blob: ab2d8a206e3a71c5f44b07dd82955f2d8c24366b (
plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
|
# DO NOT EDIT. This file is generated from Config.src
#
# For a description of the syntax of this configuration file,
# see docs/Kconfig-language.txt.
#
menu "SELinux Utilities"
depends on BUSYBOX_SELINUX
config BUSYBOX_CHCON
bool "chcon (8.9 kb)"
default n
depends on BUSYBOX_SELINUX
help
Enable support to change the security context of file.
config BUSYBOX_GETENFORCE
bool "getenforce (1.7 kb)"
default n
depends on BUSYBOX_SELINUX
help
Enable support to get the current mode of SELinux.
config BUSYBOX_GETSEBOOL
bool "getsebool (5.5 kb)"
default n
depends on BUSYBOX_SELINUX
help
Enable support to get SELinux boolean values.
config BUSYBOX_LOAD_POLICY
bool "load_policy (1.6 kb)"
default n
depends on BUSYBOX_SELINUX
help
Enable support to load SELinux policy.
config BUSYBOX_MATCHPATHCON
bool "matchpathcon (6.1 kb)"
default n
depends on BUSYBOX_SELINUX
help
Enable support to get default security context of the
specified path from the file contexts configuration.
config BUSYBOX_RUNCON
bool "runcon (6.6 kb)"
default n
depends on BUSYBOX_SELINUX
help
Enable support to run command in specified security context.
config BUSYBOX_SELINUXENABLED
bool "selinuxenabled (321 bytes)"
default n
depends on BUSYBOX_SELINUX
help
Enable support for this command to be used within shell scripts
to determine if selinux is enabled.
config BUSYBOX_SESTATUS
bool "sestatus (12 kb)"
default n
depends on BUSYBOX_SELINUX
help
Displays the status of SELinux.
config BUSYBOX_SETENFORCE
bool "setenforce (2.1 kb)"
default n
depends on BUSYBOX_SELINUX
help
Enable support to modify the mode SELinux is running in.
config BUSYBOX_SETFILES
bool "setfiles (13 kb)"
default n
depends on BUSYBOX_SELINUX
help
Enable support to modify to relabel files.
Notice: If you built libselinux with -D_FILE_OFFSET_BITS=64,
(It is default in libselinux's Makefile), you _must_ enable
CONFIG_LFS.
config BUSYBOX_FEATURE_SETFILES_CHECK_OPTION
bool "Enable check option"
default n
depends on BUSYBOX_SETFILES
help
Support "-c" option (check the validity of the contexts against
the specified binary policy) for setfiles. Requires libsepol.
config BUSYBOX_RESTORECON
bool "restorecon (12 kb)"
default n
depends on BUSYBOX_SELINUX
help
Enable support to relabel files. The feature is almost
the same as setfiles, but usage is a little different.
config BUSYBOX_SETSEBOOL
bool "setsebool (1.7 kb)"
default n
depends on BUSYBOX_SELINUX
help
Enable support for change boolean.
semanage and -P option is not supported yet.
endmenu
|