1 # SPDX-License-Identifier: GPL-2.0
3 # Makefile for the kernel security code
6 obj-
$(CONFIG_KEYS
) += keys
/
7 subdir-
$(CONFIG_SECURITY_SELINUX
) += selinux
8 subdir-
$(CONFIG_SECURITY_SMACK
) += smack
9 subdir-
$(CONFIG_SECURITY_TOMOYO
) += tomoyo
10 subdir-
$(CONFIG_SECURITY_APPARMOR
) += apparmor
11 subdir-
$(CONFIG_SECURITY_YAMA
) += yama
12 subdir-
$(CONFIG_SECURITY_LOADPIN
) += loadpin
13 subdir-
$(CONFIG_SECURITY_SAFESETID
) += safesetid
14 subdir-
$(CONFIG_SECURITY_LOCKDOWN_LSM
) += lockdown
15 subdir-
$(CONFIG_BPF_LSM
) += bpf
17 # always enable default capabilities
19 obj-
$(CONFIG_MMU
) += min_addr.o
22 obj-
$(CONFIG_SECURITY
) += security.o
23 obj-
$(CONFIG_SECURITYFS
) += inode.o
24 obj-
$(CONFIG_SECURITY_SELINUX
) += selinux
/
25 obj-
$(CONFIG_SECURITY_SMACK
) += smack
/
26 obj-
$(CONFIG_SECURITY
) += lsm_audit.o
27 obj-
$(CONFIG_SECURITY_TOMOYO
) += tomoyo
/
28 obj-
$(CONFIG_SECURITY_APPARMOR
) += apparmor
/
29 obj-
$(CONFIG_SECURITY_YAMA
) += yama
/
30 obj-
$(CONFIG_SECURITY_LOADPIN
) += loadpin
/
31 obj-
$(CONFIG_SECURITY_SAFESETID
) += safesetid
/
32 obj-
$(CONFIG_SECURITY_LOCKDOWN_LSM
) += lockdown
/
33 obj-
$(CONFIG_CGROUPS
) += device_cgroup.o
34 obj-
$(CONFIG_BPF_LSM
) += bpf
/
36 # Object integrity file lists
37 subdir-
$(CONFIG_INTEGRITY
) += integrity
38 obj-
$(CONFIG_INTEGRITY
) += integrity
/