From 928c2bd91a32b84d4f889ab35198eb2ca34bacfe Mon Sep 17 00:00:00 2001 From: Alejandro Date: Sun, 31 May 2020 21:05:50 +0200 Subject: [PATCH] configs: go enforcing --- arch/arm64/configs/exynos7870-a3y17lte_defconfig | 6 +++--- arch/arm64/configs/exynos7870-a6lte_defconfig | 6 +++--- arch/arm64/configs/exynos7870-j5y17lte_defconfig | 6 +++--- arch/arm64/configs/exynos7870-j6lte_defconfig | 6 +++--- arch/arm64/configs/exynos7870-j7velte_defconfig | 6 +++--- arch/arm64/configs/exynos7870-j7xelte_defconfig | 6 +++--- arch/arm64/configs/exynos7870-j7y17lte_defconfig | 6 +++--- arch/arm64/configs/exynos7870-on7xelte_defconfig | 6 +++--- 8 files changed, 24 insertions(+), 24 deletions(-) diff --git a/arch/arm64/configs/exynos7870-a3y17lte_defconfig b/arch/arm64/configs/exynos7870-a3y17lte_defconfig index 554e72f6a45d..27d75c6eac72 100644 --- a/arch/arm64/configs/exynos7870-a3y17lte_defconfig +++ b/arch/arm64/configs/exynos7870-a3y17lte_defconfig @@ -453,7 +453,7 @@ CONFIG_ARM64_UAO=y # # Boot options # -CONFIG_CMDLINE="androidboot.selinux=permissive" +# CONFIG_CMDLINE="androidboot.selinux=permissive" # CONFIG_CMDLINE_FROM_BOOTLOADER is not set CONFIG_CMDLINE_EXTEND=y # CONFIG_CMDLINE_FORCE is not set @@ -4772,8 +4772,8 @@ CONFIG_SECURITY_SELINUX_BOOTPARAM_VALUE=1 # CONFIG_SECURITY_SELINUX_DISABLE is not set CONFIG_SECURITY_SELINUX_DEVELOP=y # CONFIG_SECURITY_SELINUX_FAKE_ENFORCE is not set -# CONFIG_SECURITY_SELINUX_ALWAYS_ENFORCE is not set -CONFIG_SECURITY_SELINUX_NEVER_ENFORCE=y +CONFIG_SECURITY_SELINUX_ALWAYS_ENFORCE=y +# CONFIG_SECURITY_SELINUX_NEVER_ENFORCE is not set CONFIG_SECURITY_SELINUX_AVC_STATS=y CONFIG_SECURITY_SELINUX_CHECKREQPROT_VALUE=1 # CONFIG_SECURITY_SELINUX_POLICYDB_VERSION_MAX is not set diff --git a/arch/arm64/configs/exynos7870-a6lte_defconfig b/arch/arm64/configs/exynos7870-a6lte_defconfig index bace0b15f011..09b3fa4a2a29 100644 --- a/arch/arm64/configs/exynos7870-a6lte_defconfig +++ b/arch/arm64/configs/exynos7870-a6lte_defconfig @@ -455,7 +455,7 @@ CONFIG_ARM64_UAO=y # # Boot options # -CONFIG_CMDLINE="androidboot.selinux=permissive" +# CONFIG_CMDLINE="androidboot.selinux=permissive" # CONFIG_CMDLINE_FROM_BOOTLOADER is not set CONFIG_CMDLINE_EXTEND=y # CONFIG_CMDLINE_FORCE is not set @@ -4699,8 +4699,8 @@ CONFIG_SECURITY_SELINUX_BOOTPARAM_VALUE=1 # CONFIG_SECURITY_SELINUX_DISABLE is not set CONFIG_SECURITY_SELINUX_DEVELOP=y # CONFIG_SECURITY_SELINUX_FAKE_ENFORCE is not set -# CONFIG_SECURITY_SELINUX_ALWAYS_ENFORCE is not set -CONFIG_SECURITY_SELINUX_NEVER_ENFORCE=y +CONFIG_SECURITY_SELINUX_ALWAYS_ENFORCE=y +# CONFIG_SECURITY_SELINUX_NEVER_ENFORCE is not set CONFIG_SECURITY_SELINUX_AVC_STATS=y CONFIG_SECURITY_SELINUX_CHECKREQPROT_VALUE=1 # CONFIG_SECURITY_SELINUX_POLICYDB_VERSION_MAX is not set diff --git a/arch/arm64/configs/exynos7870-j5y17lte_defconfig b/arch/arm64/configs/exynos7870-j5y17lte_defconfig index aecbb8026d42..3f1943bde378 100644 --- a/arch/arm64/configs/exynos7870-j5y17lte_defconfig +++ b/arch/arm64/configs/exynos7870-j5y17lte_defconfig @@ -455,7 +455,7 @@ CONFIG_ARM64_UAO=y # # Boot options # -CONFIG_CMDLINE="androidboot.selinux=permissive" +# CONFIG_CMDLINE="androidboot.selinux=permissive" # CONFIG_CMDLINE_FROM_BOOTLOADER is not set CONFIG_CMDLINE_EXTEND=y # CONFIG_CMDLINE_FORCE is not set @@ -4706,8 +4706,8 @@ CONFIG_SECURITY_SELINUX_BOOTPARAM_VALUE=1 # CONFIG_SECURITY_SELINUX_DISABLE is not set CONFIG_SECURITY_SELINUX_DEVELOP=y # CONFIG_SECURITY_SELINUX_FAKE_ENFORCE is not set -# CONFIG_SECURITY_SELINUX_ALWAYS_ENFORCE is not set -CONFIG_SECURITY_SELINUX_NEVER_ENFORCE=y +CONFIG_SECURITY_SELINUX_ALWAYS_ENFORCE=y +# CONFIG_SECURITY_SELINUX_NEVER_ENFORCE is not set CONFIG_SECURITY_SELINUX_AVC_STATS=y CONFIG_SECURITY_SELINUX_CHECKREQPROT_VALUE=1 # CONFIG_SECURITY_SELINUX_POLICYDB_VERSION_MAX is not set diff --git a/arch/arm64/configs/exynos7870-j6lte_defconfig b/arch/arm64/configs/exynos7870-j6lte_defconfig index 75d4b15c9126..f95b181e584b 100644 --- a/arch/arm64/configs/exynos7870-j6lte_defconfig +++ b/arch/arm64/configs/exynos7870-j6lte_defconfig @@ -455,7 +455,7 @@ CONFIG_ARM64_UAO=y # # Boot options # -CONFIG_CMDLINE="androidboot.selinux=permissive" +# CONFIG_CMDLINE="androidboot.selinux=permissive" # CONFIG_CMDLINE_FROM_BOOTLOADER is not set CONFIG_CMDLINE_EXTEND=y # CONFIG_CMDLINE_FORCE is not set @@ -4698,8 +4698,8 @@ CONFIG_SECURITY_SELINUX_BOOTPARAM_VALUE=1 # CONFIG_SECURITY_SELINUX_DISABLE is not set CONFIG_SECURITY_SELINUX_DEVELOP=y # CONFIG_SECURITY_SELINUX_FAKE_ENFORCE is not set -# CONFIG_SECURITY_SELINUX_ALWAYS_ENFORCE is not set -CONFIG_SECURITY_SELINUX_NEVER_ENFORCE=y +CONFIG_SECURITY_SELINUX_ALWAYS_ENFORCE=y +# CONFIG_SECURITY_SELINUX_NEVER_ENFORCE is not set CONFIG_SECURITY_SELINUX_AVC_STATS=y CONFIG_SECURITY_SELINUX_CHECKREQPROT_VALUE=1 # CONFIG_SECURITY_SELINUX_POLICYDB_VERSION_MAX is not set diff --git a/arch/arm64/configs/exynos7870-j7velte_defconfig b/arch/arm64/configs/exynos7870-j7velte_defconfig index 0b70d1cafc95..2289b3c00721 100644 --- a/arch/arm64/configs/exynos7870-j7velte_defconfig +++ b/arch/arm64/configs/exynos7870-j7velte_defconfig @@ -454,7 +454,7 @@ CONFIG_ARM64_UAO=y # # Boot options # -CONFIG_CMDLINE="androidboot.selinux=permissive" +# CONFIG_CMDLINE="androidboot.selinux=permissive" # CONFIG_CMDLINE_FROM_BOOTLOADER is not set CONFIG_CMDLINE_EXTEND=y # CONFIG_CMDLINE_FORCE is not set @@ -4709,8 +4709,8 @@ CONFIG_SECURITY_SELINUX_BOOTPARAM_VALUE=1 # CONFIG_SECURITY_SELINUX_DISABLE is not set CONFIG_SECURITY_SELINUX_DEVELOP=y # CONFIG_SECURITY_SELINUX_FAKE_ENFORCE is not set -# CONFIG_SECURITY_SELINUX_ALWAYS_ENFORCE is not set -CONFIG_SECURITY_SELINUX_NEVER_ENFORCE=y +CONFIG_SECURITY_SELINUX_ALWAYS_ENFORCE=y +# CONFIG_SECURITY_SELINUX_NEVER_ENFORCE is not set CONFIG_SECURITY_SELINUX_AVC_STATS=y CONFIG_SECURITY_SELINUX_CHECKREQPROT_VALUE=1 # CONFIG_SECURITY_SELINUX_POLICYDB_VERSION_MAX is not set diff --git a/arch/arm64/configs/exynos7870-j7xelte_defconfig b/arch/arm64/configs/exynos7870-j7xelte_defconfig index b37f1fd1acd5..0374289a3db7 100644 --- a/arch/arm64/configs/exynos7870-j7xelte_defconfig +++ b/arch/arm64/configs/exynos7870-j7xelte_defconfig @@ -454,7 +454,7 @@ CONFIG_ARM64_UAO=y # # Boot options # -CONFIG_CMDLINE="androidboot.selinux=permissive" +# CONFIG_CMDLINE="androidboot.selinux=permissive" # CONFIG_CMDLINE_FROM_BOOTLOADER is not set CONFIG_CMDLINE_EXTEND=y # CONFIG_CMDLINE_FORCE is not set @@ -4689,8 +4689,8 @@ CONFIG_SECURITY_SELINUX_BOOTPARAM_VALUE=1 # CONFIG_SECURITY_SELINUX_DISABLE is not set CONFIG_SECURITY_SELINUX_DEVELOP=y # CONFIG_SECURITY_SELINUX_FAKE_ENFORCE is not set -# CONFIG_SECURITY_SELINUX_ALWAYS_ENFORCE is not set -CONFIG_SECURITY_SELINUX_NEVER_ENFORCE=y +CONFIG_SECURITY_SELINUX_ALWAYS_ENFORCE=y +# CONFIG_SECURITY_SELINUX_NEVER_ENFORCE is not set CONFIG_SECURITY_SELINUX_AVC_STATS=y CONFIG_SECURITY_SELINUX_CHECKREQPROT_VALUE=1 # CONFIG_SECURITY_SELINUX_POLICYDB_VERSION_MAX is not set diff --git a/arch/arm64/configs/exynos7870-j7y17lte_defconfig b/arch/arm64/configs/exynos7870-j7y17lte_defconfig index 30899d64b374..e54d2e8f9d0f 100644 --- a/arch/arm64/configs/exynos7870-j7y17lte_defconfig +++ b/arch/arm64/configs/exynos7870-j7y17lte_defconfig @@ -455,7 +455,7 @@ CONFIG_ARM64_UAO=y # # Boot options # -CONFIG_CMDLINE="androidboot.selinux=permissive" +# CONFIG_CMDLINE="androidboot.selinux=permissive" # CONFIG_CMDLINE_FROM_BOOTLOADER is not set CONFIG_CMDLINE_EXTEND=y # CONFIG_CMDLINE_FORCE is not set @@ -4708,8 +4708,8 @@ CONFIG_SECURITY_SELINUX_BOOTPARAM_VALUE=1 # CONFIG_SECURITY_SELINUX_DISABLE is not set CONFIG_SECURITY_SELINUX_DEVELOP=y # CONFIG_SECURITY_SELINUX_FAKE_ENFORCE is not set -# CONFIG_SECURITY_SELINUX_ALWAYS_ENFORCE is not set -CONFIG_SECURITY_SELINUX_NEVER_ENFORCE=y +CONFIG_SECURITY_SELINUX_ALWAYS_ENFORCE=y +# CONFIG_SECURITY_SELINUX_NEVER_ENFORCE is not set CONFIG_SECURITY_SELINUX_AVC_STATS=y CONFIG_SECURITY_SELINUX_CHECKREQPROT_VALUE=1 # CONFIG_SECURITY_SELINUX_POLICYDB_VERSION_MAX is not set diff --git a/arch/arm64/configs/exynos7870-on7xelte_defconfig b/arch/arm64/configs/exynos7870-on7xelte_defconfig index 0641fb41dfb8..bc7ff503ed6e 100644 --- a/arch/arm64/configs/exynos7870-on7xelte_defconfig +++ b/arch/arm64/configs/exynos7870-on7xelte_defconfig @@ -455,7 +455,7 @@ CONFIG_ARM64_UAO=y # # Boot options # -CONFIG_CMDLINE="androidboot.selinux=permissive" +# CONFIG_CMDLINE="androidboot.selinux=permissive" # CONFIG_CMDLINE_FROM_BOOTLOADER is not set CONFIG_CMDLINE_EXTEND=y # CONFIG_CMDLINE_FORCE is not set @@ -4710,8 +4710,8 @@ CONFIG_SECURITY_SELINUX_BOOTPARAM_VALUE=1 # CONFIG_SECURITY_SELINUX_DISABLE is not set CONFIG_SECURITY_SELINUX_DEVELOP=y # CONFIG_SECURITY_SELINUX_FAKE_ENFORCE is not set -# CONFIG_SECURITY_SELINUX_ALWAYS_ENFORCE is not set -CONFIG_SECURITY_SELINUX_NEVER_ENFORCE=y +CONFIG_SECURITY_SELINUX_ALWAYS_ENFORCE=y +# CONFIG_SECURITY_SELINUX_NEVER_ENFORCE is not set CONFIG_SECURITY_SELINUX_AVC_STATS=y CONFIG_SECURITY_SELINUX_CHECKREQPROT_VALUE=1 # CONFIG_SECURITY_SELINUX_POLICYDB_VERSION_MAX is not set