From: Stephen Smalley Date: Tue, 10 Dec 2019 16:55:41 +0000 (-0500) Subject: security: only build lsm_audit if CONFIG_SECURITY=y X-Git-Tag: v5.10.7~3231^2~23 X-Git-Url: http://review.tizen.org/git/?a=commitdiff_plain;h=b2104ac0bd951a2887a03b09e2106fcff5fad94e;p=platform%2Fkernel%2Flinux-rpi.git security: only build lsm_audit if CONFIG_SECURITY=y The lsm_audit code is only required when CONFIG_SECURITY is enabled. It does not have a build dependency on CONFIG_AUDIT since audit.h provides trivial static inlines for audit_log*() when CONFIG_AUDIT is disabled. Hence, the Makefile should only add lsm_audit to the obj lists based on CONFIG_SECURITY, not CONFIG_AUDIT. Fixes: 59438b46471a ("security,lockdown,selinux: implement SELinux lockdown") Signed-off-by: Stephen Smalley Signed-off-by: Paul Moore --- diff --git a/security/Makefile b/security/Makefile index be1dd9d..7464384 100644 --- a/security/Makefile +++ b/security/Makefile @@ -22,7 +22,7 @@ obj-$(CONFIG_SECURITY) += security.o obj-$(CONFIG_SECURITYFS) += inode.o obj-$(CONFIG_SECURITY_SELINUX) += selinux/ obj-$(CONFIG_SECURITY_SMACK) += smack/ -obj-$(CONFIG_AUDIT) += lsm_audit.o +obj-$(CONFIG_SECURITY) += lsm_audit.o obj-$(CONFIG_SECURITY_TOMOYO) += tomoyo/ obj-$(CONFIG_SECURITY_APPARMOR) += apparmor/ obj-$(CONFIG_SECURITY_YAMA) += yama/