aboutsummaryrefslogtreecommitdiff
path: root/security
AgeCommit message (Expand)AuthorFilesLines
2022-06-08KEYS: trusted: tpm2: Fix migratable logicGravatar David Safford 1-2/+2
2022-06-04Merge tag 'pull-18-rc1-work.mount' of git://git.kernel.org/pub/scm/linux/kern...Gravatar Linus Torvalds 1-0/+1
2022-05-25Merge tag 'linux-kselftest-kunit-5.19-rc1' of git://git.kernel.org/pub/scm/li...Gravatar Linus Torvalds 1-3/+3
2022-05-24Merge tag 'integrity-v5.19' of git://git.kernel.org/pub/scm/linux/kernel/git/...Gravatar Linus Torvalds 16-52/+395
2022-05-24Merge tag 'tpmdd-next-v5.19-rc1' of git://git.kernel.org/pub/scm/linux/kernel...Gravatar Linus Torvalds 6-43/+174
2022-05-24Merge tag 'Smack-for-5.19' of https://github.com/cschaufler/smack-nextGravatar Linus Torvalds 1-1/+0
2022-05-24Merge tag 'landlock-5.19-rc1' of git://git.kernel.org/pub/scm/linux/kernel/gi...Gravatar Linus Torvalds 14-286/+848
2022-05-24Merge tag 'selinux-pr-20220523' of git://git.kernel.org/pub/scm/linux/kernel/...Gravatar Linus Torvalds 21-81/+93
2022-05-24Merge tag 'kernel-hardening-v5.19-rc1' of git://git.kernel.org/pub/scm/linux/...Gravatar Linus Torvalds 5-58/+115
2022-05-24lockdown: also lock down previous kgdb useGravatar Daniel Thompson 1-0/+2
2022-05-23smack: Remove redundant assignmentsGravatar Michal Orzel 1-1/+0
2022-05-23KEYS: trusted: Introduce support for NXP CAAM-based trusted keysGravatar Ahmad Fatoum 4-2/+97
2022-05-23KEYS: trusted: allow use of kernel RNG for key materialGravatar Ahmad Fatoum 1-1/+34
2022-05-23KEYS: trusted: allow use of TEE as backend without TCG_TPM supportGravatar Ahmad Fatoum 4-17/+42
2022-05-23certs: Factor out the blacklist hash creationGravatar Mickaël Salaün 1-24/+2
2022-05-23landlock: Add support for file reparenting with LANDLOCK_ACCESS_FS_REFERGravatar Mickaël Salaün 3-76/+528
2022-05-23LSM: Remove double path_rename hook calls for RENAME_EXCHANGEGravatar Mickaël Salaün 4-15/+46
2022-05-23landlock: Move filesystem helpers and add a new oneGravatar Mickaël Salaün 1-41/+46
2022-05-23landlock: Fix same-layer rule unionsGravatar Mickaël Salaün 2-26/+54
2022-05-23landlock: Create find_rule() from unmask_layers()Gravatar Mickaël Salaün 1-13/+28
2022-05-23landlock: Reduce the maximum number of layers to 16Gravatar Mickaël Salaün 3-11/+12
2022-05-23landlock: Define access_mask_t to enforce a consistent access mask sizeGravatar Mickaël Salaün 5-15/+30
2022-05-23landlock: Change landlock_restrict_self(2) check orderingGravatar Mickaël Salaün 1-4/+4
2022-05-23landlock: Change landlock_add_rule(2) argument check orderingGravatar Mickaël Salaün 1-9/+13
2022-05-23landlock: Fix landlock_add_rule(2) documentationGravatar Mickaël Salaün 1-4/+3
2022-05-19move mount-related externs from fs.h to mount.hGravatar Al Viro 1-0/+1
2022-05-17selinux: fix bad cleanup on error in hashtab_duplicate()Gravatar Ondrej Mosnacek 1-1/+2
2022-05-16loadpin: stop using bdevnameGravatar Christoph Hellwig 1-4/+1
2022-05-16big_keys: Use struct for internal payloadGravatar Kees Cook 1-37/+36
2022-05-16integrity: Fix sparse warnings in keyring_handlerGravatar Stefan Berger 1-3/+3
2022-05-16evm: Clean up some variablesGravatar Stefan Berger 2-4/+1
2022-05-16evm: Return INTEGRITY_PASS for enum integrity_status value '0'Gravatar Stefan Berger 1-1/+1
2022-05-15efi: Do not import certificates from UEFI Secure Boot for T2 MacsGravatar Aditya Garg 2-0/+41
2022-05-13security: declare member holding string literal constGravatar Christian Göttsche 1-1/+1
2022-05-09landlock: Format with clang-formatGravatar Mickaël Salaün 10-136/+142
2022-05-09landlock: Add clang-format exceptionsGravatar Mickaël Salaün 2-0/+6
2022-05-08randstruct: Enable Clang supportGravatar Kees Cook 1-2/+12
2022-05-08randstruct: Move seed generation into scripts/basic/Gravatar Kees Cook 1-4/+5
2022-05-08randstruct: Reorganize Kconfigs and attribute macrosGravatar Kees Cook 1-0/+62
2022-05-05ima: support fs-verity file digest based version 3 signaturesGravatar Mimi Zohar 5-16/+177
2022-05-05ima: permit fsverity's file digests in the IMA measurement listGravatar Mimi Zohar 5-8/+90
2022-05-05ima: define a new template field named 'd-ngv2' and templatesGravatar Mimi Zohar 3-11/+73
2022-05-03selinux: log anon inode class nameGravatar Christian Göttsche 2-2/+5
2022-05-03selinux: declare data arrays constGravatar Christian Göttsche 9-26/+24
2022-05-03selinux: fix indentation level of mls_ops blockGravatar Christian Göttsche 1-21/+21
2022-05-03selinux: include necessary headers in headersGravatar Christian Göttsche 6-1/+12
2022-05-03selinux: avoid extra semicolonGravatar Christian Göttsche 1-9/+9
2022-05-03selinux: update parameter documentationGravatar Christian Göttsche 2-1/+2
2022-05-03selinux: resolve checkpatch errorsGravatar Christian Göttsche 3-18/+9
2022-05-01ima: use IMA default hash algorithm for integrity violationsGravatar Mimi Zohar 1-1/+1