Commit Graph

2448 Commits (f114040e3ea6e07372334ade75d1ee0775c355e1)

Author SHA1 Message Date
Stephen Smalley 923190d32d selinux: fix inode security list corruption 10 years ago
Behan Webster 357aabed62 security, crypto: LLVMLinux: Remove VLAIS from ima_crypto.c 10 years ago
Dmitry Kasatkin 594081ee71 integrity: do zero padding of the key id 10 years ago
Richard Guy Briggs 4093a84439 selinux: normalize audit log formatting 11 years ago
Richard Guy Briggs e173fb2646 selinux: cleanup error reporting in selinux_nlmsg_perm() 11 years ago
Roberto Sassu 1b68bdf9cd ima: detect violations for mmaped files 11 years ago
Roberto Sassu f7a859ff73 ima: fix race condition on ima_rdwr_violation_check and process_measurement 11 years ago
Roberto Sassu a756024efe ima: added ima_policy_flag variable 11 years ago
Roberto Sassu be39ffc2fe ima: return an error code from ima_add_boot_aggregate() 11 years ago
Dmitry Kasatkin 2faa6ef3b2 ima: provide 'ima_appraise=log' kernel option 11 years ago
Dmitry Kasatkin 31b70f6632 ima: move keyring initialization to ima_init() 11 years ago
David Howells 0c903ab64f KEYS: Make the key matching functions return bool 11 years ago
David Howells c06cfb08b8 KEYS: Remove key_type::match in favour of overriding default by match_preparse 11 years ago
David Howells 614d8c3901 KEYS: Remove key_type::def_lookup_type 11 years ago
David Howells 462919591a KEYS: Preparse match data 11 years ago
David Howells 54e2c2c1a9 KEYS: Reinstate EPERM for a key type name beginning with a '.' 11 years ago
David Howells 8da79b6439 KEYS: Fix missing statics 11 years ago
Paul Moore cbe0d6e879 selinux: make the netif cache namespace aware 11 years ago
Jeff Layton e0b93eddfe security: make security_file_set_fowner, f_setown and __f_setown void return 11 years ago
Dmitry Kasatkin a2d61ed525 integrity: make integrity files as 'integrity' module 11 years ago
Dmitry Kasatkin 7ef84e65ec integrity: base integrity subsystem kconfig options on integrity 11 years ago
Dmitry Kasatkin 1ae8f41c23 integrity: move asymmetric keys config option 11 years ago
Dmitry Kasatkin b4148db517 ima: initialize only required template 11 years ago
Dmitry Kasatkin 17f4bad3ab ima: remove usage of filename parameter 11 years ago
Dmitry Kasatkin 86f2bc0249 ima: remove unnecessary appraisal test 11 years ago
Dmitry Kasatkin e4a9c51965 ima: add missing '__init' keywords 11 years ago
Dmitry Kasatkin 3a8a2eadc4 ima: remove unnecessary extra variable 11 years ago
Dmitry Kasatkin f68c05f4d2 ima: simplify conditional statement to improve performance 11 years ago
Dmitry Kasatkin 65d98f3be2 integrity: remove declaration of non-existing functions 11 years ago
Dmitry Kasatkin d9a2e5d788 integrity: prevent flooding with 'Request for unknown key' 11 years ago
Dmitry Kasatkin 3034a14682 ima: pass 'opened' flag to identify newly created files 11 years ago
Dmitry Kasatkin 3dcbad52cf evm: properly handle INTEGRITY_NOXATTRS EVM status 11 years ago
Masanari Iida da3dae54e4 Documentation: Docbook: Fix generated DocBook/kernel-api.xml 11 years ago
Jiri Pirko 25db6bea1f selinux: register nf hooks with single nf_register_hooks call 11 years ago
Dmitry Kasatkin b151d6b00b ima: provide flag to identify new empty files 11 years ago
Dmitry Kasatkin 1f1009791b evm: prevent passing integrity check if xattr read fails 11 years ago
Paul Moore a7a91a1928 selinux: fix a problem with IPv6 traffic denials in selinux_ip_postroute() 11 years ago
Steve Dickson 738c5d190f KEYS: Increase root_maxkeys and root_maxbytes sizes 11 years ago
Dmitry Kasatkin e7d021e283 evm: fix checkpatch warnings 11 years ago
Dmitry Kasatkin 27cd1fc3ae ima: fix fallback to use new_sync_read() 11 years ago
Dmitry Kasatkin 23c19e2ca7 ima: prevent buffer overflow in ima_alloc_tfm() 11 years ago
Mimi Zohar 9a8d289fbc ima: fix ima_alloc_atfm() 11 years ago
Lukasz Pawelczyk 21c7eae21a Make Smack operate on smack_known struct where it still used char* 11 years ago
Lukasz Pawelczyk d01757904d Fix a bidirectional UDS connect check typo 11 years ago
Lukasz Pawelczyk e95ef49b7f Small fixes in comments describing function parameters 11 years ago
Casey Schaufler d166c8024d Smack: Bring-up access mode 11 years ago
Stephen Smalley 7b0d0b40cd selinux: Permit bounded transitions under NO_NEW_PRIVS or NOSUID. 11 years ago
Jani Nikula 6a4c264313 module: rename KERNEL_PARAM_FL_NOARG to avoid confusion 11 years ago
Tetsuo Handa 8fe7a268b1 tomoyo: Fix pathname calculation breakage. 11 years ago
Marcin Niesluchowski d83d2c2646 Smack: Fix setting label on successful file open 11 years ago