aboutsummaryrefslogtreecommitdiff
path: root/security
AgeCommit message (Expand)AuthorFilesLines
2021-03-24apparmor:match_mn() - constify devpath argumentGravatar Al Viro 1-2/+2
2021-03-24ima: Fix the error code for restoring the PCR valueGravatar Li Huafei 1-2/+2
2021-03-22smack: differentiate between subjective and objective task credentialsGravatar Paul Moore 2-14/+44
2021-03-22selinux: clarify task subjective and objective credentialsGravatar Paul Moore 1-39/+73
2021-03-22lsm: separate security_task_getsecid() into subjective and objective variantsGravatar Paul Moore 6-14/+24
2021-03-22ima: without an IMA policy loaded, return quicklyGravatar Mimi Zohar 1-0/+6
2021-03-22integrity: double check iint_cache was initializedGravatar Mimi Zohar 1-0/+8
2021-03-22lsm,selinux: add new hook to compare new mount to an existing mountGravatar Olga Kornievskaia 2-0/+63
2021-03-22Merge tag 'selinux-pr-20210322' of git://git.kernel.org/pub/scm/linux/kernel/...Gravatar Linus Torvalds 3-41/+59
2021-03-18selinuxfs: unify policy load error reportingGravatar Ondrej Mosnacek 1-6/+3
2021-03-18selinux: fix variable scope issue in live sidtab conversionGravatar Ondrej Mosnacek 3-33/+55
2021-03-18selinux: don't log MAC_POLICY_LOAD record on failed policy loadGravatar Ondrej Mosnacek 1-2/+1
2021-03-12Revert 95ebabde382c ("capabilities: Don't allow writing ambiguous v3 file cap...Gravatar Eric W. Biederman 1-11/+1
2021-03-11nexthop: Add netlink defines and enumerators for resilient NH groupsGravatar Ido Schimmel 1-1/+4
2021-03-11integrity: Load mokx variables into the blacklist keyringGravatar Eric Snowberg 1-2/+18
2021-03-11certs: Add EFI_CERT_X509_GUID support for dbx entriesGravatar Eric Snowberg 1-0/+11
2021-03-08selinux: fix misspellings using codespell toolGravatar Xiong Zhenwu 1-1/+1
2021-03-08selinux: fix misspellings using codespell toolGravatar Xiong Zhenwu 1-1/+1
2021-03-08selinux: measure state and policy capabilitiesGravatar Lakshmi Ramasubramanian 4-5/+96
2021-03-08selinux: Allow context mounts for unpriviliged overlayfsGravatar Vivek Goyal 1-1/+2
2021-03-08powerpc: Move arch independent ima kexec functions to drivers/of/kexec.cGravatar Lakshmi Ramasubramanian 2-4/+1
2021-03-08powerpc: Move ima buffer fields to struct kimageGravatar Lakshmi Ramasubramanian 1-6/+2
2021-02-23Merge tag 'keys-misc-20210126' of git://git.kernel.org/pub/scm/linux/kernel/g...Gravatar Linus Torvalds 8-21/+18
2021-02-23Merge tag 'idmapped-mounts-v5.12' of git://git.kernel.org/pub/scm/linux/kerne...Gravatar Linus Torvalds 18-115/+240
2021-02-22Merge branch 'userns-for-v5.12' of git://git.kernel.org/pub/scm/linux/kernel/...Gravatar Linus Torvalds 1-1/+11
2021-02-22Merge branch 'work.audit' of git://git.kernel.org/pub/scm/linux/kernel/git/vi...Gravatar Linus Torvalds 1-2/+3
2021-02-21Merge tag 'tpmdd-next-v5.12-rc1-v2' of git://git.kernel.org/pub/scm/linux/ker...Gravatar Linus Torvalds 2-8/+36
2021-02-21Merge tag 'Smack-for-v5.12' of git://github.com/cschaufler/smack-nextGravatar Linus Torvalds 1-2/+19
2021-02-21Merge tag 'integrity-v5.12' of git://git.kernel.org/pub/scm/linux/kernel/git/...Gravatar Linus Torvalds 16-52/+301
2021-02-21Merge tag 'selinux-pr-20210215' of git://git.kernel.org/pub/scm/linux/kernel/...Gravatar Linus Torvalds 16-51/+141
2021-02-21Merge tag 'tomoyo-pr-20210215' of git://git.osdn.net/gitroot/tomoyo/tomoyo-test1Gravatar Linus Torvalds 3-25/+25
2021-02-16KEYS: trusted: Reserve TPM for seal and unseal operationsGravatar Jarkko Sakkinen 1-4/+18
2021-02-16KEYS: trusted: Fix migratable=1 failingGravatar Jarkko Sakkinen 1-1/+1
2021-02-16KEYS: trusted: Fix incorrect handling of tpm_get_random()Gravatar Jarkko Sakkinen 1-3/+17
2021-02-12integrity: Make function integrity_add_key() staticGravatar Wei Yongjun 1-2/+2
2021-02-10Merge branch 'ima-kexec-fixes' into next-integrityGravatar Mimi Zohar 1-0/+3
2021-02-10ima: Free IMA measurement buffer after kexec syscallGravatar Lakshmi Ramasubramanian 1-0/+2
2021-02-10ima: Free IMA measurement buffer on errorGravatar Lakshmi Ramasubramanian 1-0/+1
2021-02-02smackfs: restrict bytes count in smackfs write functionsGravatar Sabyrzhan Tasbolatov 1-2/+19
2021-02-01tomoyo: recognize kernel threads correctlyGravatar Tetsuo Handa 1-1/+1
2021-02-01tomoyo: ignore data race while checking quotaGravatar Tetsuo Handa 3-24/+24
2021-01-28cap: fix conversions on getxattrGravatar Miklos Szeredi 1-24/+43
2021-01-26IMA: Measure kernel version in early bootGravatar Raphael Gianotti 1-0/+5
2021-01-24ima: handle idmapped mountsGravatar Christian Brauner 7-40/+68
2021-01-24apparmor: handle idmapped mountsGravatar Christian Brauner 3-10/+24
2021-01-24fs: make helpers idmap mount awareGravatar Christian Brauner 2-2/+3
2021-01-24commoncap: handle idmapped mountsGravatar Christian Brauner 4-37/+84
2021-01-24xattr: handle idmapped mountsGravatar Tycho Andersen 7-20/+24
2021-01-24acl: handle idmapped mountsGravatar Christian Brauner 1-7/+38
2021-01-24inode: make init and permission helpers idmapped mount awareGravatar Christian Brauner 1-2/+2