Searched refs:an (Results 1 – 9 of 9) sorted by relevance
20 as they are read or executed. If an attacker manages21 to change the contents of an important system file25 an aggregate integrity value over this list inside the158 bool "Enable loading an IMA architecture specific policy"163 This option enables loading an IMA architecture specific policy171 This option defines an IMA appraisal policy at build time, which268 This option creates an IMA blacklist keyring, which contains all271 an error is returned to the caller.
46 bool "Treat delivering signals as an append operation"52 will be an append operation instead. This makes it possible
59 bool "Load an X509 certificate onto the '.evm' trusted keyring"63 Load an X509 certificate onto the '.evm' trusted keyring.
8 SafeSetID is an LSM module that gates the setid family of syscalls to
10 rejected. This is best used on systems without an initrd that
6 Build support for an LSM that enforces a coarse kernel lockdown
199 To provide an additional layer of security, route all of these210 STATIC_USERMODEHELPER_PATH to an empty string.223 specify an empty string here (i.e. "").
165 static int vec_cmp(struct aa_profile **a, int an, struct aa_profile **b, int bn) in vec_cmp() argument173 AA_BUG(an <= 0); in vec_cmp()176 for (i = 0; i < an && i < bn; i++) { in vec_cmp()183 return an - bn; in vec_cmp()
38 filesystem in which each method needs to request an authentication