summaryrefslogtreecommitdiff
path: root/security/yama/Kconfig
diff options
context:
space:
mode:
authorYuval Adam <_@yuv.al>2017-08-30 08:25:59 +0000
committerYuval Adam <_@yuv.al>2017-08-30 08:25:59 +0000
commit8e4bff4cab0ddac6060645b0715210484d02ff40 (patch)
tree3a5c3024371a04692a3a6d9974d001cdff8ebf84 /security/yama/Kconfig
Initial file dump from open source releaseHEADmaster
Diffstat (limited to 'security/yama/Kconfig')
-rw-r--r--security/yama/Kconfig21
1 files changed, 21 insertions, 0 deletions
diff --git a/security/yama/Kconfig b/security/yama/Kconfig
new file mode 100644
index 00000000..20ef5143
--- /dev/null
+++ b/security/yama/Kconfig
@@ -0,0 +1,21 @@
+config SECURITY_YAMA
+ bool "Yama support"
+ depends on SECURITY
+ select SECURITYFS
+ select SECURITY_PATH
+ default n
+ help
+ This selects Yama, which extends DAC support with additional
+ system-wide security settings beyond regular Linux discretionary
+ access controls. Currently available is ptrace scope restriction.
+ Further information can be found in Documentation/security/Yama.txt.
+
+ If you are unsure how to answer this question, answer N.
+
+config SECURITY_YAMA_STACKED
+ bool "Yama stacked with other LSMs"
+ depends on SECURITY_YAMA
+ default n
+ help
+ When Yama is built into the kernel, force it to stack with the
+ selected primary LSM.