20_linux_xen: Do not load XSM policy in non-XSM options
authorIan Jackson <ian.jackson@eu.citrix.com>
Wed, 27 May 2020 16:00:45 +0000 (17:00 +0100)
committerFelix Zielcke <fzielcke@z-51.de>
Wed, 11 Jun 2025 15:42:34 +0000 (17:42 +0200)
commit23953d230705c30b117aad23c499c59205adb1dc
treef45bf4de4d29a086dcc41d4fc4814a945b184ee0
parent1aa0e353d9c4aa1340377ceeef8797635e3d3d2e
20_linux_xen: Do not load XSM policy in non-XSM options

For complicated reasons, even if you have XSM/FLASK disabled (as is
the default) the Xen build system still builds a policy file and puts
it in /boot.

Even so, we shouldn't be loading this in the usual non-"XSM enabled"
entries.  It doesn't do any particular harm but it is quite confusing.

Signed-off-by: Ian Jackson <ian.jackson@eu.citrix.com>
Bug-Debian: https://bugs.debian.org/961673
Last-Update: 2020-05-29

Patch-Name: xen-no-xsm-policy-in-non-xsm-options.patch

Gbp-Pq: Name xen-no-xsm-policy-in-non-xsm-options.patch
util/grub.d/20_linux_xen.in