Commit Graph

530 Commits (974802eaa1afdc87e00821df7020a2b3c6fee623)

Author SHA1 Message Date
Eric Paris 850b0cee16 SELinux: define audit permissions for audit tree netlink messages 16 years ago
Stephen Smalley c5642f4bba selinux: remove obsolete read buffer limit from sel_read_bool 16 years ago
Eric Paris 75834fc3b6 SELinux: move SELINUX_MAGIC into magic.h 16 years ago
Stephen Smalley 65c90bca0d selinux: Fix send_sigiotask hook 16 years ago
Oleg Nesterov ecd6de3c88 selinux: selinux_bprm_committed_creds() should wake up ->real_parent, not ->parent. 16 years ago
David Howells 3bcac0263f SELinux: Don't flush inherited SIGKILL during execve() 16 years ago
Eric Paris 88c48db978 SELinux: drop secondary_ops->sysctl 16 years ago
KaiGai Kohei 8a6f83afd0 Permissive domain in userspace object manager 16 years ago
Paul Moore 58bfbb51ff selinux: Remove the "compat_net" compatibility code 16 years ago
Paul Moore 389fb800ac netlabel: Label incoming TCP connections correctly in SELinux 16 years ago
Eric Paris df7f54c012 SELinux: inode_doinit_with_dentry drop no dentry printk 16 years ago
Eric Paris dd34b5d75a SELinux: new permission between tty audit and audit socket 16 years ago
Eric Paris 6a25b27d60 SELinux: open perm for sock files 16 years ago
Paul Moore d7f59dc464 selinux: Fix a panic in selinux_netlbl_inode_permission() 16 years ago
Paul Moore 09c50b4a52 selinux: Fix the NetLabel glue code for setsockopt() 16 years ago
Eric Paris 26036651c5 SELinux: convert the avc cache hash list to an hlist 16 years ago
Eric Paris edf3d1aecd SELinux: code readability with avc_cache 16 years ago
Eric Paris f1c6381a6e SELinux: remove unused av.decided field 16 years ago
Eric Paris 21193dcd1f SELinux: more careful use of avd in avc_has_perm_noaudit 16 years ago
Eric Paris 906d27d9d2 SELinux: remove the unused ae.used 16 years ago
Eric Paris a5dda68332 SELinux: check seqno when updating an avc_node 16 years ago
Eric Paris 4cb912f1d1 SELinux: NULL terminate al contexts from disk 16 years ago
Eric Paris 4ba0a8ad63 SELinux: better printk when file with invalid label found 16 years ago
Eric Paris 200ac532a4 SELinux: call capabilities code directory 16 years ago
James Morris 5626d3e861 selinux: remove hooks which simply defer to capabilities 16 years ago
James Morris 95c14904b6 selinux: remove secondary ops call to shm_shmat 16 years ago
James Morris 5c4054ccfa selinux: remove secondary ops call to unix_stream_connect 16 years ago
James Morris 2cbbd19812 selinux: remove secondary ops call to task_kill 16 years ago
James Morris ef76e748fa selinux: remove secondary ops call to task_setrlimit 16 years ago
James Morris ca5143d3ff selinux: remove unused cred_commit hook 16 years ago
James Morris af294e41d0 selinux: remove secondary ops call to task_create 16 years ago
James Morris d541bbee69 selinux: remove secondary ops call to file_mprotect 16 years ago
James Morris 438add6b32 selinux: remove secondary ops call to inode_setattr 16 years ago
James Morris 188fbcca9d selinux: remove secondary ops call to inode_permission 16 years ago
James Morris f51115b9ab selinux: remove secondary ops call to inode_follow_link 16 years ago
James Morris dd4907a6d4 selinux: remove secondary ops call to inode_mknod 16 years ago
James Morris e4737250b7 selinux: remove secondary ops call to inode_unlink 16 years ago
James Morris efdfac4376 selinux: remove secondary ops call to inode_link 16 years ago
James Morris 97422ab9ef selinux: remove secondary ops call to sb_umount 16 years ago
James Morris ef935b9136 selinux: remove secondary ops call to sb_mount 16 years ago
James Morris 5565b0b865 selinux: remove secondary ops call to bprm_committed_creds 16 years ago
James Morris 2ec5dbe23d selinux: remove secondary ops call to bprm_committing_creds 16 years ago
James Morris bc05595845 selinux: remove unused bprm_check_security hook 16 years ago
David P. Quigley cd89596f0c SELinux: Unify context mount and genfs behavior 16 years ago
David P. Quigley 11689d47f0 SELinux: Add new security mount option to indicate security label support. 16 years ago
David P. Quigley 0d90a7ec48 SELinux: Condense super block security structure flags and cleanup necessary code. 16 years ago
David Howells 3699c53c48 CRED: Fix regression in cap_capable() as shown up by sys_faccessat() [ver #3] 16 years ago
James Morris 29881c4502 Revert "CRED: Fix regression in cap_capable() as shown up by sys_faccessat() [ver #2]" 16 years ago
Al Viro 56ff5efad9 zero i_uid/i_gid on inode allocation 16 years ago
Eric Paris 76f7ba35d4 SELinux: shrink sizeof av_inhert selinux_class_perm and context 16 years ago