aboutsummaryrefslogtreecommitdiff
path: root/security/integrity
AgeCommit message (Expand)AuthorFilesLines
2016-01-22wrappers for ->i_mutex accessGravatar Al Viro 1-4/+4
2016-01-17Merge branch 'for-linus' of git://git.kernel.org/pub/scm/linux/kernel/git/jmo...Gravatar Linus Torvalds 17-76/+575
2016-01-04fix the leak in integrity_read_file()Gravatar Al Viro 1-5/+6
2016-01-03ima: ima_write_policy() limit lockingGravatar Petko Manolov 1-9/+9
2015-12-24IMA: policy can be updated zero timesGravatar Sasha Levin 3-0/+14
2015-12-15security/integrity: make ima/ima_mok.c explicitly non-modularGravatar Paul Gortmaker 1-3/+2
2015-12-15ima: update appraise flags after policy update completesGravatar Mimi Zohar 1-2/+5
2015-12-15IMA: prevent keys on the .ima_blacklist from being removedGravatar Mimi Zohar 1-0/+2
2015-12-15IMA: allow reading back the current IMA policyGravatar Petko Manolov 4-8/+253
2015-12-15IMA: create machine owner and blacklist keyringsGravatar Petko Manolov 4-0/+87
2015-12-15IMA: policy can now be updated multiple timesGravatar Petko Manolov 3-28/+75
2015-12-15evm: EVM_LOAD_X509 depends on EVMGravatar Arnd Bergmann 1-1/+1
2015-12-15evm: reset EVM status when file attributes changeGravatar Dmitry Kasatkin 1-0/+13
2015-12-15evm: provide a function to set the EVM key from the kernelGravatar Dmitry Kasatkin 2-14/+46
2015-12-15evm: enable EVM when X509 certificate is loadedGravatar Dmitry Kasatkin 4-3/+14
2015-12-15evm: load an x509 certificate from the kernelGravatar Dmitry Kasatkin 4-0/+33
2015-11-23integrity: define '.evm' as a builtin 'trusted' keyringGravatar Dmitry Kasatkin 7-22/+35
2015-11-06mm, page_alloc: rename __GFP_WAIT to __GFP_RECLAIMGravatar Mel Gorman 1-1/+1
2015-10-21KEYS: Merge the type-specific data with the payload dataGravatar David Howells 1-1/+1
2015-10-09integrity: prevent loading untrusted certificates on the IMA trusted keyringGravatar Dmitry Kasatkin 1-1/+1
2015-07-01Merge tag 'modules-next-for-linus' of git://git.kernel.org/pub/scm/linux/kern...Gravatar Linus Torvalds 1-1/+1
2015-06-16ima: update builtin policiesGravatar Mimi Zohar 1-9/+56
2015-06-16ima: extend "mask" policy matching supportGravatar Mimi Zohar 1-5/+15
2015-06-16ima: add support for new "euid" policy conditionGravatar Mimi Zohar 1-4/+23
2015-06-16ima: fix ima_show_template_data_ascii()Gravatar Mimi Zohar 3-4/+5
2015-05-28kernel/params: constify struct kernel_param_ops usesGravatar Luis R. Rodriguez 1-1/+1
2015-05-21ima: pass iint to ima_add_violation()Gravatar Roberto Sassu 5-9/+13
2015-05-21ima: wrap event related data to the new ima_event_data structureGravatar Roberto Sassu 5-79/+61
2015-05-21integrity: add validity checks for 'path' parameterGravatar Dmitry Kasatkin 3-2/+5
2015-05-21evm: fix potential race when removing xattrsGravatar Dmitry Kasatkin 1-4/+3
2015-05-21evm: labeling pseudo filesystems exceptionGravatar Mimi Zohar 1-0/+11
2015-05-21ima: remove definition of IMA_X509_PATHGravatar Dmitry Kasatkin 1-7/+1
2015-05-21ima: limit file hash setting by user to fix and log modesGravatar Dmitry Kasatkin 1-2/+6
2015-05-21ima: do not measure or appraise the NSFS filesystemGravatar Mimi Zohar 1-0/+2
2015-05-21ima: skip measurement of cgroupfs files and update documentationGravatar Roberto Sassu 1-0/+2
2015-05-13ima: cleanup ima_init_policy() a littleGravatar Dan Carpenter 1-10/+6
2015-04-15VFS: security/: d_backing_inode() annotationsGravatar David Howells 3-16/+16
2015-02-19Merge branch 'kconfig' of git://git.kernel.org/pub/scm/linux/kernel/git/mmare...Gravatar Linus Torvalds 2-3/+3
2015-02-02ima: /proc/keys is now mandatoryGravatar David Howells 1-1/+0
2015-01-07kconfig: use bool instead of boolean for type definition attributesGravatar Christoph Jaeger 2-3/+3
2014-12-16Merge branch 'next' of git://git.kernel.org/pub/scm/linux/kernel/git/zohar/li...Gravatar James Morris 1-1/+1
2014-12-14Merge branch 'next' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/...Gravatar Linus Torvalds 12-119/+308
2014-12-08Merge branch 'iov_iter' into for-nextGravatar Al Viro 3-3/+9
2014-12-06ima: Fix build failure on powerpc when TCG_IBMVTPM dependencies are not metGravatar Michael Ellerman 1-1/+1
2014-11-19kill f_dentry usesGravatar Al Viro 3-5/+5
2014-11-17VFS: refactor vfs_read()Gravatar Dmitry Kasatkin 1-7/+3
2014-11-17ima: require signature based appraisalGravatar Dmitry Kasatkin 2-0/+13
2014-11-17integrity: provide a hook to load keys when rootfs is readyGravatar Dmitry Kasatkin 1-0/+11
2014-11-17ima: load x509 certificate from the kernelGravatar Dmitry Kasatkin 4-2/+44
2014-11-17integrity: provide a function to load x509 certificate from the kernelGravatar Dmitry Kasatkin 2-1/+37