[amd64] Enable SIGNED_PE_FILE_VERIFICATION, KEXEC_FILE, KEXEC_VERIFY_SIG, KEXEC_BZIMAGE_VERIFY_SIG

This commit is contained in:
Ben Hutchings 2016-09-07 22:09:23 +01:00
parent 7dd9d01ac5
commit db336de154
2 changed files with 10 additions and 0 deletions

2
debian/changelog vendored
View File

@ -118,6 +118,8 @@ linux (4.7.3-1) UNRELEASED; urgency=medium
[ Ben Hutchings ]
* [arm64] Add cpu_to_fdt32() when setting Secure Boot flag in FDT
* [amd64] Enable SIGNED_PE_FILE_VERIFICATION, KEXEC_FILE,
KEXEC_VERIFY_SIG, KEXEC_BZIMAGE_VERIFY_SIG
-- Ben Hutchings <ben@decadent.org.uk> Sat, 03 Sep 2016 18:34:31 +0100

View File

@ -14,6 +14,9 @@ CONFIG_AMD_NUMA=y
CONFIG_X86_64_ACPI_NUMA=y
CONFIG_NUMA_EMU=y
CONFIG_EFI_MIXED=y
CONFIG_KEXEC_FILE=y
CONFIG_KEXEC_VERIFY_SIG=y
CONFIG_KEXEC_BZIMAGE_VERIFY_SIG=y
CONFIG_PCI_MMCONFIG=y
CONFIG_ISA_DMA_API=y
CONFIG_X86_X32=y
@ -61,6 +64,11 @@ CONFIG_CRYPTO_TWOFISH_X86_64=m
CONFIG_CRYPTO_TWOFISH_X86_64_3WAY=m
CONFIG_CRYPTO_TWOFISH_AVX_X86_64=m
##
## file: crypto/asymmetric_keys/Kconfig
##
CONFIG_SIGNED_PE_FILE_VERIFICATION=y
##
## file: drivers/acpi/Kconfig
##