Commit Graph

281 Commits (f114040e3ea6e07372334ade75d1ee0775c355e1)

Author SHA1 Message Date
Behan Webster 357aabed62 security, crypto: LLVMLinux: Remove VLAIS from ima_crypto.c 10 years ago
Dmitry Kasatkin 594081ee71 integrity: do zero padding of the key id 10 years ago
Roberto Sassu 1b68bdf9cd ima: detect violations for mmaped files 11 years ago
Roberto Sassu f7a859ff73 ima: fix race condition on ima_rdwr_violation_check and process_measurement 11 years ago
Roberto Sassu a756024efe ima: added ima_policy_flag variable 11 years ago
Roberto Sassu be39ffc2fe ima: return an error code from ima_add_boot_aggregate() 11 years ago
Dmitry Kasatkin 2faa6ef3b2 ima: provide 'ima_appraise=log' kernel option 11 years ago
Dmitry Kasatkin 31b70f6632 ima: move keyring initialization to ima_init() 11 years ago
Dmitry Kasatkin a2d61ed525 integrity: make integrity files as 'integrity' module 11 years ago
Dmitry Kasatkin 7ef84e65ec integrity: base integrity subsystem kconfig options on integrity 11 years ago
Dmitry Kasatkin 1ae8f41c23 integrity: move asymmetric keys config option 11 years ago
Dmitry Kasatkin b4148db517 ima: initialize only required template 11 years ago
Dmitry Kasatkin 17f4bad3ab ima: remove usage of filename parameter 11 years ago
Dmitry Kasatkin 86f2bc0249 ima: remove unnecessary appraisal test 11 years ago
Dmitry Kasatkin e4a9c51965 ima: add missing '__init' keywords 11 years ago
Dmitry Kasatkin 3a8a2eadc4 ima: remove unnecessary extra variable 11 years ago
Dmitry Kasatkin f68c05f4d2 ima: simplify conditional statement to improve performance 11 years ago
Dmitry Kasatkin 65d98f3be2 integrity: remove declaration of non-existing functions 11 years ago
Dmitry Kasatkin d9a2e5d788 integrity: prevent flooding with 'Request for unknown key' 11 years ago
Dmitry Kasatkin 3034a14682 ima: pass 'opened' flag to identify newly created files 11 years ago
Dmitry Kasatkin 3dcbad52cf evm: properly handle INTEGRITY_NOXATTRS EVM status 11 years ago
Dmitry Kasatkin b151d6b00b ima: provide flag to identify new empty files 11 years ago
Dmitry Kasatkin 1f1009791b evm: prevent passing integrity check if xattr read fails 11 years ago
Dmitry Kasatkin e7d021e283 evm: fix checkpatch warnings 11 years ago
Dmitry Kasatkin 27cd1fc3ae ima: fix fallback to use new_sync_read() 11 years ago
Dmitry Kasatkin 23c19e2ca7 ima: prevent buffer overflow in ima_alloc_tfm() 11 years ago
Mimi Zohar 9a8d289fbc ima: fix ima_alloc_atfm() 11 years ago
Mimi Zohar 5a9196d715 ima: add support for measuring and appraising firmware 11 years ago
Mimi Zohar 7d2ce2320e ima: define '.ima' as a builtin 'trusted' keyring 11 years ago
Dmitry Kasatkin 32c2e6752f ima: provide double buffering for hash calculation 11 years ago
Dmitry Kasatkin 6edf7a8926 ima: introduce multi-page collect buffers 11 years ago
Dmitry Kasatkin 3bcced39ea ima: use ahash API for file hash calculation 11 years ago
Richard Guy Briggs 7e9001f663 audit: fix dangling keywords in integrity ima message output 11 years ago
Dmitry Kasatkin 209b43ca64 ima: delay template descriptor lookup until use 11 years ago
Dmitry Kasatkin 2c50b96482 ima: remove unnecessary i_mutex locking from ima_rdwr_violation_check() 11 years ago
Dmitry Kasatkin 0430e49b6e ima: introduce ima_kernel_read() 11 years ago
Mimi Zohar 2fb1c9a4f2 evm: prohibit userspace writing 'security.evm' HMAC value 11 years ago
Dmitry Kasatkin 14503eb994 ima: check inode integrity cache in violation check 11 years ago
Dmitry Kasatkin b882fae2d3 ima: prevent unnecessary policy checking 11 years ago
Dmitry Kasatkin 3e38df56e6 evm: provide option to protect additional SMACK xattrs 11 years ago
Dmitry Kasatkin d3b3367948 evm: replace HMAC version with attribute mask 11 years ago
Mimi Zohar 060bdebfb0 ima: prevent new digsig xattr from being replaced 11 years ago
Mimi Zohar f9b2a735bd ima: audit log files opened with O_DIRECT flag 11 years ago
Al Viro 627bf81ac6 get rid of pointless checks for NULL ->i_op 11 years ago
Richard Guy Briggs f1dc4867ff audit: anchor all pid references in the initial pid namespace 11 years ago
Dmitry Kasatkin a3aef94b31 evm: enable key retention service automatically 11 years ago
Dmitry Kasatkin 1d91ac6213 ima: skip memory allocation for empty files 11 years ago
Dmitry Kasatkin e0420039b6 evm: EVM does not use MD5 11 years ago
Dmitry Kasatkin 61997c4383 ima: return d_name.name if d_path fails 11 years ago
Dmitry Kasatkin 2bb930abcf integrity: fix checkpatch errors 11 years ago