From: Dorinda Bassey <[email protected]>

redhat/configs: automotive: Disable network protocols

Upstream Status: RHEL only

Disable support for all the networking protocols from the
automotive kernel, including all the socket families and
socket protocols except the ICMP and IPv4 protocols,
the AF_CAN, AF_UNIX, AF_NETLINK and AF_INET socket
families, and the SOCK_STREAM and SOCK_DGRAM socket
protocols.

This is needed to satisfy a requirement of FuSa efforts
for RHIVOS.

Link: https://issues.redhat.com/browse/RHEL-73902

Signed-off-by: Dorinda Bassey <[email protected]>

diff --git 
a/redhat/configs/rhel/automotive/generic/CONFIG_NETFILTER_XT_MATCH_SOCKET 
b/redhat/configs/rhel/automotive/generic/CONFIG_NETFILTER_XT_MATCH_SOCKET
new file mode 100644
index blahblah..blahblah 100644
--- /dev/null
+++ b/redhat/configs/rhel/automotive/generic/CONFIG_NETFILTER_XT_MATCH_SOCKET
@@ -0,0 +1 @@
+# CONFIG_NETFILTER_XT_MATCH_SOCKET is not set
diff --git a/redhat/configs/rhel/automotive/generic/CONFIG_NETWORK_FILESYSTEMS 
b/redhat/configs/rhel/automotive/generic/CONFIG_NETWORK_FILESYSTEMS
new file mode 100644
index blahblah..blahblah 100644
--- /dev/null
+++ b/redhat/configs/rhel/automotive/generic/CONFIG_NETWORK_FILESYSTEMS
@@ -0,0 +1 @@
+# CONFIG_NETWORK_FILESYSTEMS is not set
diff --git 
a/redhat/configs/rhel/automotive/generic/CONFIG_NETWORK_PHY_TIMESTAMPING 
b/redhat/configs/rhel/automotive/generic/CONFIG_NETWORK_PHY_TIMESTAMPING
new file mode 100644
index blahblah..blahblah 100644
--- /dev/null
+++ b/redhat/configs/rhel/automotive/generic/CONFIG_NETWORK_PHY_TIMESTAMPING
@@ -0,0 +1 @@
+# CONFIG_NETWORK_PHY_TIMESTAMPING is not set
diff --git a/redhat/configs/rhel/automotive/generic/CONFIG_NFT_SOCKET 
b/redhat/configs/rhel/automotive/generic/CONFIG_NFT_SOCKET
new file mode 100644
index blahblah..blahblah 100644
--- /dev/null
+++ b/redhat/configs/rhel/automotive/generic/CONFIG_NFT_SOCKET
@@ -0,0 +1 @@
+# CONFIG_NFT_SOCKET is not set
diff --git a/redhat/configs/rhel/automotive/generic/CONFIG_NF_SOCKET_IPV6 
b/redhat/configs/rhel/automotive/generic/CONFIG_NF_SOCKET_IPV6
new file mode 100644
index blahblah..blahblah 100644
--- /dev/null
+++ b/redhat/configs/rhel/automotive/generic/CONFIG_NF_SOCKET_IPV6
@@ -0,0 +1 @@
+# CONFIG_NF_SOCKET_IPV6 is not set
diff --git a/redhat/configs/rhel/automotive/generic/CONFIG_VIRTIO_VSOCKETS 
b/redhat/configs/rhel/automotive/generic/CONFIG_VIRTIO_VSOCKETS
new file mode 100644
index blahblah..blahblah 100644
--- /dev/null
+++ b/redhat/configs/rhel/automotive/generic/CONFIG_VIRTIO_VSOCKETS
@@ -0,0 +1 @@
+# CONFIG_VIRTIO_VSOCKETS is not set
diff --git 
a/redhat/configs/rhel/automotive/generic/CONFIG_VIRTIO_VSOCKETS_COMMON 
b/redhat/configs/rhel/automotive/generic/CONFIG_VIRTIO_VSOCKETS_COMMON
new file mode 100644
index blahblah..blahblah 100644
--- /dev/null
+++ b/redhat/configs/rhel/automotive/generic/CONFIG_VIRTIO_VSOCKETS_COMMON
@@ -0,0 +1 @@
+# CONFIG_VIRTIO_VSOCKETS_COMMON is not set
diff --git a/redhat/configs/rhel/automotive/generic/CONFIG_VSOCKETS 
b/redhat/configs/rhel/automotive/generic/CONFIG_VSOCKETS
new file mode 100644
index blahblah..blahblah 100644
--- /dev/null
+++ b/redhat/configs/rhel/automotive/generic/CONFIG_VSOCKETS
@@ -0,0 +1 @@
+# CONFIG_VSOCKETS is not set
diff --git a/redhat/configs/rhel/automotive/generic/CONFIG_VSOCKETS_DIAG 
b/redhat/configs/rhel/automotive/generic/CONFIG_VSOCKETS_DIAG
new file mode 100644
index blahblah..blahblah 100644
--- /dev/null
+++ b/redhat/configs/rhel/automotive/generic/CONFIG_VSOCKETS_DIAG
@@ -0,0 +1 @@
+# CONFIG_VSOCKETS_DIAG is not set
diff --git a/redhat/configs/rhel/automotive/generic/CONFIG_VSOCKETS_LOOPBACK 
b/redhat/configs/rhel/automotive/generic/CONFIG_VSOCKETS_LOOPBACK
new file mode 100644
index blahblah..blahblah 100644
--- /dev/null
+++ b/redhat/configs/rhel/automotive/generic/CONFIG_VSOCKETS_LOOPBACK
@@ -0,0 +1 @@
+# CONFIG_VSOCKETS_LOOPBACK is not set
diff --git a/redhat/configs/rhel/automotive/generic/CONFIG_XDP_SOCKETS 
b/redhat/configs/rhel/automotive/generic/CONFIG_XDP_SOCKETS
new file mode 100644
index blahblah..blahblah 100644
--- /dev/null
+++ b/redhat/configs/rhel/automotive/generic/CONFIG_XDP_SOCKETS
@@ -0,0 +1 @@
+# CONFIG_XDP_SOCKETS is not set
diff --git a/redhat/configs/rhel/automotive/generic/CONFIG_XDP_SOCKETS_DIAG 
b/redhat/configs/rhel/automotive/generic/CONFIG_XDP_SOCKETS_DIAG
new file mode 100644
index blahblah..blahblah 100644
--- /dev/null
+++ b/redhat/configs/rhel/automotive/generic/CONFIG_XDP_SOCKETS_DIAG
@@ -0,0 +1 @@
+# CONFIG_XDP_SOCKETS_DIAG is not set

--
https://gitlab.com/cki-project/kernel-ark/-/merge_requests/3596

-- 
_______________________________________________
kernel mailing list -- [email protected]
To unsubscribe send an email to [email protected]
Fedora Code of Conduct: 
https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: 
https://lists.fedoraproject.org/archives/list/[email protected]
Do not reply to spam, report it: 
https://pagure.io/fedora-infrastructure/new_issue

Reply via email to