Message ID | 20210831144114.154-18-alexandr.lobakin@intel.com (mailing list archive) |
---|---|
State | New, archived |
Headers | show
Return-Path: <linux-kbuild-owner@kernel.org> X-Spam-Checker-Version: SpamAssassin 3.4.0 (2014-02-07) on aws-us-west-2-korg-lkml-1.web.codeaurora.org X-Spam-Level: X-Spam-Status: No, score=-16.8 required=3.0 tests=BAYES_00, HEADER_FROM_DIFFERENT_DOMAINS,INCLUDES_CR_TRAILER,INCLUDES_PATCH, MAILING_LIST_MULTI,SPF_HELO_NONE,SPF_PASS,USER_AGENT_GIT autolearn=ham autolearn_force=no version=3.4.0 Received: from mail.kernel.org (mail.kernel.org [198.145.29.99]) by smtp.lore.kernel.org (Postfix) with ESMTP id B478BC43214 for <linux-kbuild@archiver.kernel.org>; Tue, 31 Aug 2021 14:43:02 +0000 (UTC) Received: from vger.kernel.org (vger.kernel.org [23.128.96.18]) by mail.kernel.org (Postfix) with ESMTP id 9B1F4610CB for <linux-kbuild@archiver.kernel.org>; Tue, 31 Aug 2021 14:43:02 +0000 (UTC) Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S238900AbhHaOny (ORCPT <rfc822;linux-kbuild@archiver.kernel.org>); Tue, 31 Aug 2021 10:43:54 -0400 Received: from mga18.intel.com ([134.134.136.126]:36597 "EHLO mga18.intel.com" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S238872AbhHaOnj (ORCPT <rfc822;linux-kbuild@vger.kernel.org>); Tue, 31 Aug 2021 10:43:39 -0400 X-IronPort-AV: E=McAfee;i="6200,9189,10093"; a="205617150" X-IronPort-AV: E=Sophos;i="5.84,366,1620716400"; d="scan'208";a="205617150" Received: from fmsmga007.fm.intel.com ([10.253.24.52]) by orsmga106.jf.intel.com with ESMTP/TLS/ECDHE-RSA-AES256-GCM-SHA384; 31 Aug 2021 07:42:31 -0700 X-ExtLoop1: 1 X-IronPort-AV: E=Sophos;i="5.84,366,1620716400"; d="scan'208";a="460167474" Received: from irvmail001.ir.intel.com ([10.43.11.63]) by fmsmga007.fm.intel.com with ESMTP; 31 Aug 2021 07:42:25 -0700 Received: from alobakin-mobl.ger.corp.intel.com (psmrokox-mobl.ger.corp.intel.com [10.213.6.58]) by irvmail001.ir.intel.com (8.14.3/8.13.6/MailSET/Hub) with ESMTP id 17VEfmfh002209; Tue, 31 Aug 2021 15:42:22 +0100 From: Alexander Lobakin <alexandr.lobakin@intel.com> To: linux-hardening@vger.kernel.org Cc: "Kristen C Accardi" <kristen.c.accardi@intel.com>, Kristen Carlson Accardi <kristen@linux.intel.com>, Kees Cook <keescook@chromium.org>, Masahiro Yamada <masahiroy@kernel.org>, "H. Peter Anvin" <hpa@zytor.com>, Jessica Yu <jeyu@kernel.org>, Nathan Chancellor <nathan@kernel.org>, Nick Desaulniers <ndesaulniers@google.com>, Marios Pomonis <pomonis@google.com>, Sami Tolvanen <samitolvanen@google.com>, Tony Luck <tony.luck@intel.com>, Ard Biesheuvel <ardb@kernel.org>, Jesse Brandeburg <jesse.brandeburg@intel.com>, Lukasz Czapnik <lukasz.czapnik@intel.com>, "Marta A Plantykow" <marta.a.plantykow@intel.com>, Michal Kubiak <michal.kubiak@intel.com>, Michal Swiatkowski <michal.swiatkowski@intel.com>, Alexander Lobakin <alexandr.lobakin@intel.com>, linux-kbuild@vger.kernel.org, linux-arch@vger.kernel.org, linux-kernel@vger.kernel.org, clang-built-linux@googlegroups.com Subject: [PATCH v6 kspp-next 17/22] x86/boot: allow FG-KASLR to be selected Date: Tue, 31 Aug 2021 16:41:09 +0200 Message-Id: <20210831144114.154-18-alexandr.lobakin@intel.com> X-Mailer: git-send-email 2.31.1 In-Reply-To: <20210831144114.154-1-alexandr.lobakin@intel.com> References: <20210831144114.154-1-alexandr.lobakin@intel.com> MIME-Version: 1.0 Content-Transfer-Encoding: 8bit Precedence: bulk List-ID: <linux-kbuild.vger.kernel.org> X-Mailing-List: linux-kbuild@vger.kernel.org |
Series |
Function Granular KASLR
|
expand
|
diff --git a/arch/x86/Kconfig b/arch/x86/Kconfig index 88fb922c23a0..bba561053557 100644 --- a/arch/x86/Kconfig +++ b/arch/x86/Kconfig @@ -74,6 +74,7 @@ config X86 select ARCH_HAS_EARLY_DEBUG if KGDB select ARCH_HAS_ELF_RANDOMIZE select ARCH_HAS_FAST_MULTIPLIER + select ARCH_HAS_FG_KASLR if X86_64 && RANDOMIZE_BASE select ARCH_HAS_FILTER_PGPROT select ARCH_HAS_FORTIFY_SOURCE select ARCH_HAS_GCOV_PROFILE_ALL
Now that we have full support of FG-KASLR from both kernel core and x86 code, allow FG-KASLR to be enabled for x86_64 if the "regular" KASLR is also turned on. Signed-off-by: Alexander Lobakin <alexandr.lobakin@intel.com> --- arch/x86/Kconfig | 1 + 1 file changed, 1 insertion(+)