31 lines
		
	
	
		
			692 B
		
	
	
	
		
			Plaintext
		
	
	
	
	
	
			
		
		
	
	
			31 lines
		
	
	
		
			692 B
		
	
	
	
		
			Plaintext
		
	
	
	
	
	
| #
 | |
| # This file is for the declaration of global booleans.
 | |
| # To change the default value at build time, the booleans.conf
 | |
| # file should be used.
 | |
| #
 | |
| 
 | |
| ## <desc>
 | |
| ## <p>
 | |
| ## Enabling secure mode disallows programs, such as
 | |
| ## newrole, from transitioning to administrative
 | |
| ## user domains.
 | |
| ## </p>
 | |
| ## </desc>
 | |
| gen_bool(secure_mode,false)
 | |
| 
 | |
| ## <desc>
 | |
| ## <p>
 | |
| ## Disable transitions to insmod.
 | |
| ## </p>
 | |
| ## </desc>
 | |
| gen_bool(secure_mode_insmod,false)
 | |
| 
 | |
| ## <desc>
 | |
| ## <p>
 | |
| ## boolean to determine whether the system permits loading policy, setting
 | |
| ## enforcing mode, and changing boolean values.  Set this to true and you
 | |
| ## have to reboot to set it back
 | |
| ## </p>
 | |
| ## </desc>
 | |
| gen_bool(secure_mode_policyload,false)
 |