Skip to content

Suggestion: default to lockdown=confidentiality in kernel 5.4+ #14

Open
@hugecheese

Description

@hugecheese
	lockdown=	[SECURITY]
			{ integrity | confidentiality }
			Enable the kernel lockdown feature. If set to
			integrity, kernel features that allow userland to
			modify the running kernel are disabled. If set to
			confidentiality, kernel features that allow userland
			to extract confidential information from the kernel
			are also disabled.

Metadata

Metadata

Assignees

No one assigned

    Labels

    kconfigChanges related to kconfig options

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions