From 2bd1320e910f621a820e38c8cccc7c95f936ece9 Mon Sep 17 00:00:00 2001 From: Alexander Miroshnichenko Date: Thu, 3 Oct 2024 15:25:20 +0300 Subject: [PATCH] sys-kernel/hardened-kernel: update kernel config --- sys-kernel/hardened-kernel/Manifest | 4 +- .../files/linux-6.6.amd64.config | 67 ++++++++++++------- .../hardened-kernel-6.6.51.ebuild | 2 +- 3 files changed, 45 insertions(+), 28 deletions(-) diff --git a/sys-kernel/hardened-kernel/Manifest b/sys-kernel/hardened-kernel/Manifest index 026c65b..5fbf646 100644 --- a/sys-kernel/hardened-kernel/Manifest +++ b/sys-kernel/hardened-kernel/Manifest @@ -1,5 +1,5 @@ AUX linux-6.1.amd64.config 174782 BLAKE2B 0e4a6382a52a14dc8f7fcb7d0912b9509cba70119a4d9818cf30af0a2b1c1d8a47fda164b5190c0916c90d7aaf106c82dcd79b8de9aaf9cb50c97501bd43b5a9 SHA512 dcb15715c26a4790782594c53a4c7614a85b141a5c2bca790189012a115be5bfcdc3119854ced8fa7b6668c4f32d2472b60af975fba262c355181bd6dab5c590 -AUX linux-6.6.amd64.config 183069 BLAKE2B c7499b44679dc287cb17089269239afbf8c7d38df1e2bc5d625ea1e01864928cfde72c1b3ea9c144904e9a529cc9862df908c7a50cfb0207eb50f2012b4956b1 SHA512 509f8de733135ab5dd49aa4a928daacfeb3e6f995ba158339082950ac91c36b67553e15c282c36bec7ade1b3e115356f700ffeb1b37359f7278f7b1c7d6b259d +AUX linux-6.6.amd64.config 183295 BLAKE2B 03667d8d7ff94051ca012b50953f27917facba374fd856fb3da9c2721f1025f6dba2b7fb4548f50a168f640f290d29d981dcbeccbc218fad6547e25aab38acdd SHA512 55156500e431c1c6ef8801f427cc09ac999393ad7837bc32e2bb84193e154e47c0889c70e6877fb7a0bf3c938b5c4a02c9af0125caceea08e5f212e1185a10a0 DIST genpatches-6.1-77.base.tar.xz 4198960 BLAKE2B 9c6921ca87ec2c3338107a994d6e094c6bf4ca5a705f21b3efa2803454327782ccf2cefa78b2a1bfa59413402d5d89b757a5522b86943c8c8c5d97592138758a SHA512 34daab45df35b30a5bc155aa82b074f6516bb1af7b2976590f88d88e25f6e8ae369fd1299f7e2f645c045b29d6b805dd07291ab45c212a9aa27df566dd6aca96 DIST genpatches-6.1-77.extras.tar.xz 3816 BLAKE2B 2129b36991f127c4bb4783a535a2d58bbe8ba9f4f139f7b70bf41a1c54bc2ac9026cdf3e3662f47c28118844ff40b6ad1c8da1c5fa8f1f4edc768fa69cae2083 SHA512 1de0ce45d9a0a1555faa92842f884cbaed8f5e727e4e59cbafc31326c9a183acc4954b2cdba1bec2019466545870ead8b5300f419533e30386aa2a36f6606a9a DIST genpatches-6.6-58.base.tar.xz 3154204 BLAKE2B 5b9456e93cb0984599e065fab0d05e40b7efbc8079763ede75ed7a6e7f0e241de96f0c6438cde52f64a5074f5bfcc5d55b5d3c21a9e9528138ea5c36e164ea58 SHA512 e775ac64564c201c3e1293d34a70f347a5afd5691a006d958f69959d2eea0af690cf66f7bdd450034ef9eb43daeccbedd58819dc688cd3e7e9933da9312cbf75 @@ -15,5 +15,5 @@ DIST linux-6.6.tar.xz 140064536 BLAKE2B 5f02fd8696d42f7ec8c5fbadec8e7270bdcfcb1f DIST linux-hardened-6.1.69-hardened1.patch 100238 BLAKE2B 4f5165e261273e040bf4a12e6759ce817e30560562ae129ed2fa76fc20ffc510f8380a1221c743c59b0d1e4c811fa704941bc1a6c02b243857eaaba1ecaebce5 SHA512 17813e6b55a2f6e614a2ec80ceac3cb14fd3beb807cd594dcb47df5456f6b8a5d6396b131cbdabb0582e47b0a7771b0444e97f77d5e57fd899e60550a2c32b01 DIST linux-hardened-v6.6.51-hardened1.patch 98239 BLAKE2B fdb3fde9ae40e197d24a2faf7c1aed187273c7f523b8538964f8b964bcf1c63962be5f3c01684e51eae23f19582868540b7a70c43a71f1ebe65bf53a5c320b53 SHA512 92a5ec5e28bb07e9650d2c16284dac9e741ab282d67535330ab1f24a2b7e3b4c39f0d74a8d379fb743d546427310332b0423dd040daaea2ad9550a607a948772 EBUILD hardened-kernel-6.1.69.ebuild 2978 BLAKE2B 70f353bd642de513cfd448c763aafa8a98deb0bfbd652d4ca63cff103af370bf851eded7d7a1597de08ae177b72932f5832be0f0c1d02aaac3794b2ed99f7ad1 SHA512 f0df36ced965c4b4ff077f87705f76e18912f302edfff7eeabf52f7905e75432957e68925a6d0b393d6347139c5fd9494bcdbef4d1e9a06af00c49f3c9f9e997 -EBUILD hardened-kernel-6.6.51.ebuild 4326 BLAKE2B 09d26e8eb7dd13c25b78cf7e249795e73edb3974921c11e188472383a4ebb592a050f5f0b8dde404bf82e2aa14d66b00153394342d8598ff5cb368849c670e50 SHA512 5b8d0f7e8db2f78b68e2d6db372cde26faa9f8e578f11bb42c3fe198c4487560f145c39697ca630e1b8fab493ff6ee76c351d9041f67729e4b4bc7909a2c5472 +EBUILD hardened-kernel-6.6.51.ebuild 4327 BLAKE2B 9f9e97a711087eebf8b12782f5ec5beda1b0754727929f61874e41a404b4d183044d710e3ba857fc0d22249a255826ed95e2591539385bf869604aad364711f2 SHA512 5d4afefcea6fcfe84d2eb23af9cda50a6cd8080cc94df8003f1075752bcef7a3d7f29f8e6065cb0665b464ca6aebd69311a51839ea383a523322e29a5dd249d2 MISC metadata.xml 345 BLAKE2B 4003222d76459210cbeba27d68bcef9b42f500dd3dafe53505dae42004c5224eeae395fb30d7582de614654d2fde19d118c8c31fbc35e5335c9150d93f42efc9 SHA512 994d288cd16858bad3177d383a279f0f549ddf40ef87c62683815540b331bd48d4afa4d0c6af947e409c58f8abb5e1da045bb98dc00a422ea724cdf0610d6619 diff --git a/sys-kernel/hardened-kernel/files/linux-6.6.amd64.config b/sys-kernel/hardened-kernel/files/linux-6.6.amd64.config index 9d06b39..80636d7 100644 --- a/sys-kernel/hardened-kernel/files/linux-6.6.amd64.config +++ b/sys-kernel/hardened-kernel/files/linux-6.6.amd64.config @@ -2293,7 +2293,7 @@ CONFIG_SATA_AHCI_PLATFORM=m CONFIG_MD=y CONFIG_BLK_DEV_MD=m # CONFIG_MD_BITMAP_FILE is not set -CONFIG_MD_LINEAR=m +# CONFIG_MD_LINEAR is not set CONFIG_MD_RAID0=m CONFIG_MD_RAID1=m CONFIG_MD_RAID10=m @@ -2327,14 +2327,16 @@ CONFIG_DM_RAID=m # CONFIG_DM_ZERO is not set # CONFIG_DM_MULTIPATH is not set # CONFIG_DM_DELAY is not set -# CONFIG_DM_DUST is not set +CONFIG_DM_DUST=m CONFIG_DM_UEVENT=y # CONFIG_DM_FLAKEY is not set CONFIG_DM_VERITY=m -# CONFIG_DM_SWITCH is not set +CONFIG_DM_VERITY_VERIFY_ROOTHASH_SIG=y +CONFIG_DM_VERITY_FEC=y +CONFIG_DM_SWITCH=m # CONFIG_DM_LOG_WRITES is not set CONFIG_DM_INTEGRITY=m -# CONFIG_DM_ZONED is not set +CONFIG_DM_ZONED=m CONFIG_DM_AUDIT=y # CONFIG_TARGET_CORE is not set # CONFIG_FUSION is not set @@ -2979,19 +2981,20 @@ CONFIG_HW_RANDOM_TPM=y CONFIG_TCG_TIS_CORE=m CONFIG_TCG_TIS=m CONFIG_TCG_TIS_SPI=m -# CONFIG_TCG_TIS_SPI_CR50 is not set +CONFIG_TCG_TIS_SPI_CR50=y CONFIG_TCG_TIS_I2C=m -# CONFIG_TCG_TIS_I2C_CR50 is not set -# CONFIG_TCG_TIS_I2C_ATMEL is not set -# CONFIG_TCG_TIS_I2C_INFINEON is not set -# CONFIG_TCG_TIS_I2C_NUVOTON is not set -# CONFIG_TCG_NSC is not set -# CONFIG_TCG_ATMEL is not set -# CONFIG_TCG_INFINEON is not set +CONFIG_TCG_TIS_I2C_CR50=m +CONFIG_TCG_TIS_I2C_ATMEL=m +CONFIG_TCG_TIS_I2C_INFINEON=m +CONFIG_TCG_TIS_I2C_NUVOTON=m +CONFIG_TCG_NSC=m +CONFIG_TCG_ATMEL=m +CONFIG_TCG_INFINEON=m CONFIG_TCG_CRB=m -# CONFIG_TCG_VTPM_PROXY is not set -# CONFIG_TCG_TIS_ST33ZP24_I2C is not set -# CONFIG_TCG_TIS_ST33ZP24_SPI is not set +CONFIG_TCG_VTPM_PROXY=m +CONFIG_TCG_TIS_ST33ZP24=m +CONFIG_TCG_TIS_ST33ZP24_I2C=m +CONFIG_TCG_TIS_ST33ZP24_SPI=m # CONFIG_TELCLOCK is not set # CONFIG_XILLYBUS is not set # CONFIG_XILLYUSB is not set @@ -3445,6 +3448,7 @@ CONFIG_INTEL_SOC_DTS_IOSF_CORE=m CONFIG_INT340X_THERMAL=m CONFIG_ACPI_THERMAL_REL=m CONFIG_INT3406_THERMAL=m +CONFIG_PROC_THERMAL_MMIO_RAPL=m # end of ACPI INT340X thermal drivers CONFIG_INTEL_PCH_THERMAL=m @@ -4936,6 +4940,7 @@ CONFIG_UCSI_ACPI=m # CONFIG_TYPEC_MUX_FSA4480 is not set # CONFIG_TYPEC_MUX_GPIO_SBU is not set # CONFIG_TYPEC_MUX_PI3USB30532 is not set +# CONFIG_TYPEC_MUX_INTEL_PMC is not set # CONFIG_TYPEC_MUX_NB7VPQ904M is not set # end of USB Type-C Multiplexer/DeMultiplexer Switch support @@ -5346,34 +5351,37 @@ CONFIG_THINKPAD_LMI=m # CONFIG_INTEL_ATOMISP2_PM is not set # CONFIG_INTEL_IFS is not set # CONFIG_INTEL_SAR_INT1092 is not set -CONFIG_INTEL_PMC_CORE=y +CONFIG_INTEL_PMC_CORE=m # CONFIG_INTEL_PMT_TELEMETRY is not set # CONFIG_INTEL_PMT_CRASHLOG is not set # # Intel Speed Select Technology interface support # +CONFIG_INTEL_SPEED_SELECT_TPMI=m CONFIG_INTEL_SPEED_SELECT_INTERFACE=m # end of Intel Speed Select Technology interface support +CONFIG_INTEL_WMI=y # CONFIG_INTEL_WMI_SBL_FW_UPDATE is not set -# CONFIG_INTEL_WMI_THUNDERBOLT is not set +CONFIG_INTEL_WMI_THUNDERBOLT=m # # Intel Uncore Frequency Control # -# CONFIG_INTEL_UNCORE_FREQ_CONTROL is not set +CONFIG_INTEL_UNCORE_FREQ_CONTROL_TPMI=m +CONFIG_INTEL_UNCORE_FREQ_CONTROL=m # end of Intel Uncore Frequency Control CONFIG_INTEL_HID_EVENT=m CONFIG_INTEL_VBTN=m -# CONFIG_INTEL_OAKTRAIL is not set -# CONFIG_INTEL_ISHTP_ECLITE is not set +CONFIG_INTEL_OAKTRAIL=m +CONFIG_INTEL_ISHTP_ECLITE=m # CONFIG_INTEL_PUNIT_IPC is not set CONFIG_INTEL_RST=m # CONFIG_INTEL_SDSI is not set CONFIG_INTEL_SMARTCONNECT=m -# CONFIG_INTEL_TPMI is not set +CONFIG_INTEL_TPMI=m CONFIG_INTEL_TURBO_MAX_3=y CONFIG_INTEL_VSEC=m # CONFIG_MSI_EC is not set @@ -5395,8 +5403,11 @@ CONFIG_INTEL_VSEC=m # CONFIG_MLX_PLATFORM is not set CONFIG_FW_ATTR_CLASS=m CONFIG_INTEL_IPS=m -# CONFIG_INTEL_SCU_PCI is not set -# CONFIG_INTEL_SCU_PLATFORM is not set +CONFIG_INTEL_SCU_IPC=y +CONFIG_INTEL_SCU=y +CONFIG_INTEL_SCU_PCI=y +CONFIG_INTEL_SCU_PLATFORM=m +CONFIG_INTEL_SCU_IPC_UTIL=m # CONFIG_SIEMENS_SIMATIC_IPC is not set # CONFIG_WINMATE_FM07_KEYS is not set CONFIG_P2SB=y @@ -5581,7 +5592,11 @@ CONFIG_PWM_LPSS_PLATFORM=m # CONFIG_PHY_INTEL_LGM_EMMC is not set # end of PHY Subsystem -# CONFIG_POWERCAP is not set +CONFIG_POWERCAP=y +CONFIG_INTEL_RAPL_CORE=m +CONFIG_INTEL_RAPL=m +CONFIG_INTEL_RAPL_TPMI=m +# CONFIG_IDLE_INJECT is not set # CONFIG_MCB is not set # @@ -5612,7 +5627,9 @@ CONFIG_NVDIMM_DAX=y CONFIG_NVDIMM_KEYS=y # CONFIG_NVDIMM_SECURITY_TEST is not set CONFIG_DAX=y -# CONFIG_DEV_DAX is not set +CONFIG_DEV_DAX=m +CONFIG_DEV_DAX_PMEM=m +CONFIG_DEV_DAX_KMEM=m CONFIG_NVMEM=y CONFIG_NVMEM_SYSFS=y diff --git a/sys-kernel/hardened-kernel/hardened-kernel-6.6.51.ebuild b/sys-kernel/hardened-kernel/hardened-kernel-6.6.51.ebuild index 9ec1ef4..f1292fb 100644 --- a/sys-kernel/hardened-kernel/hardened-kernel-6.6.51.ebuild +++ b/sys-kernel/hardened-kernel/hardened-kernel-6.6.51.ebuild @@ -54,7 +54,7 @@ SRC_URI+=" S=${WORKDIR}/${MY_P} KEYWORDS="amd64 ~arm arm64 ~hppa ~loong ~ppc ppc64 ~riscv ~sparc x86" -IUSE="debug experimental" +IUSE="debug +experimental" REQUIRED_USE=" arm? ( savedconfig ) hppa? ( savedconfig )