1 # SPDX-License-Identifier: GPL-2.0
3 # Makefile for the kernel security code
6 obj-$(CONFIG_KEYS) += keys/
7 subdir-$(CONFIG_SECURITY_SELINUX) += selinux
8 subdir-$(CONFIG_SECURITY_SMACK) += smack
9 subdir-$(CONFIG_SECURITY_TOMOYO) += tomoyo
10 subdir-$(CONFIG_SECURITY_APPARMOR) += apparmor
11 subdir-$(CONFIG_SECURITY_YAMA) += yama
12 subdir-$(CONFIG_SECURITY_LOADPIN) += loadpin
13 subdir-$(CONFIG_SECURITY_SAFESETID) += safesetid
14 subdir-$(CONFIG_SECURITY_LOCKDOWN_LSM) += lockdown
15 subdir-$(CONFIG_BPF_LSM) += bpf
17 # always enable default capabilities
19 obj-$(CONFIG_MMU) += min_addr.o
22 obj-$(CONFIG_SECURITY) += security.o
23 obj-$(CONFIG_SECURITYFS) += inode.o
24 obj-$(CONFIG_SECURITY_SELINUX) += selinux/
25 obj-$(CONFIG_SECURITY_SMACK) += smack/
26 obj-$(CONFIG_SECURITY) += lsm_audit.o
27 obj-$(CONFIG_SECURITY_TOMOYO) += tomoyo/
28 obj-$(CONFIG_SECURITY_APPARMOR) += apparmor/
29 obj-$(CONFIG_SECURITY_YAMA) += yama/
30 obj-$(CONFIG_SECURITY_LOADPIN) += loadpin/
31 obj-$(CONFIG_SECURITY_SAFESETID) += safesetid/
32 obj-$(CONFIG_SECURITY_LOCKDOWN_LSM) += lockdown/
33 obj-$(CONFIG_CGROUP_DEVICE) += device_cgroup.o
34 obj-$(CONFIG_BPF_LSM) += bpf/
36 # Object integrity file lists
37 subdir-$(CONFIG_INTEGRITY) += integrity
38 obj-$(CONFIG_INTEGRITY) += integrity/