Commit Graph

174 Commits (af91706d5ddecb4a9858cca9e90d463037cfd498)

Author SHA1 Message Date
Paul Moore 2e5aa86609 lsm: split the xfrm_state_alloc_security() hook implementation 12 years ago
Tetsuo Handa 9548906b2b xattr: Constify ->name member of "struct xattr". 12 years ago
David Quigley c9bccef6b9 NFS: Extend NFS xattr handlers to accept the security namespace 12 years ago
David Quigley 649f6e7718 LSM: Add flags field to security_sb_set_mnt_opts for in kernel mount data. 12 years ago
David Quigley 746df9b59c Security: Add Hook to test if the particular xattr is part of a MAC model. 12 years ago
David Quigley d47be3dfec Security: Add hook to calculate context based on a negative dentry. 12 years ago
Eric Dumazet ca10b9e9a8 selinux: add a skb_owned_by() hook 12 years ago
Jeff Layton 094f7b69ea selinux: make security_sb_clone_mnt_opts return an error on context mismatch 12 years ago
Paul Moore 5dbbaf2de8 tun: fix LSM/SELinux labeling of tun/tap devices 12 years ago
Mimi Zohar fdf90729e5 ima: support new kernel module syscall 12 years ago
Kees Cook 2e72d51b4a security: introduce kernel_module_from_file hook 12 years ago
Al Viro 808d4e3cfd consitify do_mount() arguments 13 years ago
Eric W. Biederman d2b31ca644 userns: Teach security_path_chown to take kuids and kgids 13 years ago
Mimi Zohar 42c63330f2 ima: add ima_inode_setxattr/removexattr function and calls 13 years ago
Kees Cook c6993e4ac0 security: allow Yama to be unconditionally stacked 13 years ago
Paul Mundt 75331a597c security: Fix nommu build. 13 years ago
Paul Mundt 659b5e7652 security: Fix nommu build. 13 years ago
Al Viro 98de59bfe4 take calculation of final prot in security_mmap_file() into a helper 13 years ago
Al Viro 8b3ec6814c take security_mmap_file() outside of ->mmap_sem 13 years ago
Al Viro e5467859f7 split ->file_mmap() into ->mmap_addr()/->mmap_file() 13 years ago
Eric Paris 83d498569e SELinux: rename dentry_open to file_open 13 years ago
Al Viro 4040153087 security: trim security.h 13 years ago
Al Viro 191c542442 mm: collapse security_vm_enough_memory() variants into a single function 13 years ago
Kees Cook 1a2a4d06e1 security: create task_free security callback 13 years ago
Al Viro cdcf116d44 switch security_path_chmod() to struct path * 13 years ago
Eric Paris fd77846152 security: remove the security_netlink_recv hook as it is equivalent to capable() 13 years ago
Eric Paris 2920a8409d capabilities: remove all _real_ interfaces 13 years ago
Eric Paris c7eba4a975 capabilities: introduce security_capable_noaudit 13 years ago
Eric Paris b7e724d303 capabilities: reverse arguments to security_capable 13 years ago
Eric Paris 6a9de49115 capabilities: remove the task from capable LSM hook entirely 13 years ago
Al Viro 04fc66e789 switch ->path_mknod() to umode_t 13 years ago
Al Viro 4572befe24 switch ->path_mkdir() to umode_t 13 years ago
Al Viro 910f4ecef3 switch security_path_chmod() to umode_t 13 years ago
Al Viro 1a67aafb5f switch ->mknod() to umode_t 13 years ago
Al Viro 4acdaf27eb switch ->create() to umode_t 13 years ago
Al Viro 18bb1db3e7 switch vfs_mkdir() and ->mkdir() to umode_t 13 years ago
Jan Kara 30e053248d security: Fix security_old_inode_init_security() when CONFIG_SECURITY is not set 13 years ago
Paul Moore 6230c9b4f8 bluetooth: Properly clone LSM attributes to newly created child connections 14 years ago
Mimi Zohar fb88c2b6cb evm: fix security/security_old_init_security return code 14 years ago
James Morris 5dbe3040c7 security: sparse fix: Move security_fixup_op to security.h 14 years ago
Al Viro eecdd358b4 ->permission() sanitizing: don't pass flags to exec_permission() 14 years ago
Al Viro e74f71eb78 ->permission() sanitizing: don't pass flags to ->inode_permission() 14 years ago
Mimi Zohar 817b54aa45 evm: add evm_inode_setattr to prevent updating an invalid security.evm 14 years ago
Mimi Zohar 823eb1ccd0 evm: call evm_inode_init_security from security_inode_init_security 14 years ago
Mimi Zohar 3e1be52d6c security: imbed evm calls in security hooks 14 years ago
Mimi Zohar f381c27222 integrity: move ima inode integrity data management 14 years ago
Mimi Zohar 9d8f13ba3f security: new security_inode_init_security API adds function callback 14 years ago
Andi Kleen 1c99042974 SECURITY: Move exec_permission RCU checks into security modules 14 years ago
Andi Kleen 8c9e80ed27 SECURITY: Move exec_permission RCU checks into security modules 14 years ago
Serge E. Hallyn 3486740a4f userns: security: make capabilities relative to the user namespace 14 years ago