diff options
Diffstat (limited to 'kernel/Makefile')
| -rw-r--r-- | kernel/Makefile | 82 |
1 files changed, 49 insertions, 33 deletions
diff --git a/kernel/Makefile b/kernel/Makefile index 1ce47553fb02..bc010ee272b6 100644 --- a/kernel/Makefile +++ b/kernel/Makefile | |||
| @@ -6,56 +6,44 @@ obj-y = fork.o exec_domain.o panic.o \ | |||
| 6 | cpu.o exit.o itimer.o time.o softirq.o resource.o \ | 6 | cpu.o exit.o itimer.o time.o softirq.o resource.o \ |
| 7 | sysctl.o sysctl_binary.o capability.o ptrace.o timer.o user.o \ | 7 | sysctl.o sysctl_binary.o capability.o ptrace.o timer.o user.o \ |
| 8 | signal.o sys.o kmod.o workqueue.o pid.o task_work.o \ | 8 | signal.o sys.o kmod.o workqueue.o pid.o task_work.o \ |
| 9 | rcupdate.o extable.o params.o posix-timers.o \ | 9 | extable.o params.o posix-timers.o \ |
| 10 | kthread.o wait.o sys_ni.o posix-cpu-timers.o mutex.o \ | 10 | kthread.o sys_ni.o posix-cpu-timers.o \ |
| 11 | hrtimer.o rwsem.o nsproxy.o srcu.o semaphore.o \ | 11 | hrtimer.o nsproxy.o \ |
| 12 | notifier.o ksysfs.o cred.o reboot.o \ | 12 | notifier.o ksysfs.o cred.o reboot.o \ |
| 13 | async.o range.o groups.o lglock.o smpboot.o | 13 | async.o range.o groups.o smpboot.o |
| 14 | 14 | ||
| 15 | ifdef CONFIG_FUNCTION_TRACER | 15 | ifdef CONFIG_FUNCTION_TRACER |
| 16 | # Do not trace debug files and internal ftrace files | 16 | # Do not trace debug files and internal ftrace files |
| 17 | CFLAGS_REMOVE_lockdep.o = -pg | ||
| 18 | CFLAGS_REMOVE_lockdep_proc.o = -pg | ||
| 19 | CFLAGS_REMOVE_mutex-debug.o = -pg | ||
| 20 | CFLAGS_REMOVE_rtmutex-debug.o = -pg | ||
| 21 | CFLAGS_REMOVE_cgroup-debug.o = -pg | 17 | CFLAGS_REMOVE_cgroup-debug.o = -pg |
| 22 | CFLAGS_REMOVE_irq_work.o = -pg | 18 | CFLAGS_REMOVE_irq_work.o = -pg |
| 23 | endif | 19 | endif |
| 24 | 20 | ||
| 25 | obj-y += sched/ | 21 | obj-y += sched/ |
| 22 | obj-y += locking/ | ||
| 26 | obj-y += power/ | 23 | obj-y += power/ |
| 27 | obj-y += printk/ | 24 | obj-y += printk/ |
| 28 | obj-y += cpu/ | 25 | obj-y += cpu/ |
| 29 | obj-y += irq/ | 26 | obj-y += irq/ |
| 27 | obj-y += rcu/ | ||
| 30 | 28 | ||
| 31 | obj-$(CONFIG_CHECKPOINT_RESTORE) += kcmp.o | 29 | obj-$(CONFIG_CHECKPOINT_RESTORE) += kcmp.o |
| 32 | obj-$(CONFIG_FREEZER) += freezer.o | 30 | obj-$(CONFIG_FREEZER) += freezer.o |
| 33 | obj-$(CONFIG_PROFILING) += profile.o | 31 | obj-$(CONFIG_PROFILING) += profile.o |
| 34 | obj-$(CONFIG_STACKTRACE) += stacktrace.o | 32 | obj-$(CONFIG_STACKTRACE) += stacktrace.o |
| 35 | obj-y += time/ | 33 | obj-y += time/ |
| 36 | obj-$(CONFIG_DEBUG_MUTEXES) += mutex-debug.o | ||
| 37 | obj-$(CONFIG_LOCKDEP) += lockdep.o | ||
| 38 | ifeq ($(CONFIG_PROC_FS),y) | ||
| 39 | obj-$(CONFIG_LOCKDEP) += lockdep_proc.o | ||
| 40 | endif | ||
| 41 | obj-$(CONFIG_FUTEX) += futex.o | 34 | obj-$(CONFIG_FUTEX) += futex.o |
| 42 | ifeq ($(CONFIG_COMPAT),y) | 35 | ifeq ($(CONFIG_COMPAT),y) |
| 43 | obj-$(CONFIG_FUTEX) += futex_compat.o | 36 | obj-$(CONFIG_FUTEX) += futex_compat.o |
| 44 | endif | 37 | endif |
| 45 | obj-$(CONFIG_RT_MUTEXES) += rtmutex.o | ||
| 46 | obj-$(CONFIG_DEBUG_RT_MUTEXES) += rtmutex-debug.o | ||
| 47 | obj-$(CONFIG_RT_MUTEX_TESTER) += rtmutex-tester.o | ||
| 48 | obj-$(CONFIG_GENERIC_ISA_DMA) += dma.o | 38 | obj-$(CONFIG_GENERIC_ISA_DMA) += dma.o |
| 49 | obj-$(CONFIG_SMP) += smp.o | 39 | obj-$(CONFIG_SMP) += smp.o |
| 50 | ifneq ($(CONFIG_SMP),y) | 40 | ifneq ($(CONFIG_SMP),y) |
| 51 | obj-y += up.o | 41 | obj-y += up.o |
| 52 | endif | 42 | endif |
| 53 | obj-$(CONFIG_SMP) += spinlock.o | ||
| 54 | obj-$(CONFIG_DEBUG_SPINLOCK) += spinlock.o | ||
| 55 | obj-$(CONFIG_PROVE_LOCKING) += spinlock.o | ||
| 56 | obj-$(CONFIG_UID16) += uid16.o | 43 | obj-$(CONFIG_UID16) += uid16.o |
| 44 | obj-$(CONFIG_SYSTEM_TRUSTED_KEYRING) += system_keyring.o system_certificates.o | ||
| 57 | obj-$(CONFIG_MODULES) += module.o | 45 | obj-$(CONFIG_MODULES) += module.o |
| 58 | obj-$(CONFIG_MODULE_SIG) += module_signing.o modsign_pubkey.o modsign_certificate.o | 46 | obj-$(CONFIG_MODULE_SIG) += module_signing.o |
| 59 | obj-$(CONFIG_KALLSYMS) += kallsyms.o | 47 | obj-$(CONFIG_KALLSYMS) += kallsyms.o |
| 60 | obj-$(CONFIG_BSD_PROCESS_ACCT) += acct.o | 48 | obj-$(CONFIG_BSD_PROCESS_ACCT) += acct.o |
| 61 | obj-$(CONFIG_KEXEC) += kexec.o | 49 | obj-$(CONFIG_KEXEC) += kexec.o |
| @@ -81,12 +69,6 @@ obj-$(CONFIG_KGDB) += debug/ | |||
| 81 | obj-$(CONFIG_DETECT_HUNG_TASK) += hung_task.o | 69 | obj-$(CONFIG_DETECT_HUNG_TASK) += hung_task.o |
| 82 | obj-$(CONFIG_LOCKUP_DETECTOR) += watchdog.o | 70 | obj-$(CONFIG_LOCKUP_DETECTOR) += watchdog.o |
| 83 | obj-$(CONFIG_SECCOMP) += seccomp.o | 71 | obj-$(CONFIG_SECCOMP) += seccomp.o |
| 84 | obj-$(CONFIG_RCU_TORTURE_TEST) += rcutorture.o | ||
| 85 | obj-$(CONFIG_TREE_RCU) += rcutree.o | ||
| 86 | obj-$(CONFIG_TREE_PREEMPT_RCU) += rcutree.o | ||
| 87 | obj-$(CONFIG_TREE_RCU_TRACE) += rcutree_trace.o | ||
| 88 | obj-$(CONFIG_TINY_RCU) += rcutiny.o | ||
| 89 | obj-$(CONFIG_TINY_PREEMPT_RCU) += rcutiny.o | ||
| 90 | obj-$(CONFIG_RELAY) += relay.o | 72 | obj-$(CONFIG_RELAY) += relay.o |
| 91 | obj-$(CONFIG_SYSCTL) += utsname_sysctl.o | 73 | obj-$(CONFIG_SYSCTL) += utsname_sysctl.o |
| 92 | obj-$(CONFIG_TASK_DELAY_ACCT) += delayacct.o | 74 | obj-$(CONFIG_TASK_DELAY_ACCT) += delayacct.o |
| @@ -141,19 +123,53 @@ targets += timeconst.h | |||
| 141 | $(obj)/timeconst.h: $(obj)/hz.bc $(src)/timeconst.bc FORCE | 123 | $(obj)/timeconst.h: $(obj)/hz.bc $(src)/timeconst.bc FORCE |
| 142 | $(call if_changed,bc) | 124 | $(call if_changed,bc) |
| 143 | 125 | ||
| 144 | ifeq ($(CONFIG_MODULE_SIG),y) | 126 | ############################################################################### |
| 127 | # | ||
| 128 | # Roll all the X.509 certificates that we can find together and pull them into | ||
| 129 | # the kernel so that they get loaded into the system trusted keyring during | ||
| 130 | # boot. | ||
| 145 | # | 131 | # |
| 146 | # Pull the signing certificate and any extra certificates into the kernel | 132 | # We look in the source root and the build root for all files whose name ends |
| 133 | # in ".x509". Unfortunately, this will generate duplicate filenames, so we | ||
| 134 | # have make canonicalise the pathnames and then sort them to discard the | ||
| 135 | # duplicates. | ||
| 147 | # | 136 | # |
| 137 | ############################################################################### | ||
| 138 | ifeq ($(CONFIG_SYSTEM_TRUSTED_KEYRING),y) | ||
| 139 | X509_CERTIFICATES-y := $(wildcard *.x509) $(wildcard $(srctree)/*.x509) | ||
| 140 | X509_CERTIFICATES-$(CONFIG_MODULE_SIG) += $(objtree)/signing_key.x509 | ||
| 141 | X509_CERTIFICATES-raw := $(sort $(foreach CERT,$(X509_CERTIFICATES-y), \ | ||
| 142 | $(or $(realpath $(CERT)),$(CERT)))) | ||
| 143 | X509_CERTIFICATES := $(subst $(realpath $(objtree))/,,$(X509_CERTIFICATES-raw)) | ||
| 144 | |||
| 145 | ifeq ($(X509_CERTIFICATES),) | ||
| 146 | $(warning *** No X.509 certificates found ***) | ||
| 147 | endif | ||
| 148 | 148 | ||
| 149 | quiet_cmd_touch = TOUCH $@ | 149 | ifneq ($(wildcard $(obj)/.x509.list),) |
| 150 | cmd_touch = touch $@ | 150 | ifneq ($(shell cat $(obj)/.x509.list),$(X509_CERTIFICATES)) |
| 151 | $(info X.509 certificate list changed) | ||
| 152 | $(shell rm $(obj)/.x509.list) | ||
| 153 | endif | ||
| 154 | endif | ||
| 155 | |||
| 156 | kernel/system_certificates.o: $(obj)/x509_certificate_list | ||
| 157 | |||
| 158 | quiet_cmd_x509certs = CERTS $@ | ||
| 159 | cmd_x509certs = cat $(X509_CERTIFICATES) /dev/null >$@ $(foreach X509,$(X509_CERTIFICATES),; echo " - Including cert $(X509)") | ||
| 151 | 160 | ||
| 152 | extra_certificates: | 161 | targets += $(obj)/x509_certificate_list |
| 153 | $(call cmd,touch) | 162 | $(obj)/x509_certificate_list: $(X509_CERTIFICATES) $(obj)/.x509.list |
| 163 | $(call if_changed,x509certs) | ||
| 154 | 164 | ||
| 155 | kernel/modsign_certificate.o: signing_key.x509 extra_certificates | 165 | targets += $(obj)/.x509.list |
| 166 | $(obj)/.x509.list: | ||
| 167 | @echo $(X509_CERTIFICATES) >$@ | ||
| 168 | endif | ||
| 169 | |||
| 170 | clean-files := x509_certificate_list .x509.list | ||
| 156 | 171 | ||
| 172 | ifeq ($(CONFIG_MODULE_SIG),y) | ||
| 157 | ############################################################################### | 173 | ############################################################################### |
| 158 | # | 174 | # |
| 159 | # If module signing is requested, say by allyesconfig, but a key has not been | 175 | # If module signing is requested, say by allyesconfig, but a key has not been |
