aboutsummaryrefslogtreecommitdiff
path: root/security/apparmor
AgeCommit message (Expand)AuthorFilesLines
2017-03-06security: mark LSM hooks as __ro_after_initGravatar James Morris 1-1/+1
2017-03-02sched/headers: Prepare to use <linux/rcuupdate.h> instead of <linux/rculist.h...Gravatar Ingo Molnar 1-0/+1
2017-03-02sched/headers: Prepare to remove <linux/cred.h> inclusion from <linux/sched.h>Gravatar Ingo Molnar 1-0/+1
2017-02-23Merge branch 'for-linus' of git://git.kernel.org/pub/scm/linux/kernel/git/ebi...Gravatar Linus Torvalds 1-1/+1
2017-02-21Merge branch 'next' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/...Gravatar Linus Torvalds 35-1521/+2794
2017-02-10Merge branch 'stable-4.11' of git://git.infradead.org/users/pcmoore/selinux i...Gravatar James Morris 1-5/+2
2017-01-24exec: Remove LSM_UNSAFE_PTRACE_CAPGravatar Eric W. Biederman 1-1/+1
2017-01-19LSM: Add /sys/kernel/security/lsmGravatar Casey Schaufler 1-1/+2
2017-01-16apparmor: fix undefined reference to `aa_g_hash_policy'Gravatar John Johansen 1-1/+1
2017-01-16apparmor: replace remaining BUG_ON() asserts with AA_BUG()Gravatar John Johansen 4-5/+5
2017-01-16apparmor: fix restricted endian type warnings for policy unpackGravatar John Johansen 1-6/+6
2017-01-16apparmor: fix restricted endian type warnings for dfa unpackGravatar John Johansen 2-12/+12
2017-01-16apparmor: add check for apparmor enabled in module parameters missing itGravatar John Johansen 1-0/+10
2017-01-16apparmor: add per cpu work buffers to avoid allocating buffers at every hookGravatar John Johansen 2-1/+103
2017-01-16apparmor: sysctl to enable unprivileged user ns AppArmor policy loadingGravatar Tyler Hicks 2-1/+47
2017-01-16apparmor: support querying extended trusted helper extra dataGravatar William Hua 5-0/+245
2017-01-16apparmor: update cap audit to check SECURITY_CAP_NOAUDITGravatar John Johansen 1-6/+10
2017-01-16apparmor: make computing policy hashes conditional on kernel parameterGravatar John Johansen 2-29/+32
2017-01-16apparmor: convert change_profile to use fqname later to give better controlGravatar John Johansen 5-66/+28
2017-01-16apparmor: fix change_hat debug outputGravatar John Johansen 1-4/+5
2017-01-16apparmor: remove unused op parameter from simple_write_to_buffer()Gravatar John Johansen 1-6/+3
2017-01-16apparmor: change aad apparmor_audit_data macro to a fn macroGravatar John Johansen 12-161/+155
2017-01-16apparmor: change op from int to const char *Gravatar John Johansen 10-134/+84
2017-01-16apparmor: rename context abreviation cxt to the more standard ctxGravatar John Johansen 5-144/+150
2017-01-16apparmor: fail task profile update if current_cred isn't real_credGravatar John Johansen 1-0/+3
2017-01-16apparmor: add per policy ns .load, .replace, .remove interface filesGravatar John Johansen 2-22/+130
2017-01-16apparmor: pass the subject profile into profile replace/removeGravatar John Johansen 3-16/+21
2017-01-16apparmor: audit policy ns specified in policy loadGravatar John Johansen 3-24/+77
2017-01-16apparmor: allow introspecting the loaded policy pre internal transformGravatar John Johansen 8-58/+278
2017-01-16apparmor: add ns name to the audit data for policy loadsGravatar John Johansen 2-10/+25
2017-01-16apparmor: add profile and ns params to aa_may_manage_policy()Gravatar John Johansen 3-14/+12
2017-01-16apparmor: add ns being viewed as a param to policy_admin_capable()Gravatar John Johansen 3-10/+16
2017-01-16apparmor: add ns being viewed as a param to policy_view_capable()Gravatar John Johansen 4-8/+35
2017-01-16apparmor: allow specifying the profile doing the managementGravatar John Johansen 1-11/+21
2017-01-16apparmor: allow introspecting the policy namespace nameGravatar John Johansen 1-0/+24
2017-01-16apparmor: Make aa_remove_profile() callable from a different viewGravatar John Johansen 3-5/+7
2017-01-16apparmor: track ns level so it can be used to help in view checksGravatar John Johansen 1-0/+1
2017-01-16apparmor: add special .null file used to "close" fds at execGravatar John Johansen 3-1/+81
2017-01-16apparmor: provide userspace flag indicating binfmt_elf_mmap changeGravatar John Johansen 1-0/+1
2017-01-16apparmor: add a default null dfaGravatar John Johansen 6-2/+46
2017-01-16apparmor: allow policydb to be used as the file dfaGravatar John Johansen 1-4/+8
2017-01-16apparmor: add get_dfa() fnGravatar John Johansen 1-0/+15
2017-01-16apparmor: prepare to support newer versions of policyGravatar John Johansen 2-10/+25
2017-01-16apparmor: add support for force complain flag to support learning modeGravatar John Johansen 1-1/+3
2017-01-16apparmor: remove paranoid load switchGravatar John Johansen 2-16/+10
2017-01-16apparmor: name null-XXX profiles after the executableGravatar John Johansen 3-17/+47
2017-01-16apparmor: pass gfp_t parameter into profile allocationGravatar John Johansen 4-8/+9
2017-01-16apparmor: refactor prepare_ns() and make usable from different viewsGravatar John Johansen 5-38/+79
2017-01-16apparmor: update policy_destroy to use new debug assertsGravatar John Johansen 1-9/+2
2017-01-16apparmor: pass gfp param into aa_policy_init()Gravatar John Johansen 4-7/+7