Commit Graph

89 Commits (308c05e35e3517d19bb67a7e97772235c9e15cd7)

Author SHA1 Message Date
Ahmed S. Darwish 04305e4aff Audit: Final renamings and cleanup 17 years ago
James Morris 27cc2a6e57 SELinux: add netport.[ch] 17 years ago
Paul Moore 3e11217263 SELinux: Add network port SID cache 17 years ago
Eric Paris 832cbd9aa1 SELinux: turn mount options strings into defines 17 years ago
Eric Paris 64dbf07474 selinux: introduce permissive types 17 years ago
Roland McGrath 0356357c51 selinux: remove ptrace_sid 17 years ago
Eric Paris b0c636b999 SELinux: create new open permission 17 years ago
James Morris 98e9894650 SELinux: remove unused backpointers from security objects 17 years ago
Paul Moore f74af6e816 SELinux: Correct the NetLabel locking for the sk_security_struct 17 years ago
Paul Moore 03e1ad7b5d LSM: Make the Labeled IPsec hooks more stack friendly 17 years ago
Stephen Smalley 869ab5147e SELinux: more GFP_NOFS fixups to prevent selinux from re-entering the fs code 17 years ago
Eric Paris e000752989 LSM/SELinux: Interfaces to allow FS to control mount options 17 years ago
Jan Blunck 44707fdf59 d_path: Use struct path in struct avc_audit_data 17 years ago
Stephen Smalley b68e418c44 selinux: support 64-bit capabilities 17 years ago
Paul Moore 394c675397 SELinux: Remove security_get_policycaps() 17 years ago
Paul Moore 5dbe1eb0cf SELinux: Allow NetLabel to directly cache SIDs 17 years ago
Paul Moore d621d35e57 SELinux: Enable dynamic enable/disable of the network access checks 17 years ago
Paul Moore 220deb966e SELinux: Better integration between peer labeling subsystems 17 years ago
Paul Moore f67f4f315f SELinux: Add a new peer class and permissions to the Flask definitions 17 years ago
Paul Moore 3bb56b25db SELinux: Add a capabilities bitmap to SELinux policy version 22 17 years ago
Paul Moore 224dfbd81e SELinux: Add a network node caching mechanism similar to the sel_netif_*() functions 17 years ago
Paul Moore da5645a28a SELinux: Only store the network interface's ifindex 17 years ago
Paul Moore e8bfdb9d0d SELinux: Convert the netif code to use ifindex values 17 years ago
Paul Moore 75e22910cf NetLabel: Add IP address family information to the netlbl_skbuff_getattr() function 17 years ago
Eric Paris c9180a57a9 Security: add get, set, and cloning of superblock security information 17 years ago
Eric Paris 3f12070e27 SELinux: policy selectable handling of unknown classes and perms 17 years ago
Yuichi Nakamura 788e7dd4c2 SELinux: Improve read/write performance 17 years ago
Eric Paris ed03218951 security: Protection for exploiting null dereference using mmap 18 years ago
Stephen Smalley 2c3c05dbcb SELinux: allow preemption between transition permission checks 18 years ago
Christopher J. PeBenito e47c8fc582 selinux: add selinuxfs structure for object class discovery 18 years ago
Christopher J. PeBenito 55fcf09b3f selinux: add support for querying object classes and permissions from the running policy 18 years ago
James Carter f0ee2e467f selinux: export initial SID contexts via selinuxfs 18 years ago
Stephen Smalley a764ae4b07 selinux: remove userland security class and permission definitions 18 years ago
Paul Moore 4f6a993f96 SELinux: move security_skb_extlbl_sid() out of the security server 18 years ago
Paul Moore c60475bf35 SELinux: rename selinux_netlabel.h to netlabel.h 18 years ago
Paul Moore 5778eabd9c SELinux: extract the NetLabel SELinux support from the security server 18 years ago
Venkat Yekkirala 342a0cff0a [SELINUX]: Fix 2.6.20-rc6 build when no xfrm 18 years ago
Al Viro 87fcd70d98 [PATCH] selinux endianness annotations 18 years ago
James Morris bb22f58087 Compile fix for "peer secid consolidation for external network labeling" 18 years ago
Paul Moore 3de4bab5b9 SELinux: peer secid consolidation for external network labeling 18 years ago
Paul Moore 9f2ad66509 NetLabel: SELinux cleanups 18 years ago
James Morris 2ee92d46c6 [SELinux]: Add support for DCCP 18 years ago
Venkat Yekkirala 67f83cbf08 SELinux: Fix SA selection semantics 18 years ago
Venkat Yekkirala 6b877699c6 SELinux: Return correct context for SO_PEERSEC 18 years ago
Venkat Yekkirala c1a856c964 SELinux: Various xfrm labeling fixes 18 years ago
Chad Sellers 5c45899879 SELinux: export object class and permission definitions 18 years ago
Paul Moore f8687afefc [NetLabel]: protect the CIPSOv4 socket option from setsockopt() 18 years ago
Venkat Yekkirala 5b368e61c2 IPsec: correct semantics for SELinux policy matching 19 years ago
Eric Paris bc7e982b84 [PATCH] SELinux: convert sbsec semaphore to a mutex 19 years ago
Eric Paris 2397074172 [PATCH] SELinux: change isec semaphore to a mutex 19 years ago