android_kernel_google_msm/include
Jeff Vander Stoep 6301d0d07c FROMLIST: security,perf: Allow further restriction of perf_event_open
When kernel.perf_event_open is set to 3 (or greater), disallow all
access to performance events by users without CAP_SYS_ADMIN.
Add a Kconfig symbol CONFIG_SECURITY_PERF_EVENTS_RESTRICT that
makes this value the default.

This is based on a similar feature in grsecurity
(CONFIG_GRKERNSEC_PERF_HARDEN).  This version doesn't include making
the variable read-only.  It also allows enabling further restriction
at run-time regardless of whether the default is changed.

https://lkml.org/lkml/2016/1/11/587

Signed-off-by: Ben Hutchings <ben@decadent.org.uk>

Bug: 29054680
Change-Id: Iff5bff4fc1042e85866df9faa01bce8d04335ab8
2016-06-20 19:00:29 +00:00
..
acpi
asm-generic seccomp: add "seccomp" syscall 2014-10-31 19:46:27 -07:00
crypto
drm
keys
linux FROMLIST: security,perf: Allow further restriction of perf_event_open 2016-06-20 19:00:29 +00:00
math-emu
media msm: vidc: Validate userspace buffer count 2016-05-13 13:23:58 -07:00
misc
mtd
net ipv6: add complete rcu protection around np->opt 2016-06-17 02:54:32 +00:00
pcmcia
rdma
rxrpc
scsi
sound
target
trace
video
xen
Kbuild