Commit Graph

127 Commits (a385ec4f11bdcf81af094c03e2444ee9b7fad2e5)

Author SHA1 Message Date
Randy Dunlap a69f158902 security: fix ima kconfig warning 13 years ago
Eric Paris b0d5de4d58 IMA: fix audit res field to indicate 1 for success and 0 for failure 13 years ago
Dmitry Kasatkin 4c2c392763 ima: policy for RAMFS 13 years ago
Fabio Estevam f4a0391dfa ima: fix Kconfig dependencies 13 years ago
Mimi Zohar 3db59dd933 ima: fix cred sparse warning 13 years ago
Dmitry Kasatkin f1be242c95 integrity: digital signature config option name change 13 years ago
Dmitry Kasatkin 5e8898e97a lib: digital signature config option name change 13 years ago
Kees Cook 41fdc3054e audit: treat s_id as an untrusted string 13 years ago
Dmitry Kasatkin 97426f9857 evm: prevent racing during tfm allocation 13 years ago
Dmitry Kasatkin d21b594518 evm: key must be set once during initialization 13 years ago
Roberto Sassu 7b7e5916aa ima: fix invalid memory reference 13 years ago
Roberto Sassu 45fae74939 ima: free duplicate measurement memory 13 years ago
Dmitry Kasatkin 143b01d332 evm: prevent racing during tfm allocation 13 years ago
Dmitry Kasatkin 88d7ed3508 evm: key must be set once during initialization 13 years ago
Dmitry Kasatkin de35353375 digsig: build dependency fix 13 years ago
Dmitry Kasatkin 15647eb398 evm: digital signature verification support 13 years ago
Dmitry Kasatkin 8607c50147 integrity: digital signature verification using multiple keyrings 13 years ago
Al Viro 3369465ed1 um: switch to use of drivers/Kconfig 13 years ago
Dmitry Kasatkin fb788d8b98 evm: clean verification status 14 years ago
Mimi Zohar 566be59ab8 evm: permit mode bits to be updated 14 years ago
Mimi Zohar bf6d0f5dcd evm: posix acls modify i_mode 14 years ago
Mimi Zohar a924ce0b35 evm: limit verifying current security.evm integrity 14 years ago
Mimi Zohar 1d714057ef evm: remove TCG_TPM dependency 14 years ago
James Morris d5813a5718 ima: sparse fix: include linux/ima.h in ima_main.c 14 years ago
James Morris b97e145202 ima: sparse fix: make ima_open_policy static 14 years ago
James Morris 4892722e06 integrity: sparse fix: move iint_initialized to integrity.h 14 years ago
Mimi Zohar dbe5ad17ec evm: add Kconfig TCG_TPM dependency 14 years ago
Mimi Zohar 5a4730ba95 evm: fix evm_inode_init_security return code 14 years ago
James Morris 0b024d2446 EVM: ensure trusted and encypted key symbols are available to EVM 14 years ago
Al Viro 4b2a2c6741 ima: fmode_t misspelled as mode_t... 14 years ago
Mimi Zohar 817b54aa45 evm: add evm_inode_setattr to prevent updating an invalid security.evm 14 years ago
Mimi Zohar 7102ebcd65 evm: permit only valid security.evm xattrs to be updated 14 years ago
Dmitry Kasatkin 24e0198efe evm: replace hmac_status with evm_status 14 years ago
Dmitry Kasatkin 6d38ca01c0 evm: evm_verify_hmac must not return INTEGRITY_UNKNOWN 14 years ago
Dmitry Kasatkin 2960e6cb5f evm: additional parameter to pass integrity cache entry 'iint' 14 years ago
Dmitry Kasatkin d46eb36995 evm: crypto hash replaced by shash 14 years ago
Mimi Zohar cb72318069 evm: add evm_inode_init_security to initialize new files 14 years ago
Mimi Zohar 3e1be52d6c security: imbed evm calls in security hooks 14 years ago
Dmitry Kasatkin 6be5cc5246 evm: add support for different security.evm data types 14 years ago
Mimi Zohar 66dbc325af evm: re-release 14 years ago
Mimi Zohar f381c27222 integrity: move ima inode integrity data management 14 years ago
Mimi Zohar 1adace9bb0 ima: remove unnecessary call to ima_must_measure 14 years ago
Mimi Zohar 854fdd55bf IMA: remove IMA imbalance checking 14 years ago
Mimi Zohar 890275b5eb IMA: maintain i_readcount in the VFS layer 14 years ago
Mimi Zohar a68a27b6f2 IMA: convert i_readcount to atomic 14 years ago
Mimi Zohar 867c202654 ima: fix add LSM rule bug 14 years ago
Eric Paris bade72d607 IMA: fix the ToMToU logic 15 years ago
Eric Paris 196f518128 IMA: explicit IMA i_flag to remove global lock on inode_delete 15 years ago
Eric Paris 64c62f06be IMA: drop refcnt from ima_iint_cache since it isn't needed 15 years ago
Eric Paris bc7d2a3e66 IMA: only allocate iint when needed 15 years ago