From mboxrd@z Thu Jan 1 00:00:00 1970 From: Peter =?utf-8?q?M=C3=BCller?= To: development@lists.ipfire.org Subject: [PATCH 1/3] linux: Properly load Landlock module Date: Mon, 22 Apr 2024 16:43:00 +0000 Message-ID: MIME-Version: 1.0 Content-Type: multipart/mixed; boundary="===============2645069925870410934==" List-Id: --===============2645069925870410934== Content-Type: text/plain; charset="utf-8" Content-Transfer-Encoding: quoted-printable Fixes: #13645 Tested-by: Peter M=C3=BCller Signed-off-by: Peter M=C3=BCller --- config/kernel/kernel.config.aarch64-ipfire | 2 +- config/kernel/kernel.config.riscv64-ipfire | 2 +- config/kernel/kernel.config.x86_64-ipfire | 2 +- 3 files changed, 3 insertions(+), 3 deletions(-) diff --git a/config/kernel/kernel.config.aarch64-ipfire b/config/kernel/kerne= l.config.aarch64-ipfire index b85d7add9..af8aae163 100644 --- a/config/kernel/kernel.config.aarch64-ipfire +++ b/config/kernel/kernel.config.aarch64-ipfire @@ -8066,7 +8066,7 @@ CONFIG_INTEGRITY=3Dy # CONFIG_IMA_SECURE_AND_OR_TRUSTED_BOOT is not set # CONFIG_EVM is not set CONFIG_DEFAULT_SECURITY_DAC=3Dy -CONFIG_LSM=3D"lockdown,yama,loadpin,safesetid,integrity,bpf" +CONFIG_LSM=3D"landlock,lockdown,yama,loadpin,safesetid,integrity,bpf" =20 # # Kernel hardening options diff --git a/config/kernel/kernel.config.riscv64-ipfire b/config/kernel/kerne= l.config.riscv64-ipfire index 2bd39e7de..ca603ad93 100644 --- a/config/kernel/kernel.config.riscv64-ipfire +++ b/config/kernel/kernel.config.riscv64-ipfire @@ -6745,7 +6745,7 @@ CONFIG_INTEGRITY=3Dy # CONFIG_IMA is not set # CONFIG_EVM is not set CONFIG_DEFAULT_SECURITY_DAC=3Dy -CONFIG_LSM=3D"lockdown,yama,loadpin,safesetid,integrity,bpf" +CONFIG_LSM=3D"landlock,lockdown,yama,loadpin,safesetid,integrity,bpf" =20 # # Kernel hardening options diff --git a/config/kernel/kernel.config.x86_64-ipfire b/config/kernel/kernel= .config.x86_64-ipfire index 8ce66cb4f..fa943a2bb 100644 --- a/config/kernel/kernel.config.x86_64-ipfire +++ b/config/kernel/kernel.config.x86_64-ipfire @@ -7252,7 +7252,7 @@ CONFIG_INTEGRITY=3Dy # CONFIG_IMA_SECURE_AND_OR_TRUSTED_BOOT is not set # CONFIG_EVM is not set CONFIG_DEFAULT_SECURITY_DAC=3Dy -CONFIG_LSM=3D"lockdown,yama,loadpin,safesetid,integrity,bpf" +CONFIG_LSM=3D"landlock,lockdown,yama,loadpin,safesetid,integrity,bpf" =20 # # Kernel hardening options --=20 2.35.3 --===============2645069925870410934==--