source: chapter10/kernel.xml@ c8bc743

xry111/arm64 xry111/arm64-12.0
Last change on this file since c8bc743 was c8bc743, checked in by Xi Ruoyao <xry111@…>, 20 months ago

arm64: various text change for references to architecture

  • Property mode set to 100644
File size: 18.9 KB
RevLine 
[673b0d8]1<?xml version="1.0" encoding="ISO-8859-1"?>
[b06ca36]2<!DOCTYPE sect1 PUBLIC "-//OASIS//DTD DocBook XML V4.5//EN"
3 "http://www.oasis-open.org/docbook/xml/4.5/docbookx.dtd" [
[673b0d8]4 <!ENTITY % general-entities SYSTEM "../general.ent">
5 %general-entities;
6]>
[b78c747]7
[81fd230]8<sect1 id="ch-bootable-kernel" role="wrap">
[b78c747]9 <?dbhtml filename="kernel.html"?>
10
[e747759]11 <sect1info condition="script">
[6070f51]12 <productname>kernel</productname>
[e747759]13 <productnumber>&linux-version;</productnumber>
14 <address>&linux-url;</address>
15 </sect1info>
16
[b78c747]17 <title>Linux-&linux-version;</title>
18
19 <indexterm zone="ch-bootable-kernel">
20 <primary sortas="a-Linux">Linux</primary>
21 </indexterm>
22
23 <sect2 role="package">
24 <title/>
25
26 <para>The Linux package contains the Linux kernel.</para>
[673b0d8]27
[b78c747]28 <segmentedlist>
29 <segtitle>&buildtime;</segtitle>
30 <segtitle>&diskspace;</segtitle>
[6370fa6]31
[b78c747]32 <seglistitem>
[fb386e0]33 <seg>&linux-knl-sbu;</seg>
34 <seg>&linux-knl-du;</seg>
[b78c747]35 </seglistitem>
36 </segmentedlist>
[a001133]37
[b78c747]38 </sect2>
[2081905]39
[b78c747]40 <sect2 role="installation">
41 <title>Installation of the kernel</title>
[81fd230]42
[b78c747]43 <para>Building the kernel involves a few steps&mdash;configuration,
44 compilation, and installation. Read the <filename>README</filename> file
45 in the kernel source tree for alternative methods to the way this book
46 configures the kernel.</para>
47
48 <para>Prepare for compilation by running the following command:</para>
[b9e738a]49
[0445a3d]50<screen><userinput remap="pre">make mrproper</userinput></screen>
[b9e738a]51
[b78c747]52 <para>This ensures that the kernel tree is absolutely clean. The
53 kernel team recommends that this command be issued prior to each
54 kernel compilation. Do not rely on the source tree being clean after
55 un-tarring.</para>
[d72e04a]56
[eab5b72]57 <para>There are several ways to configure the kernel options. Usually,
58 This is done through a menu-driven interface, for example:</para>
59
60<screen role="nodump"><userinput>make menuconfig</userinput></screen>
61
62 <variablelist>
63 <title>The meaning of optional make environment variables:</title>
64
65 <varlistentry>
66 <term><parameter>LANG=&lt;host_LANG_value&gt; LC_ALL=</parameter></term>
67 <listitem>
68 <para>This establishes the locale setting to the one used on the
69 host. This may be needed for a proper menuconfig ncurses interface
70 line drawing on a UTF-8 linux text console.</para>
71
72 <para>If used, be sure to replace
73 <replaceable>&lt;host_LANG_value&gt;</replaceable> by the value of
74 the <envar>$LANG</envar> variable from your host. You can
75 alternatively use instead the host's value of <envar>$LC_ALL</envar>
76 or <envar>$LC_CTYPE</envar>.</para>
77 </listitem>
78 </varlistentry>
79
80 <varlistentry>
81 <term><command>make menuconfig</command></term>
82 <listitem>
83 <para>This launches an ncurses menu-driven interface. For other
84 (graphical) interfaces, type <command>make help</command>.</para>
85 </listitem>
86 </varlistentry>
87 </variablelist>
88
[fa21b3d]89 <!-- Support for compiling a keymap into the kernel is deliberately removed -->
[81fd230]90
[eab5b72]91 <para>For general information on kernel configuration see <ulink
[e9ba8aa8]92 url="&hints-root;kernel-configuration.txt"/>. BLFS has some information
[764b5cf]93 regarding particular kernel configuration requirements of packages outside
94 of LFS at <ulink
[0ee07e5]95 url="&blfs-book;longindex.html#kernel-config-index"/>. Additional
[f873610]96 information about configuring and building the kernel can be found at
97 <ulink url="http://www.kroah.com/lkn/"/> </para>
[e9ba8aa8]98
[1118b17]99 <note>
100 <para>A good starting place for setting up the kernel configuration is to
101 run <command>make defconfig</command>. This will set the base
102 configuration to a good state that takes your current system architecture
103 into account.</para>
[7e3a289]104
[25332b5]105 <para>Be sure to enable/disable/set the following features or the system might
[1118b17]106 not work correctly or boot at all:</para>
[cba2d4e]107
[768ae15]108 <screen role="nodump" revision="sysv">General setup -->
[ed2bec7]109 [ ] Compile the kernel with warnings as errors [CONFIG_WERROR]
[768ae15]110 &lt; &gt; Enable kernel headers through /sys/kernel/kheaders.tar.xz [CONFIG_IKHEADERS]
111Device Drivers ---&gt;
[6d19228]112 Graphics support ---&gt;
113 Frame buffer Devices ---&gt;
114 [*] Support for frame buffer devices ----
[e9ba8aa8]115 Generic Driver Options ---&gt;
[040ecb6]116 [ ] Support for uevent helper [CONFIG_UEVENT_HELPER]
[6ad47308]117 [*] Maintain a devtmpfs filesystem to mount at /dev [CONFIG_DEVTMPFS]
118 [*] Automount devtmpfs at /dev, after the kernel mounted the rootfs [CONFIG_DEVTMPFS_MOUNT]</screen>
[1118b17]119
[8b0e9795]120 <screen role="nodump" revision="systemd">General setup -->
[ed2bec7]121 [ ] Compile the kernel with warnings as errors [CONFIG_WERROR]
[4b859f1]122 [ ] Auditing Support [CONFIG_AUDIT]
[6ad47308]123 CPU/Task time and stats accounting ---&gt;
124 [*] Pressure stall information tracking [CONFIG_PSI]
[768ae15]125 &lt; &gt; Enable kernel headers through /sys/kernel/kheaders.tar.xz [CONFIG_IKHEADERS]
[68550bb]126 [*] Control Group support [CONFIG_CGROUPS] ---&gt;
127 [*] Memory controller [CONFIG_MEMCG]
[de5d133]128 [ ] Enable deprecated sysfs features to support old userspace tools [CONFIG_SYSFS_DEPRECATED]
[9cea9a2]129 [*] Configure standard kernel features (expert users) [CONFIG_EXPERT] ---&gt;
[6cf2844]130 [*] open by fhandle syscalls [CONFIG_FHANDLE]
[2f14259]131General architecture-dependent options ---&gt;
132 [*] Enable seccomp to safely compute untrusted bytecode [CONFIG_SECCOMP]
[1118b17]133Networking support ---&gt;
134 Networking options ---&gt;
[de5d133]135 &lt;*&gt; The IPv6 protocol [CONFIG_IPV6]
[1118b17]136Device Drivers ---&gt;
137 Generic Driver Options ---&gt;
[de5d133]138 [ ] Support for uevent helper [CONFIG_UEVENT_HELPER]
139 [*] Maintain a devtmpfs filesystem to mount at /dev [CONFIG_DEVTMPFS]
[6ad47308]140 [*] Automount devtmpfs at /dev, after the kernel mounted the rootfs [CONFIG_DEVTMPFS_MOUNT]
[6cf2844]141 Firmware Loader ---&gt;
142 [ ] Enable the firmware sysfs fallback mechanism [CONFIG_FW_LOADER_USER_HELPER]
[6ad47308]143 Firmware Drivers ---&gt;
144 [*] Export DMI identification via sysfs to userspace [CONFIG_DMIID]
145 Graphics support ---&gt;
146 Frame buffer Devices ---&gt;
147 &lt;*&gt; Support for frame buffer devices ---&gt;
[1118b17]148File systems ---&gt;
[de5d133]149 [*] Inotify support for userspace [CONFIG_INOTIFY_USER]
[6ad47308]150 Pseudo filesystems ---&gt;
151 [*] Tmpfs POSIX Access Control Lists [CONFIG_TMPFS_POSIX_ACL]</screen>
[83b8644]152
[2f098e4]153 <para>Disable a feature which is security compromised in this kernel
154 release:</para>
155
156 <screen role="nodump">Memory Management options ---&gt;
157 [ ] Enable userfaultfd() system call [CONFIG_USERFAULTFD]</screen>
[1118b17]158 </note>
159
160 <note revision="systemd">
161 <para>While "The IPv6 Protocol" is not strictly
162 required, it is highly recommended by the systemd developers.</para>
163 </note>
164
165 <para revision="sysv">There are several other options that may be desired
166 depending on the requirements for the system. For a list of options needed
167 for BLFS packages, see the <ulink
168 url="&lfs-root;blfs/view/&short-version;/longindex.html#kernel-config-index">BLFS
169 Index of Kernel Settings</ulink>
[d13c6db]170 (&lfs-root;blfs/view/&short-version;/longindex.html#kernel-config-index).</para>
[4e7d6a6]171
[8e65a6a]172 <note>
[1c16a05]173 <para>If your host hardware is using UEFI and you wish to boot the
174 LFS system with it, you should adjust some kernel configuration
175 following <ulink url="&blfs-book;postlfs/grub-setup.html#uefi-kernel">
176 the BLFS page</ulink>.</para>
[8e65a6a]177 </note>
178
[4e7d6a6]179 <variablelist>
180 <title>The rationale for the above configuration items:</title>
181
[ed2bec7]182 <varlistentry>
183 <term>
184 <parameter>
185 Compile the kernel with warnings as errors
186 </parameter>
187 </term>
188 <listitem>
189 <para>This may cause building failure if the compiler and/or
190 configuration are different from those of the kernel
191 developers.</para>
192 </listitem>
193 </varlistentry>
194
[768ae15]195 <varlistentry>
196 <term>
197 <parameter>
198 Enable kernel headers through /sys/kernel/kheaders.tar.xz
199 </parameter>
200 </term>
201 <listitem>
202 <para>This will require <command>cpio</command> building the kernel.
203 <command>cpio</command> is not installed by LFS.</para>
204 </listitem>
205 </varlistentry>
206
[4e7d6a6]207 <varlistentry>
[3aee2ac2]208 <term><parameter>Support for uevent helper</parameter></term>
[4e7d6a6]209 <listitem>
[edbeeb5]210 <para>Having this option set may interfere with device
[5c9a7bf]211 management when using Udev/Eudev. </para>
[4e7d6a6]212 </listitem>
213 </varlistentry>
214
215 <varlistentry>
216 <term><parameter>Maintain a devtmpfs</parameter></term>
217 <listitem>
218 <para>This will create automated device nodes which are populated by the
[5c9a7bf]219 kernel, even without Udev running. Udev then runs on top of this,
[4e7d6a6]220 managing permissions and adding symlinks. This configuration
[fba870f]221 item is required for all users of Udev/Eudev.</para>
[4e7d6a6]222 </listitem>
223 </varlistentry>
224
[6ad47308]225 <varlistentry>
226 <term><parameter>Automount devtmpfs at /dev</parameter></term>
227 <listitem>
228 <para>This will mount the kernel view of the devices on /dev
229 upon switching to root filesystem just before starting
230 init.</para>
231 </listitem>
232 </varlistentry>
233
[098f4de]234 <varlistentry>
235 <term><parameter>Enable userfaultfd() system call</parameter></term>
236 <listitem>
237 <para>If this option is enabled, a security vulnerability not
238 resolved in Linux-&linux-version; yet will be exploitable.
239 Disable this option to avoid the vulnerability. This system call
240 is not used by any part of LFS or BLFS.</para>
241 </listitem>
242 </varlistentry>
243
[4e7d6a6]244 </variablelist>
[2081905]245
[b78c747]246 <para>Alternatively, <command>make oldconfig</command> may be more
247 appropriate in some situations. See the <filename>README</filename>
248 file for more information.</para>
249
250 <para>If desired, skip kernel configuration by copying the kernel
251 config file, <filename>.config</filename>, from the host system
252 (assuming it is available) to the unpacked <filename
253 class="directory">linux-&linux-version;</filename> directory. However,
254 we do not recommend this option. It is often better to explore all the
255 configuration menus and create the kernel configuration from
256 scratch.</para>
257
258 <para>Compile the kernel image and modules:</para>
[2081905]259
[0445a3d]260<screen><userinput remap="make">make</userinput></screen>
[2081905]261
[b67f2d6]262 <para>If using kernel modules, module configuration in <filename
263 class="directory">/etc/modprobe.d</filename> may be required.
264 Information pertaining to modules and kernel configuration is
[afcfd74]265 located in <xref linkend="ch-config-udev"/> and in the kernel
[b67f2d6]266 documentation in the <filename
[b78c747]267 class="directory">linux-&linux-version;/Documentation</filename> directory.
[fba870f]268 Also, <filename>modprobe.d(5)</filename> may be of interest.</para>
[4b59d59]269
[2e836fe]270 <para>Unless module support has been disabled in the kernel configuration,
271 install the modules with:</para>
[2081905]272
[11ebea6]273<screen><userinput remap="install">make modules_install</userinput></screen>
[2081905]274
[b78c747]275 <para>After kernel compilation is complete, additional steps are
276 required to complete the installation. Some files need to be copied to
277 the <filename class="directory">/boot</filename> directory.</para>
[81fd230]278
[230381d]279 <caution>
[0d84af1]280 <para>If the host system has a separate /boot partition, the files copied
281 below should go there. The easiest way to do that is to bind /boot on the
[e286d8db]282 host (outside chroot) to /mnt/lfs/boot before proceeding. As the
283 &root; user in the <emphasis>host system</emphasis>:</para>
[230381d]284
[11ebea6]285<screen role="nodump"><userinput>mount --bind /boot /mnt/lfs/boot</userinput></screen>
[230381d]286 </caution>
287
[f9bcaec]288 <para>The path to the kernel image may vary depending on the platform being
289 used. The filename below can be changed to suit your taste, but the stem of
[fe1643e]290 the filename should be <emphasis>vmlinuz</emphasis> to be compatible with
[f9bcaec]291 the automatic setup of the boot process described in the next section. The
[c8bc743]292 following command assumes an ARM64 architecture:</para>
[2081905]293
[cfc0780]294<screen><userinput remap="install">cp -iv arch/arm64/boot/Image /boot/vmlinuz-&linux-version;-lfs-&version;</userinput></screen>
[2081905]295
[b78c747]296 <para><filename>System.map</filename> is a symbol file for the kernel.
297 It maps the function entry points of every function in the kernel API,
298 as well as the addresses of the kernel data structures for the running
[2ca8941]299 kernel. It is used as a resource when investigating kernel problems.
[6028823]300 Issue the following command to install the map file:</para>
[81fd230]301
[0d84af1]302<screen><userinput remap="install">cp -iv System.map /boot/System.map-&linux-version;</userinput></screen>
[2081905]303
[b78c747]304 <para>The kernel configuration file <filename>.config</filename>
305 produced by the <command>make menuconfig</command> step
306 above contains all the configuration selections for the kernel
307 that was just compiled. It is a good idea to keep this file for future
308 reference:</para>
[81fd230]309
[0d84af1]310<screen><userinput remap="install">cp -iv .config /boot/config-&linux-version;</userinput></screen>
[2081905]311
[a1e18fa]312 <para>Install the documentation for the Linux kernel:</para>
313
[0445a3d]314<screen><userinput remap="install">install -d /usr/share/doc/linux-&linux-version;
[c226182]315cp -r Documentation/* /usr/share/doc/linux-&linux-version;</userinput></screen>
[a1e18fa]316
[b78c747]317 <para>It is important to note that the files in the kernel source
318 directory are not owned by <emphasis>root</emphasis>. Whenever a
319 package is unpacked as user <emphasis>root</emphasis> (like we did
320 inside chroot), the files have the user and group IDs of whatever
321 they were on the packager's computer. This is usually not a problem
322 for any other package to be installed because the source tree is
323 removed after the installation. However, the Linux source tree is
324 often retained for a long time. Because of this, there is a chance
325 that whatever user ID the packager used will be assigned to somebody
326 on the machine. That person would then have write access to the kernel
327 source.</para>
328
[1c5e434]329 <note>
[9cea9a2]330 <para>In many cases, the configuration of the kernel will need to be
[1c5e434]331 updated for packages that will be installed later in BLFS. Unlike
332 other packages, it is not necessary to remove the kernel source tree
[9cea9a2]333 after the newly built kernel is installed.</para>
334
[1c5e434]335 <para>If the kernel source tree is going to be retained, run
336 <command>chown -R 0:0</command> on the <filename
337 class="directory">linux-&linux-version;</filename> directory to ensure
338 all files are owned by user <emphasis>root</emphasis>.</para>
339 </note>
[b78c747]340
341 <warning>
342 <para>Some kernel documentation recommends creating a symlink from
343 <filename class="symlink">/usr/src/linux</filename> pointing to the kernel
344 source directory. This is specific to kernels prior to the 2.6 series and
345 <emphasis>must not</emphasis> be created on an LFS system as it can cause
346 problems for packages you may wish to build once your base LFS system is
347 complete.</para>
[6c75ca3]348 </warning>
[b78c747]349
[6c75ca3]350 <warning>
[4a32085]351 <para>The headers in the system's <filename
352 class="directory">include</filename> directory (<filename
353 class="directory">/usr/include</filename>) should
[b78c747]354 <emphasis>always</emphasis> be the ones against which Glibc was compiled,
[4a32085]355 that is, the sanitised headers installed in <xref
[efcb393]356 linkend="ch-tools-linux-headers"/>. Therefore, they should
[4a32085]357 <emphasis>never</emphasis> be replaced by either the raw kernel headers
358 or any other kernel sanitized headers.</para>
[b78c747]359 </warning>
360
361 </sect2>
362
[200e466]363 <sect2 id="conf-modprobe" role="configuration">
364 <title>Configuring Linux Module Load Order</title>
365
366 <indexterm zone="conf-modprobe">
[b67f2d6]367 <primary sortas="e-/etc/modprobe.d/usb.conf">/etc/modprobe.d/usb.conf</primary>
[200e466]368 </indexterm>
369
[cdd87ad]370 <para>Most of the time Linux modules are loaded automatically, but
371 sometimes it needs some specific direction. The program that loads
372 modules, <command>modprobe</command> or <command>insmod</command>, uses
373 <filename>/etc/modprobe.d/usb.conf</filename> for this purpose. This file
374 needs to be created so that if the USB drivers (ehci_hcd, ohci_hcd and
375 uhci_hcd) have been built as modules, they will be loaded in the correct
376 order; ehci_hcd needs to be loaded prior to ohci_hcd and uhci_hcd in order
377 to avoid a warning being output at boot time.</para>
[200e466]378
[b67f2d6]379 <para>Create a new file <filename>/etc/modprobe.d/usb.conf</filename> by running
[200e466]380 the following:</para>
381
[23ba7a00]382<screen><userinput>install -v -m755 -d /etc/modprobe.d
[b67f2d6]383cat &gt; /etc/modprobe.d/usb.conf &lt;&lt; "EOF"
384<literal># Begin /etc/modprobe.d/usb.conf
[200e466]385
386install ohci_hcd /sbin/modprobe ehci_hcd ; /sbin/modprobe -i ohci_hcd ; true
387install uhci_hcd /sbin/modprobe ehci_hcd ; /sbin/modprobe -i uhci_hcd ; true
388
[b67f2d6]389# End /etc/modprobe.d/usb.conf</literal>
[200e466]390EOF</userinput></screen>
391
392 </sect2>
393
[b78c747]394 <sect2 id="contents-kernel" role="content">
395 <title>Contents of Linux</title>
396
397 <segmentedlist>
398 <segtitle>Installed files</segtitle>
[fe05b08]399 <segtitle>Installed directories</segtitle>
[b78c747]400
401 <seglistitem>
[2ca8941]402 <seg>config-&linux-version;,
[0480d22]403 vmlinuz-&linux-version;-lfs-&version;,
[e787b1f]404 and System.map-&linux-version;</seg>
[fe05b08]405 <seg>/lib/modules, /usr/share/doc/linux-&linux-version;</seg>
[b78c747]406 </seglistitem>
407 </segmentedlist>
408
409 <variablelist>
410 <bridgehead renderas="sect3">Short Descriptions</bridgehead>
411 <?dbfo list-presentation="list"?>
412 <?dbhtml list-presentation="table"?>
413
414 <varlistentry id="config">
415 <term><filename>config-&linux-version;</filename></term>
416 <listitem>
417 <para>Contains all the configuration selections for the kernel</para>
418 <indexterm zone="ch-bootable-kernel config">
419 <primary sortas="e-/boot/config">/boot/config-&linux-version;</primary>
420 </indexterm>
421 </listitem>
422 </varlistentry>
423
424 <varlistentry id="lfskernel">
[784fdaed]425 <term><filename>vmlinuz-&linux-version;-lfs-&version;</filename></term>
[b78c747]426 <listitem>
427 <para>The engine of the Linux system. When turning on the computer,
428 the kernel is the first part of the operating system that gets loaded.
429 It detects and initializes all components of the computer's hardware,
430 then makes these components available as a tree of files to the
431 software and turns a single CPU into a multitasking machine capable
432 of running scores of programs seemingly at the same time</para>
433 <indexterm zone="ch-bootable-kernel lfskernel">
434 <primary sortas="b-lfskernel">lfskernel-&linux-version;</primary>
435 </indexterm>
436 </listitem>
437 </varlistentry>
438
439 <varlistentry id="System.map">
440 <term><filename>System.map-&linux-version;</filename></term>
441 <listitem>
442 <para>A list of addresses and symbols; it maps the entry points and
443 addresses of all the functions and data structures in the
444 kernel</para>
445 <indexterm zone="ch-bootable-kernel System.map">
446 <primary sortas="e-/boot/System.map">/boot/System.map-&linux-version;</primary>
447 </indexterm>
448 </listitem>
449 </varlistentry>
450
451 </variablelist>
452
453 </sect2>
[673b0d8]454
[6370fa6]455</sect1>
Note: See TracBrowser for help on using the repository browser.