. Keys in
|
|
|
|
+ the keyring are considered to be trusted. Keys may be added at will
|
|
|
|
+ by the kernel from compiled-in data and from hardware key stores, but
|
|
|
|
+ userspace may only add extra keys if those keys can be verified by
|
|
|
|
+ keys already in the keyring.
|
|
|
|
+
|
|
|
|
+ Keys in this keyring are used by module signature checking.
|
|
|
|
+
|
|
config PROFILING
|
|
config PROFILING
|
|
bool "Profiling support"
|
|
bool "Profiling support"
|
|
help
|
|
help
|
|
@@ -1681,18 +1693,6 @@ config BASE_SMALL
|
|
default 0 if BASE_FULL
|
|
default 0 if BASE_FULL
|
|
default 1 if !BASE_FULL
|
|
default 1 if !BASE_FULL
|
|
|
|
|
|
-config SYSTEM_TRUSTED_KEYRING
|
|
|
|
- bool "Provide system-wide ring of trusted keys"
|
|
|
|
- depends on KEYS
|
|
|
|
- help
|
|
|
|
- Provide a system keyring to which trusted keys can be added. Keys in
|
|
|
|
- the keyring are considered to be trusted. Keys may be added at will
|
|
|
|
- by the kernel from compiled-in data and from hardware key stores, but
|
|
|
|
- userspace may only add extra keys if those keys can be verified by
|
|
|
|
- keys already in the keyring.
|
|
|
|
-
|
|
|
|
- Keys in this keyring are used by module signature checking.
|
|
|
|
-
|
|
|
|
menuconfig MODULES
|
|
menuconfig MODULES
|
|
bool "Enable loadable module support"
|
|
bool "Enable loadable module support"
|
|
option modules
|
|
option modules
|