33 lines
719 B
Plaintext
33 lines
719 B
Plaintext
#
|
|
# This file is for the declaration of global booleans.
|
|
# To change the default value at build time, the booleans.conf
|
|
# file should be used.
|
|
#
|
|
|
|
ifdef(`strict_policy',`
|
|
## <desc>
|
|
## <p>
|
|
## Enabling secure mode disallows programs, such as
|
|
## newrole, from transitioning to administrative
|
|
## user domains.
|
|
## </p>
|
|
## </desc>
|
|
gen_bool(secure_mode,false)
|
|
')
|
|
|
|
## <desc>
|
|
## <p>
|
|
## Disable transitions to insmod.
|
|
## </p>
|
|
## </desc>
|
|
gen_bool(secure_mode_insmod,false)
|
|
|
|
## <desc>
|
|
## <p>
|
|
## boolean to determine whether the system permits loading policy, setting
|
|
## enforcing mode, and changing boolean values. Set this to true and you
|
|
## have to reboot to set it back
|
|
## </p>
|
|
## </desc>
|
|
gen_bool(secure_mode_policyload,false)
|