summaryrefslogtreecommitdiff
path: root/package/busybox/config/selinux
diff options
context:
space:
mode:
Diffstat (limited to 'package/busybox/config/selinux')
-rw-r--r--package/busybox/config/selinux/Config.in123
1 files changed, 123 insertions, 0 deletions
diff --git a/package/busybox/config/selinux/Config.in b/package/busybox/config/selinux/Config.in
new file mode 100644
index 000000000..ddb0247ba
--- /dev/null
+++ b/package/busybox/config/selinux/Config.in
@@ -0,0 +1,123 @@
+#
+# For a description of the syntax of this configuration file,
+# see scripts/kbuild/config-language.txt.
+#
+
+menu "SELinux Utilities"
+ depends on BUSYBOX_SELINUX
+
+config BUSYBOX_CHCON
+ bool "chcon"
+ default n
+ depends on BUSYBOX_SELINUX
+ help
+ Enable support to change the security context of file.
+
+config BUSYBOX_FEATURE_CHCON_LONG_OPTIONS
+ bool "Enable long options"
+ default y
+ depends on BUSYBOX_CHCON && BUSYBOX_GETOPT_LONG
+ help
+ Support long options for the chcon applet.
+
+config BUSYBOX_GETENFORCE
+ bool "getenforce"
+ default n
+ depends on BUSYBOX_SELINUX
+ help
+ Enable support to get the current mode of SELinux.
+
+config BUSYBOX_GETSEBOOL
+ bool "getsebool"
+ default n
+ depends on BUSYBOX_SELINUX
+ help
+ Enable support to get SELinux boolean values.
+
+config BUSYBOX_LOAD_POLICY
+ bool "load_policy"
+ default n
+ depends on BUSYBOX_SELINUX
+ help
+ Enable support to load SELinux policy.
+
+config BUSYBOX_MATCHPATHCON
+ bool "matchpathcon"
+ default n
+ depends on BUSYBOX_SELINUX
+ help
+ Enable support to get default security context of the
+ specified path from the file contexts configuration.
+
+config BUSYBOX_RESTORECON
+ bool "restorecon"
+ default n
+ depends on BUSYBOX_SELINUX
+ help
+ Enable support to relabel files. The feature is almost
+ the same as setfiles, but usage is a little different.
+
+config BUSYBOX_RUNCON
+ bool "runcon"
+ default n
+ depends on BUSYBOX_SELINUX
+ help
+ Enable support to run command in speficied security context.
+
+config BUSYBOX_FEATURE_RUNCON_LONG_OPTIONS
+ bool "Enable long options"
+ default y
+ depends on BUSYBOX_RUNCON && BUSYBOX_GETOPT_LONG
+ help
+ Support long options for the runcon applet.
+
+config BUSYBOX_SELINUXENABLED
+ bool "selinuxenabled"
+ default n
+ depends on BUSYBOX_SELINUX
+ help
+ Enable support for this command to be used within shell scripts
+ to determine if selinux is enabled.
+
+config BUSYBOX_SETENFORCE
+ bool "setenforce"
+ default n
+ depends on BUSYBOX_SELINUX
+ help
+ Enable support to modify the mode SELinux is running in.
+
+config BUSYBOX_SETFILES
+ bool "setfiles"
+ default n
+ depends on BUSYBOX_SELINUX
+ help
+ Enable support to modify to relabel files.
+ Notice: If you built libselinux with -D_FILE_OFFSET_BITS=64,
+ (It is default in libselinux's Makefile), you _must_ enable
+ CONFIG_LFS.
+
+config BUSYBOX_FEATURE_SETFILES_CHECK_OPTION
+ bool "Enable check option"
+ default n
+ depends on BUSYBOX_SETFILES
+ help
+ Support "-c" option (check the validity of the contexts against
+ the specified binary policy) for setfiles. Requires libsepol.
+
+config BUSYBOX_SETSEBOOL
+ bool "setsebool"
+ default n
+ depends on BUSYBOX_SELINUX
+ help
+ Enable support for change boolean.
+ semanage and -P option is not supported yet.
+
+config BUSYBOX_SESTATUS
+ bool "sestatus"
+ default n
+ depends on BUSYBOX_SELINUX
+ help
+ Displays the status of SELinux.
+
+endmenu
+