Commit Graph

807 Commits (0bd8df908de2aefe312d05bd25cd3abc21a6d1da)

Author SHA1 Message Date
James Morris 5c4054ccfa selinux: remove secondary ops call to unix_stream_connect 16 years ago
James Morris 2cbbd19812 selinux: remove secondary ops call to task_kill 16 years ago
James Morris ef76e748fa selinux: remove secondary ops call to task_setrlimit 16 years ago
James Morris ca5143d3ff selinux: remove unused cred_commit hook 16 years ago
James Morris af294e41d0 selinux: remove secondary ops call to task_create 16 years ago
James Morris d541bbee69 selinux: remove secondary ops call to file_mprotect 16 years ago
James Morris 438add6b32 selinux: remove secondary ops call to inode_setattr 16 years ago
James Morris 188fbcca9d selinux: remove secondary ops call to inode_permission 16 years ago
James Morris f51115b9ab selinux: remove secondary ops call to inode_follow_link 16 years ago
James Morris dd4907a6d4 selinux: remove secondary ops call to inode_mknod 16 years ago
James Morris e4737250b7 selinux: remove secondary ops call to inode_unlink 16 years ago
James Morris efdfac4376 selinux: remove secondary ops call to inode_link 16 years ago
James Morris 97422ab9ef selinux: remove secondary ops call to sb_umount 16 years ago
James Morris ef935b9136 selinux: remove secondary ops call to sb_mount 16 years ago
James Morris 5565b0b865 selinux: remove secondary ops call to bprm_committed_creds 16 years ago
James Morris 2ec5dbe23d selinux: remove secondary ops call to bprm_committing_creds 16 years ago
James Morris bc05595845 selinux: remove unused bprm_check_security hook 16 years ago
Casey Schaufler 152a649b64 smackfs load append mode fix 16 years ago
David P. Quigley cd89596f0c SELinux: Unify context mount and genfs behavior 16 years ago
David P. Quigley 11689d47f0 SELinux: Add new security mount option to indicate security label support. 16 years ago
David P. Quigley 0d90a7ec48 SELinux: Condense super block security structure flags and cleanup necessary code. 16 years ago
Vegard Nossum 0d54ee1c78 security: introduce missing kfree 16 years ago
Heiko Carstens 938bb9f5e8 [CVE-2009-0029] System call wrappers part 28 16 years ago
Heiko Carstens 1e7bfb2134 [CVE-2009-0029] System call wrappers part 27 16 years ago
Fernando Carrijo c19a28e119 remove lots of double-semicolons 16 years ago
Serge E. Hallyn 0b82ac37b8 devices cgroup: allow mkfifo 16 years ago
Lai Jiangshan 116e057512 devcgroup: use list_for_each_entry_rcu() 16 years ago
David Howells 3699c53c48 CRED: Fix regression in cap_capable() as shown up by sys_faccessat() [ver #3] 16 years ago
James Morris 29881c4502 Revert "CRED: Fix regression in cap_capable() as shown up by sys_faccessat() [ver #2]" 16 years ago
Al Viro 56ff5efad9 zero i_uid/i_gid on inode allocation 16 years ago
Al Viro acfa4380ef inode->i_op is never NULL 16 years ago
Eric Paris 76f7ba35d4 SELinux: shrink sizeof av_inhert selinux_class_perm and context 16 years ago
David Howells 14eaddc967 CRED: Fix regression in cap_capable() as shown up by sys_faccessat() [ver #2] 16 years ago
Al Viro 5af75d8d58 audit: validate comparison operations, store them in sane form 16 years ago
Rusty Russell 4f4b6c1a94 cpumask: prepare for iterators to only go to nr_cpu_ids/nr_cpumask_bits.: core 16 years ago
James Morris 90bd49ab66 keys: fix sparse warning by adding __user annotation to cast 16 years ago
Kentaro Takeda be6d3e56a6 introduce new LSM hooks where vfsmount is available. 16 years ago
Casey Schaufler 6d3dc07cbb smack: Add support for unlabeled network hosts and networks 16 years ago
Paul Moore 277d342fc4 selinux: Deprecate and schedule the removal of the the compat_net functionality 16 years ago
Paul Moore 6c2e8ac095 netlabel: Update kernel configuration API 16 years ago
David Howells eca1bf5b4f KEYS: Fix variable uninitialisation warnings 16 years ago
Sergio Luis 81ea714bf1 smackfs: check for allocation failures in smk_set_access() 16 years ago
James Morris 7419224691 SELinux: don't check permissions for kernel mounts 16 years ago
James Morris 12204e24b1 security: pass mount flags to security_sb_kern_mount() 16 years ago
Stephen Smalley 459c19f524 SELinux: correctly detect proc filesystems of the form "proc/foo" 16 years ago
Hannes Eder 200036ca9b CRED: fix sparse warnings 16 years ago
Eric Paris e50a906e02 capabilities: define get_vfs_caps_from_disk when file caps are not enabled 16 years ago
David Howells 3a3b7ce933 CRED: Allow kernel services to override LSM settings for task actions 16 years ago
David Howells 1bfdc75ae0 CRED: Add a kernel_service object class to SELinux 16 years ago
David Howells 3b11a1dece CRED: Differentiate objective and effective subjective credentials on a task 16 years ago