crypto: Change CRYPTO_SHA256 from module to built-in, as required by IMA

This commit is contained in:
Ben Hutchings 2017-05-02 16:21:36 +01:00
parent 472b038c1a
commit 38ea360ed4
3 changed files with 4 additions and 1 deletions

1
debian/changelog vendored
View File

@ -397,6 +397,7 @@ linux (4.9.25-1) UNRELEASED; urgency=medium
reverted using the kernel parameter: checkreqprot=1
* udeb: Move mfd-core to kernel-image, as both input-modules and
mmc-modules need it
* crypto: Change CRYPTO_SHA256 from module to built-in, as required by IMA
[ Salvatore Bonaccorso ]
* ping: implement proper locking (CVE-2017-2671)

View File

@ -119,6 +119,7 @@ CONFIG_SUN_PARTITION=y
## file: crypto/Kconfig
##
# CONFIG_CRYPTO_FIPS is not set
CONFIG_CRYPTO_SHA256=m
##
## file: drivers/ata/Kconfig

View File

@ -109,7 +109,8 @@ CONFIG_CRYPTO_RMD256=m
CONFIG_CRYPTO_RMD320=m
CONFIG_CRYPTO_SHA1=m
# CONFIG_CRYPTO_SHA1_MB is not set
CONFIG_CRYPTO_SHA256=m
#. Must be built-in for IMA_DEFAULT_HASH_SHA256
CONFIG_CRYPTO_SHA256=y
CONFIG_CRYPTO_SHA512=m
CONFIG_CRYPTO_TGR192=m
CONFIG_CRYPTO_WP512=m