aboutsummaryrefslogtreecommitdiff
path: root/security/yama/Kconfig
diff options
context:
space:
mode:
Diffstat (limited to 'security/yama/Kconfig')
-rw-r--r--security/yama/Kconfig21
1 files changed, 21 insertions, 0 deletions
diff --git a/security/yama/Kconfig b/security/yama/Kconfig
new file mode 100644
index 00000000000..20ef5143c0c
--- /dev/null
+++ b/security/yama/Kconfig
@@ -0,0 +1,21 @@
+config SECURITY_YAMA
+ bool "Yama support"
+ depends on SECURITY
+ select SECURITYFS
+ select SECURITY_PATH
+ default n
+ help
+ This selects Yama, which extends DAC support with additional
+ system-wide security settings beyond regular Linux discretionary
+ access controls. Currently available is ptrace scope restriction.
+ Further information can be found in Documentation/security/Yama.txt.
+
+ If you are unsure how to answer this question, answer N.
+
+config SECURITY_YAMA_STACKED
+ bool "Yama stacked with other LSMs"
+ depends on SECURITY_YAMA
+ default n
+ help
+ When Yama is built into the kernel, force it to stack with the
+ selected primary LSM.