ANDROID: GKI: Disable security lockdown for unsigned modules
By default with SELinux enabled behavior for unsigned module loading is same as sig_enforce=1. This causes loading of unsigned modules fail. All modules in Android GKI are unsigned except GKI modules. Do not prevent module loading in case of CONFIG_SIG_MODULE_PROTECT; which was introduced to change behavior of sig_enforce to allow unsigned modules but not access to protected symbols. Bug: 200082547 Bug: 214445388 Fixes: 9ab6a242 ("ANDROID: GKI: Add module load time protected symbol lookup") Test: TreeHugger Signed-off-by:Ramji Jiyani <ramjiyani@google.com> Change-Id: Iab3113d706cbd7db7a5684897bcafd5671a6d424
Loading
Please sign in to comment