Commit Graph

1950 Commits (b079296259c0680b6ad431d611295711576f5ac8)

Author SHA1 Message Date
Dmitry Kasatkin 8606404fa5 ima: digital signature verification support 13 years ago
Mimi Zohar 5a44b41207 ima: add support for different security.ima data types 13 years ago
Mimi Zohar 42c63330f2 ima: add ima_inode_setxattr/removexattr function and calls 13 years ago
Dmitry Kasatkin a10bf26b2f ima: replace iint spinblock with rwlock/read_lock 13 years ago
Dmitry Kasatkin bf2276d10c ima: allocating iint improvements 13 years ago
Mimi Zohar 07f6a79415 ima: add appraise action keywords and default rules 13 years ago
Mimi Zohar 2fe5d6def1 ima: integrity appraisal extension 13 years ago
Kees Cook 2e4930eb7c Yama: handle 32-bit userspace prctl 13 years ago
Kees Cook c6993e4ac0 security: allow Yama to be unconditionally stacked 13 years ago
Paul Bolle ec2e1ed2d7 AppArmor: remove af_names.h from .gitignore 13 years ago
Kent Yoder 20328b56cd ima: enable the IBM vTPM as the default TPM in the PPC64 case 13 years ago
Kent Yoder 41ab999c80 tpm: Move tpm_get_random api into the TPM device driver 13 years ago
Tejun Heo 3b07e9ca26 workqueue: deprecate system_nrt[_freezable]_wq 13 years ago
Kees Cook 7612bfeecc Yama: access task_struct->comm directly 13 years ago
Kees Cook 9d8dad742a Yama: higher restrictions should block PTRACE_TRACEME 13 years ago
Mel Gorman 6290c2c439 selinux: tag avc cache alloc as non-critical 13 years ago
Cyrill Gorcunov 1d151c337d c/r: fcntl: add F_GETOWNER_UIDS option 13 years ago
Al Viro e3fea3f70f selinux: fix selinux_inode_setxattr oops 13 years ago
Alan Cox 3b9fc37280 smack: off by one error 13 years ago
Josh Boyer 8ded2bbc18 posix_types.h: Cleanup stale __NFDBITS and related definitions 13 years ago
Al Viro 765927b2d5 switch dentry_open() to struct path, make it grab references itself 13 years ago
Al Viro d35abdb288 hold task_lock around checks in keyctl 13 years ago
Al Viro 67d1214551 merge task_work and rcu_head, get rid of separate allocation for keyring case 13 years ago
Al Viro 41f9d29f09 trimming task_work: kill ->data 13 years ago
Eric Paris 3d2195c332 SELinux: do not check open perms if they are not known to policy 13 years ago
Eric Paris 64919e6091 SELinux: include definition of new capabilities 13 years ago
Rafal Krypa 65ee7f45cf Smack: don't show empty rules when /smack/load or /smack/load2 is read 13 years ago
Casey Schaufler 3518721a89 Smack: user access check bounds 13 years ago
Casey Schaufler 1880eff77e Smack: onlycap limits on CAP_MAC_ADMIN 13 years ago
Casey Schaufler eb982cb4cf Smack: fix smack_new_inode bogosities 13 years ago
Dmitry Kasatkin 417c6c8ee2 ima: audit is compiled only when enabled 13 years ago
Dmitry Kasatkin 7ff2267af5 ima: ima_initialized is set only if successful 13 years ago
Dmitry Kasatkin 8445d64dd7 ima: add policy for pseudo fs 13 years ago
Paul Mundt 75331a597c security: Fix nommu build. 13 years ago
Dmitry Kasatkin c7de7adc18 ima: remove unused cleanup functions 13 years ago
Dmitry Kasatkin 0ea4f8ae41 ima: free securityfs violations file 13 years ago
Mimi Zohar 08e1b76ae3 ima: use full pathnames in measurement list 13 years ago
Paul Mundt 659b5e7652 security: Fix nommu build. 13 years ago
Pablo Neira Ayuso a31f2d17b3 netlink: add netlink_kernel_cfg parameter to netlink_kernel_create 13 years ago
David S. Miller 01f534d0ae selinux: netlink: Move away from NLMSG_PUT(). 13 years ago
Alban Crequy 2597a8344c netfilter: selinux: switch hook PFs to nfproto 13 years ago
Al Viro 98de59bfe4 take calculation of final prot in security_mmap_file() into a helper 13 years ago
Al Viro 8b3ec6814c take security_mmap_file() outside of ->mmap_sem 13 years ago
Christopher Yeoh ac34ebb3a6 aio/vfs: cleanup of rw_copy_check_uvector() and compat_rw_copy_check_uvector() 13 years ago
Boaz Harrosh 81ab6e7b26 kmod: convert two call sites to call_usermodehelper_fns() 13 years ago
Andrew Morton 4f1c28d241 security/keys/keyctl.c: suppress memory allocation failure warning 13 years ago
Al Viro e5467859f7 split ->file_mmap() into ->mmap_addr()/->mmap_file() 13 years ago
Al Viro d007794a18 split cap_mmap_addr() out of cap_file_mmap() 13 years ago
Al Viro cc1dad7183 selinuxfs snprintf() misuses 13 years ago
David Howells 423b978802 KEYS: Fix some sparse warnings 13 years ago