aboutsummaryrefslogtreecommitdiff
path: root/security/apparmor/include/policy.h
AgeCommit message (Expand)AuthorFilesLines
2019-06-18apparmor: fix PROFILE_MEDIATES for untrusted inputGravatar John Johansen 1-1/+10
2019-06-05treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 441Gravatar Thomas Gleixner 1-5/+1
2018-10-03apparmor: Parse secmark policyGravatar Matthew Garrett 1-0/+3
2018-03-13apparmor: remove POLICY_MEDIATES_SAFEGravatar John Johansen 1-11/+1
2018-03-13apparmor: add base infastructure for socket mediationGravatar John Johansen 1-0/+11
2018-02-09apparmor: convert attaching profiles via xattrs to use dfa matchingGravatar John Johansen 1-2/+0
2018-02-09apparmor: Add support for attaching profiles via xattr, presence and valueGravatar Matthew Garrett 1-0/+6
2017-10-26Revert "apparmor: add base infastructure for socket mediation"Gravatar Linus Torvalds 1-13/+0
2017-09-22apparmor: add base infastructure for socket mediationGravatar John Johansen 1-0/+13
2017-06-10apparmor: switch from profiles to using labels on contextsGravatar John Johansen 1-78/+32
2017-06-10apparmor: add fn to test if profile supports a given mediation classGravatar John Johansen 1-0/+10
2017-06-10apparmor: provide finer control over policy managementGravatar John Johansen 1-2/+6
2017-06-08apparmor: move permissions into their own file to be more easily sharedGravatar John Johansen 1-0/+1
2017-06-08apparmor: allow profiles to provide info to disconnected pathsGravatar John Johansen 1-0/+2
2017-02-21Merge branch 'next' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/...Gravatar Linus Torvalds 1-142/+57
2017-01-16apparmor: support querying extended trusted helper extra dataGravatar William Hua 1-0/+16
2017-01-16apparmor: change op from int to const char *Gravatar John Johansen 1-1/+2
2017-01-16apparmor: pass the subject profile into profile replace/removeGravatar John Johansen 1-3/+4
2017-01-16apparmor: allow introspecting the loaded policy pre internal transformGravatar John Johansen 1-2/+3
2017-01-16apparmor: add profile and ns params to aa_may_manage_policy()Gravatar John Johansen 1-1/+1
2017-01-16apparmor: add ns being viewed as a param to policy_admin_capable()Gravatar John Johansen 1-1/+1
2017-01-16apparmor: add ns being viewed as a param to policy_view_capable()Gravatar John Johansen 1-1/+3
2017-01-16apparmor: Make aa_remove_profile() callable from a different viewGravatar John Johansen 1-1/+1
2017-01-16apparmor: name null-XXX profiles after the executableGravatar John Johansen 1-1/+2
2017-01-16apparmor: pass gfp_t parameter into profile allocationGravatar John Johansen 1-1/+1
2017-01-16apparmor: refactor prepare_ns() and make usable from different viewsGravatar John Johansen 1-1/+2
2017-01-16apparmor: add fn to lookup profiles by fqnameGravatar John Johansen 1-0/+2
2017-01-16apparmor: add strn version of lookup_profile fnGravatar John Johansen 1-0/+2
2017-01-16apparmor: rename replacedby to proxyGravatar John Johansen 1-10/+10
2017-01-16apparmor: rename PFLAG_INVALID to PFLAG_STALEGravatar John Johansen 1-3/+3
2017-01-16apparmor: rename namespace to ns to improve code line lengthsGravatar John Johansen 1-4/+4
2017-01-16apparmor: split apparmor policy namespaces code into its own fileGravatar John Johansen 1-106/+6
2017-01-16apparmor: split out shared policy_XXX fns to libGravatar John Johansen 1-13/+0
2017-01-16apparmor: move lib definitions into separate lib includeGravatar John Johansen 1-0/+1
2017-01-14locking/atomic, kref: Use kref_get_unless_zero() moreGravatar Peter Zijlstra 1-2/+2
2016-07-12apparmor: fix module parameters can be changed after policy is lockedGravatar John Johansen 1-0/+2
2013-09-30apparmor: fix suspicious RCU usage warning in policy.c/policy.hGravatar John Johansen 1-1/+3
2013-08-14apparmor: add the ability to report a sha1 hash of loaded policyGravatar John Johansen 1-0/+1
2013-08-14apparmor: add an optional profile attachment string for profilesGravatar John Johansen 1-0/+2
2013-08-14apparmor: add interface files for profiles and namespacesGravatar John Johansen 1-2/+19
2013-08-14apparmor: allow setting any profile into the unconfined stateGravatar John Johansen 1-3/+3
2013-08-14apparmor: make free_profile available outside of policy.cGravatar John Johansen 1-0/+1
2013-08-14apparmor: rework namespace free pathGravatar John Johansen 1-8/+4
2013-08-14apparmor: update how unconfined is handledGravatar John Johansen 1-41/+39
2013-08-14apparmor: change how profile replacement update is doneGravatar John Johansen 1-22/+56
2013-08-14apparmor: convert profile lists to RCU based lockingGravatar John Johansen 1-3/+42
2013-04-28apparmor: remove sid from profilesGravatar John Johansen 1-2/+2
2013-04-28apparmor: refactor profile mode macrosGravatar John Johansen 1-6/+6
2012-03-14AppArmor: add const qualifiers to string arraysGravatar Jan Engelhardt 1-1/+1
2012-03-14AppArmor: Add ability to load extended policyGravatar John Johansen 1-0/+13