Commit Graph

428 Commits

Author SHA1 Message Date
Jan Alexander Steffens
1e93cf5d3a 5.18.16.arch1-1 2022-08-03 12:00:00 +00:00
Jan Alexander Steffens
94d0ee92f2 FS#74975: Enable MEMTEST 2022-07-31 14:38:59 +00:00
Jan Alexander Steffens
0d5a58dc37 5.18.14.arch1-1 2022-07-23 12:28:24 +00:00
Jan Alexander Steffens
af075e3dca 5.18.6.arch1-1 2022-06-22 18:43:35 +00:00
Jan Alexander Steffens
5f3729800f FS#75102: Add integrity to LSM
This only initializes a cache which is used by IMA. So it does nothing
useful. Still, we technically have the integrity LSM and this removes a
footgun should IMA ever get enabled.
2022-06-19 20:12:32 +00:00
Jan Alexander Steffens
2e8ca45bc9 FS#75102: Enable KEXEC_SIG 2022-06-19 20:12:32 +00:00
Jan Alexander Steffens
1eaae5d53f FS#75102: Revert "Enable KEXEC_SIG and IMA"
Enabling IMA makes it impossible to load unsigned kernel modules when
secure boot is in use, and without shim in the boot you can't get the
kernel to trust a local key for module signing.

This reverts commit 6a241232a3275ef3e314b5b7167e13fffff71282.
2022-06-19 20:12:31 +00:00
Jan Alexander Steffens
0724b8895c FS#75102: Enable KEXEC_SIG and IMA 2022-06-19 19:23:48 +00:00
Jan Alexander Steffens
b3c8c8615f 5.18.5.arch1-1 2022-06-16 21:18:19 +00:00
Jan Alexander Steffens
a0899d416d Disable PECI
As requested by Levente. Only useful for kernels running on baseboard
management controllers.
2022-06-16 21:18:17 +00:00
Jan Alexander Steffens
218d2a950d 5.18.4.arch1-1 2022-06-15 23:42:51 +00:00
Jan Alexander Steffens
5bd573c89e FS#75041: Enable INTEGRITY_MACHINE_KEYRING and related 2022-06-15 23:42:48 +00:00
Jan Alexander Steffens
e29a800771 5.18.3.arch1-1 2022-06-09 17:20:22 +00:00
Jan Alexander Steffens
3aa8dd1c85 5.18.1.arch1-1 2022-05-30 18:31:45 +00:00
Jan Alexander Steffens
f11429d842 FS#74888: Enable BLOCK_LEGACY_AUTOLOAD
Disabling this broke legacy mdraid setups.

See: https://lore.kernel.org/linux-block/20220503212848.5853-1-dmoulding@me.com/
2022-05-30 18:31:42 +00:00
Jan Alexander Steffens
1cc50e39e6 5.18.arch1-1 2022-05-24 22:34:17 +00:00
Jan Alexander Steffens
231862cf72 5.17.6.arch1-1 2022-05-10 23:31:11 +00:00
Jan Alexander Steffens
0c61251a1e 5.17.5.arch1-1 2022-04-27 21:57:26 +00:00
Jan Alexander Steffens
ee2af8ec43 5.17.4.arch1-1 2022-04-20 19:02:04 +00:00
Jan Alexander Steffens
2d3dd3bff0 5.17.2.arch1-1 2022-04-08 18:11:24 +00:00
Jan Alexander Steffens
d60d23d3e0 FS#74291: Reenable FRAMEBUFFER_CONSOLE_ROTATION 2022-04-01 16:10:30 +00:00
Jan Alexander Steffens
8dc941a8b3 FS#68021, FS#74271: Return nvme to a module 2022-03-30 20:34:27 +00:00
Jan Alexander Steffens
03fa74e628 FS#74203: Disable SYSFB_SIMPLEFB 2022-03-28 21:54:43 +00:00
Jan Alexander Steffens
432adf96db 5.17.arch1-1 2022-03-23 00:44:26 +00:00
Jan Alexander Steffens
997a6a8651 5.16.14.arch1-1 2022-03-11 18:29:09 +00:00
Jan Alexander Steffens
ccba33df68 Enable BPF_UNPRIV_DEFAULT_OFF
This config was enabled by default in v5.15 and we should follow that.
2022-03-09 16:09:34 +00:00
Jan Alexander Steffens
4f1d39f328 5.16.13.arch1-1 2022-03-08 20:36:10 +00:00
Jan Alexander Steffens
74147130fa 5.16.9.arch1-1 2022-02-11 23:14:13 +00:00
Jan Alexander Steffens
a4414373de FS#73364: Enable DAMON 2022-02-11 23:14:12 +00:00
Jan Alexander Steffens
eb92849ce1 5.16.8.arch1-1 2022-02-08 21:56:54 +00:00
Jan Alexander Steffens
659df960bd FS#72597: Disable ZERO_CALL_USED_REGS
Too much overhead.
2022-02-07 18:29:34 +00:00
Jan Alexander Steffens
6376eaf60e 5.16.arch1-1 2022-01-10 21:15:58 +00:00
Jan Alexander Steffens
992dd34d40 5.15.12.arch1-1 2021-12-29 13:06:04 +00:00
Jan Alexander Steffens
38f90fdbe5 5.15.9.arch1-1 2021-12-17 00:17:27 +00:00
Jan Alexander Steffens
f6654f361c FS#69505: Replace MTD_RAM with MTD_MTDRAM
The latter is what was actually wanted.
2021-12-16 03:14:31 +00:00
Jan Alexander Steffens
6fdf85f792 5.15.5.arch1-1 2021-11-25 22:53:04 +00:00
Jan Alexander Steffens
90addb77b2 5.15.3.arch1-1 2021-11-18 22:55:52 +00:00
Jan Alexander Steffens
87b96ed160 5.15.2.arch1-1 2021-11-12 20:28:54 +00:00
Jan Alexander Steffens
741b99dce1 FS#72645: Disable SYSFB_SIMPLEFB 2021-11-12 20:28:52 +00:00
Jan Alexander Steffens
e55609718b FS#72658: Reenable built-in FB drivers 2021-11-09 17:09:57 +00:00
Jan Alexander Steffens
911177d3df Disable WERROR
Also leaks into external module builds.
2021-11-03 23:30:53 +00:00
Jan Alexander Steffens
78d0321a90 Set SYSFB_SIMPLEFB=y and SIMPLEDRM=y, disable legacy FB drivers 2021-11-03 23:30:52 +00:00
Jan Alexander Steffens
62812fc5b4 5.15.arch1-1 2021-11-03 23:30:51 +00:00
Jan Alexander Steffens
2072b4db95 5.14.12.arch1-1 2021-10-13 17:35:24 +00:00
Jan Alexander Steffens
4325d1b2ad 5.14.10.arch1-1 2021-10-07 20:32:54 +00:00
Jan Alexander Steffens
2ef0ab9184 Disable SND_INTEL_BYT_PREFER_SOF
As requested by Jelle.
2021-10-06 22:08:56 +00:00
Jan Alexander Steffens
595a15167b 5.14.8.arch1-1 2021-09-26 20:22:35 +00:00
Jan Alexander Steffens
045bfb719c FS#72195: Disable FB_HYPERV 2021-09-26 20:22:33 +00:00
Jan Alexander Steffens
6f0e13bf09 5.14.4.arch1-1 2021-09-15 22:24:27 +00:00
Jan Alexander Steffens
25de7a333b FS#72045: Disable WATCHDOG_HRTIMER_PRETIMEOUT 2021-09-09 10:30:52 +00:00