Donate to e Foundation | Murena handsets with /e/OS | Own a part of Murena! Learn more

Commit 270ef0c0 authored by Jeff Vander Stoep's avatar Jeff Vander Stoep Committed by Dmitry Shmidt
Browse files

ANDROID: kernel/configs: base: restrict access to perf events



Add:
CONFIG_SECURITY_PERF_EVENTS_RESTRICT=y

to android-base.cfg

The kernel.perf_event_paranoid sysctl is set to 3 by default.
No unprivileged use of the perf_event_open syscall will be
permitted unless it is changed.

Bug: 29054680
Change-Id: Ie7512259150e146d8e382dc64d40e8faaa438917
Signed-off-by: default avatarAmit Pundir <amit.pundir@linaro.org>
parent c88356f9
Loading
Loading
Loading
Loading
+1 −0
Original line number Diff line number Diff line
@@ -139,6 +139,7 @@ CONFIG_RT_GROUP_SCHED=y
CONFIG_SECCOMP=y
CONFIG_SECURITY=y
CONFIG_SECURITY_NETWORK=y
CONFIG_SECURITY_PERF_EVENTS_RESTRICT=y
CONFIG_SECURITY_SELINUX=y
CONFIG_SETEND_EMULATION=y
CONFIG_STAGING=y