Commit Graph

1837 Commits (3f0cc6ae86627de825d2371b6d61643f2ce58908)

Author SHA1 Message Date
Kees Cook 235e752789 Yama: remove locking from delete path 12 years ago
Kees Cook 93b69d437e Yama: add RCU to drop read locking 12 years ago
David Howells f8aa23a55f KEYS: Use keyring_alloc() to create special keyrings 13 years ago
David Howells 96b5c8fea6 KEYS: Reduce initial permissions on keys 13 years ago
David Howells 3a50597de8 KEYS: Make the session and process keyrings per-thread 13 years ago
Alan Cox a84a921978 key: Fix resource leak 13 years ago
Alan Cox 631527703d keys: Fix unreachable code 13 years ago
Dmitry Kasatkin 0a72ba7aff ima: change flags container data type 13 years ago
Nicolas Dichtel ee8372dd19 xfrm: invalidate dst on policy insertion/deletion 13 years ago
Casey Schaufler 46a2f3b9e9 Smack: setprocattr memory leak fix 13 years ago
Rafal Krypa 449543b043 Smack: implement revoking all rules for a subject label 13 years ago
Casey Schaufler c00bedb368 Smack: remove task_wait() hook. 13 years ago
Peter Moody e7c568e0fd ima: audit log hashes 13 years ago
Dmitry Kasatkin 45e2472e67 ima: generic IMA action flag handling 13 years ago
David Howells d4f65b5d24 KEYS: Add payload preparsing opportunity prior to key instantiate or update 13 years ago
Dmitry Kasatkin d9d300cdb6 ima: rename ima_must_appraise_or_measure 13 years ago
Dmitry Kasatkin 8606404fa5 ima: digital signature verification support 13 years ago
Mimi Zohar 5a44b41207 ima: add support for different security.ima data types 13 years ago
Mimi Zohar 42c63330f2 ima: add ima_inode_setxattr/removexattr function and calls 13 years ago
Dmitry Kasatkin a10bf26b2f ima: replace iint spinblock with rwlock/read_lock 13 years ago
Dmitry Kasatkin bf2276d10c ima: allocating iint improvements 13 years ago
Mimi Zohar 07f6a79415 ima: add appraise action keywords and default rules 13 years ago
Mimi Zohar 2fe5d6def1 ima: integrity appraisal extension 13 years ago
Kees Cook 2e4930eb7c Yama: handle 32-bit userspace prctl 13 years ago
Kees Cook c6993e4ac0 security: allow Yama to be unconditionally stacked 13 years ago
Kent Yoder 20328b56cd ima: enable the IBM vTPM as the default TPM in the PPC64 case 13 years ago
Kent Yoder 41ab999c80 tpm: Move tpm_get_random api into the TPM device driver 13 years ago
Kees Cook 7612bfeecc Yama: access task_struct->comm directly 13 years ago
Kees Cook 9d8dad742a Yama: higher restrictions should block PTRACE_TRACEME 13 years ago
Mel Gorman 6290c2c439 selinux: tag avc cache alloc as non-critical 13 years ago
Cyrill Gorcunov 1d151c337d c/r: fcntl: add F_GETOWNER_UIDS option 13 years ago
Al Viro e3fea3f70f selinux: fix selinux_inode_setxattr oops 13 years ago
Alan Cox 3b9fc37280 smack: off by one error 13 years ago
Josh Boyer 8ded2bbc18 posix_types.h: Cleanup stale __NFDBITS and related definitions 13 years ago
Al Viro 765927b2d5 switch dentry_open() to struct path, make it grab references itself 13 years ago
Al Viro d35abdb288 hold task_lock around checks in keyctl 13 years ago
Al Viro 67d1214551 merge task_work and rcu_head, get rid of separate allocation for keyring case 13 years ago
Al Viro 41f9d29f09 trimming task_work: kill ->data 13 years ago
Eric Paris 3d2195c332 SELinux: do not check open perms if they are not known to policy 13 years ago
Eric Paris 64919e6091 SELinux: include definition of new capabilities 13 years ago
Rafal Krypa 65ee7f45cf Smack: don't show empty rules when /smack/load or /smack/load2 is read 13 years ago
Casey Schaufler 3518721a89 Smack: user access check bounds 13 years ago
Casey Schaufler 1880eff77e Smack: onlycap limits on CAP_MAC_ADMIN 13 years ago
Casey Schaufler eb982cb4cf Smack: fix smack_new_inode bogosities 13 years ago
Dmitry Kasatkin 417c6c8ee2 ima: audit is compiled only when enabled 13 years ago
Dmitry Kasatkin 7ff2267af5 ima: ima_initialized is set only if successful 13 years ago
Dmitry Kasatkin 8445d64dd7 ima: add policy for pseudo fs 13 years ago
Paul Mundt 75331a597c security: Fix nommu build. 13 years ago
Dmitry Kasatkin c7de7adc18 ima: remove unused cleanup functions 13 years ago
Dmitry Kasatkin 0ea4f8ae41 ima: free securityfs violations file 13 years ago