Re: [PATCH] Compile-time config for libraries.

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On Tue, Apr 04, 2023 at 11:35:35PM +0000, David Ruth wrote:
> Prevent loading arbitrary executable code based on config at runtime,
> while allowing libraries to be specified at compile time when they are
> known in advance.
> 
> * Add the ability to configure libraries to load at compile time.
> 	* CONFIG_PKCS11_ENGINE_PATH - pkcs11_engine library location.
> 	* CONFIG_PKCS11_MODULE_PATH - pkcs11_module library location.
> 	* CONFIG_OPENSC_ENGINE_PATH - opensc_engine library location.
> * Add flags with the ability to set each of the libraries to NULL and
>   prevent loading them at runtime.
> 	* CONFIG_NO_PKCS11_ENGINE_PATH - prevents loading pkcs11_engine
> 	  library.
> 	* CONFIG_NO_PKCS11_MODULE_PATH - prevents loading pkcs11_module
> 	  library.
> 	* CONFIG_NO_OPENSC_ENGINE_PATH - prevents loading opens_engine
> 	  library.
> 	* CONFIG_NO_LOAD_DYNAMIC_EAP - prevents loading eap libraries at
> 	  runtime.

Thanks, applied with some cleanup.

-- 
Jouni Malinen                                            PGP id EFC895FA

_______________________________________________
Hostap mailing list
Hostap@xxxxxxxxxxxxxxxxxxx
http://lists.infradead.org/mailman/listinfo/hostap



[Index of Archives]     [Linux Wireless]     [Linux Kernel]     [ATH6KL]     [Linux Bluetooth]     [Linux Netdev]     [Kernel Newbies]     [IDE]     [Security]     [Git]     [Netfilter]     [Bugtraq]     [Yosemite News]     [MIPS Linux]     [ARM Linux]     [Linux Security]     [Linux RAID]     [Linux ATA RAID]     [Samba]     [Device Mapper]

  Powered by Linux