Home
last modified time | relevance | path

Searched refs:an (Results 1 – 11 of 11) sorted by relevance

/security/integrity/ima/
A DKconfig21 as they are read or executed. If an attacker manages
22 to change the contents of an important system file
26 an aggregate integrity value over this list inside the
159 bool "Enable loading an IMA architecture specific policy"
164 This option enables loading an IMA architecture specific policy
172 This option defines an IMA appraisal policy at build time, which
270 This option creates an IMA blacklist keyring, which contains all
273 an error is returned to the caller.
332 If set to the default value of 0, an extra half page of memory for those
/security/loadpin/
A DKconfig10 rejected. This is best used on systems without an initrd that
35 The list of trusted verity can be populated through an ioctl
/security/smack/
A DKconfig46 bool "Treat delivering signals as an append operation"
52 will be an append operation instead. This makes it possible
/security/integrity/evm/
A DKconfig60 bool "Load an X509 certificate onto the '.evm' trusted keyring"
64 Load an X509 certificate onto the '.evm' trusted keyring.
/security/safesetid/
A DKconfig8 SafeSetID is an LSM module that gates the setid family of syscalls to
/security/lockdown/
A DKconfig6 Build support for an LSM that enforces a coarse kernel lockdown
/security/
A DKconfig197 To provide an additional layer of security, route all of these
208 STATIC_USERMODEHELPER_PATH to an empty string.
221 specify an empty string here (i.e. "").
A DKconfig.hardening253 to catch memory corruptions that are not guaranteed to result in an
285 This can introduce the requirement of an additional information
/security/ipe/
A DKconfig28 This option specifies a filepath to an IPE policy that is compiled
/security/apparmor/
A Dlabel.c166 static int vec_cmp(struct aa_profile **a, int an, struct aa_profile **b, int bn) in vec_cmp() argument
174 AA_BUG(an <= 0); in vec_cmp()
177 for (i = 0; i < an && i < bn; i++) { in vec_cmp()
184 return an - bn; in vec_cmp()
/security/keys/
A DKconfig38 filesystem in which each method needs to request an authentication

Completed in 12 milliseconds