mirror of
https://github.com/apache/nuttx-apps.git
synced 2026-08-19 12:38:19 +00:00
Install a UNIX-style setuid-root sudo app: the kernel raises euid on exec, userspace verifies the caller with passwd_verify(), then setresuid/setgroups and execvp() run the command. Ostest covers setuid exec after a hard credential drop. Signed-off-by: Abhishek Mishra <mishra.abhishek2808@gmail.com>
39 lines
950 B
Text
39 lines
950 B
Text
#
|
|
# For a description of the syntax of this configuration file,
|
|
# see the file kconfig-language.txt in the NuttX tools repository.
|
|
#
|
|
|
|
config EXAMPLES_HELLO
|
|
tristate "\"Hello, World!\" example"
|
|
default n
|
|
---help---
|
|
Enable the \"Hello, World!\" example
|
|
|
|
if EXAMPLES_HELLO
|
|
|
|
config EXAMPLES_HELLO_PROGNAME
|
|
string "Program name"
|
|
default "hello"
|
|
---help---
|
|
This is the name of the program that will be used when the NSH ELF
|
|
program is installed.
|
|
|
|
config EXAMPLES_HELLO_PRIORITY
|
|
int "Hello task priority"
|
|
default 100
|
|
|
|
config EXAMPLES_HELLO_STACKSIZE
|
|
int "Hello stack size"
|
|
default DEFAULT_TASK_STACKSIZE
|
|
|
|
config EXAMPLES_HELLO_RESTRICTED
|
|
bool "Install hello as owner-execute only (0744)"
|
|
default n
|
|
depends on SCHED_USER_IDENTITY
|
|
---help---
|
|
Set the installed mode to ``-rwxr--r--`` owned by root so a
|
|
non-root user cannot exec ``/bin/hello``. Used with
|
|
``CONFIG_SYSTEM_SUDO`` to show ``sudo /bin/hello`` restoring
|
|
access.
|
|
|
|
endif
|