summaryrefslogtreecommitdiff
path: root/security/yama/Kconfig
diff options
context:
space:
mode:
Diffstat (limited to 'security/yama/Kconfig')
-rw-r--r--security/yama/Kconfig15
1 files changed, 4 insertions, 11 deletions
diff --git a/security/yama/Kconfig b/security/yama/Kconfig
index 20ef5143c0c0..a810304123ca 100644
--- a/security/yama/Kconfig
+++ b/security/yama/Kconfig
@@ -1,21 +1,14 @@
+# SPDX-License-Identifier: GPL-2.0-only
config SECURITY_YAMA
bool "Yama support"
depends on SECURITY
- select SECURITYFS
- select SECURITY_PATH
default n
help
This selects Yama, which extends DAC support with additional
system-wide security settings beyond regular Linux discretionary
access controls. Currently available is ptrace scope restriction.
- Further information can be found in Documentation/security/Yama.txt.
+ Like capabilities, this security module stacks with other LSMs.
+ Further information can be found in
+ Documentation/admin-guide/LSM/Yama.rst.
If you are unsure how to answer this question, answer N.
-
-config SECURITY_YAMA_STACKED
- bool "Yama stacked with other LSMs"
- depends on SECURITY_YAMA
- default n
- help
- When Yama is built into the kernel, force it to stack with the
- selected primary LSM.