summaryrefslogtreecommitdiffstats
path: root/security
diff options
context:
space:
mode:
authorMicah Morton <mortonm@chromium.org>2019-01-29 19:54:24 +0100
committerJames Morris <james.morris@microsoft.com>2019-01-29 20:50:48 +0100
commit2f87324be7736151bd1f9bf1d63b1eb0401011ba (patch)
tree62ac643dd0efdd2cecb8c8abfe46807f7502c682 /security
parentLSM: Add 'name' field for SafeSetID in DEFINE_LSM (diff)
downloadlinux-2f87324be7736151bd1f9bf1d63b1eb0401011ba.tar.xz
linux-2f87324be7736151bd1f9bf1d63b1eb0401011ba.zip
LSM: SafeSetID: 'depend' on CONFIG_SECURITY
This patch changes the Kconfig file for the SafeSetID LSM to depend on CONFIG_SECURITY as well as select CONFIG_SECURITYFS, since the policies for the LSM are configured through writing to securityfs. Signed-off-by: Micah Morton <mortonm@chromium.org> Signed-off-by: James Morris <james.morris@microsoft.com>
Diffstat (limited to 'security')
-rw-r--r--security/safesetid/Kconfig2
1 files changed, 2 insertions, 0 deletions
diff --git a/security/safesetid/Kconfig b/security/safesetid/Kconfig
index bf89a47ffcc8..4f415c4e3f93 100644
--- a/security/safesetid/Kconfig
+++ b/security/safesetid/Kconfig
@@ -1,5 +1,7 @@
config SECURITY_SAFESETID
bool "Gate setid transitions to limit CAP_SET{U/G}ID capabilities"
+ depends on SECURITY
+ select SECURITYFS
default n
help
SafeSetID is an LSM module that gates the setid family of syscalls to