aboutsummaryrefslogtreecommitdiff
path: root/security
AgeCommit message (Expand)AuthorFilesLines
2019-07-07security/commoncap: Use xattr security prefix lenGravatar Carmeli Tamir 1-2/+2
2019-07-04vfs: Convert smackfs to use the new mount APIGravatar David Howells 1-12/+22
2019-07-04vfs: Convert selinuxfs to use the new mount APIGravatar David Howells 1-5/+15
2019-07-04vfs: Convert securityfs to use the new mount APIGravatar David Howells 1-6/+15
2019-07-04vfs: Convert apparmorfs to use the new mount APIGravatar David Howells 1-5/+15
2019-07-03keys: Provide KEYCTL_GRANT_PERMISSIONGravatar David Howells 4-1/+133
2019-07-01selinux: format all invalid context as untrustedGravatar Richard Guy Briggs 1-10/+19
2019-06-30integrity: Introduce struct evm_xattrGravatar Thiago Jung Bauermann 3-7/+14
2019-06-30ima: Update MAX_TEMPLATE_NAME_LEN to fit largest reasonable definitionGravatar Thiago Jung Bauermann 1-1/+7
2019-06-30IMA: Define a new template field bufGravatar Prakhar Srivastava 5-1/+33
2019-06-27keys: Replace uid/gid/perm permissions checking with an ACLGravatar David Howells 21-186/+496
2019-06-27keys: Pass the network namespace into request_key mechanismGravatar David Howells 4-17/+36
2019-06-26keys: Network namespace domain tagGravatar David Howells 1-1/+6
2019-06-26keys: Garbage collect keys for which the domain has been removedGravatar David Howells 2-1/+17
2019-06-26keys: Include target namespace in match criteriaGravatar David Howells 5-4/+39
2019-06-26keys: Move the user and user-session keyrings to the user_namespaceGravatar David Howells 5-104/+187
2019-06-26keys: Namespace keyring namesGravatar David Howells 2-57/+45
2019-06-26keys: Add a 'recurse' flag for keyring searchesGravatar David Howells 8-9/+22
2019-06-26keys: Cache the hash value to avoid lots of recalculationGravatar David Howells 3-16/+22
2019-06-26keys: Simplify key description managementGravatar David Howells 4-49/+30
2019-06-26keys: Kill off request_key_async{,_with_auxdata}Gravatar David Howells 1-50/+0
2019-06-24IMA: Define a new hook to measure the kexec boot command line argumentsGravatar Prakhar Srivastava 4-0/+81
2019-06-22Merge git://git.kernel.org/pub/scm/linux/kernel/git/davem/netGravatar David S. Miller 17-71/+65
2019-06-21Merge tag 'spdx-5.2-rc6' of git://git.kernel.org/pub/scm/linux/kernel/git/gre...Gravatar Linus Torvalds 15-61/+15
2019-06-19IMA: support for per policy rule template formatsGravatar Matthew Garrett 7-27/+76
2019-06-19keys: Cache result of request_key*() temporarily in task_structGravatar David Howells 2-0/+55
2019-06-19keys: Provide request_key_rcu()Gravatar David Howells 1-0/+44
2019-06-19keys: Move the RCU locks outwards from the keyring search functionsGravatar David Howells 6-60/+75
2019-06-19keys: Invalidate used request_key authentication keysGravatar David Howells 2-3/+3
2019-06-19keys: Fix request_key() lack of Link perm check on found keyGravatar David Howells 1-0/+10
2019-06-19treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 500Gravatar Thomas Gleixner 15-61/+15
2019-06-19keys: Add capability-checking keyctl functionGravatar David Howells 3-0/+40
2019-06-18apparmor: reset pos on failure to unpack for various functionsGravatar Mike Salvatore 1-8/+39
2019-06-18apparmor: enforce nullbyte at end of tag stringGravatar Jann Horn 1-1/+1
2019-06-18apparmor: fix PROFILE_MEDIATES for untrusted inputGravatar John Johansen 1-1/+10
2019-06-17Merge git://git.kernel.org/pub/scm/linux/kernel/git/davem/netGravatar David S. Miller 93-484/+133
2019-06-17integrity: Fix __integrity_init_keyring() section mismatchGravatar Geert Uytterhoeven 1-2/+3
2019-06-17locking/lockdep: Rename lockdep_assert_held_exclusive() -> lockdep_assert_hel...Gravatar Nikolay Borisov 1-4/+4
2019-06-14Smack: Restore the smackfsdef mount option and add missing prefixesGravatar Casey Schaufler 1-5/+7
2019-06-14docs: cgroup-v1: convert docs to ReST and rename to *.rstGravatar Mauro Carvalho Chehab 1-1/+1
2019-06-14Merge tag 'v5.2-rc4' into mauroGravatar Jonathan Corbet 131-616/+157
2019-06-14ima: Use designated initializers for struct ima_event_dataGravatar Thiago Jung Bauermann 2-6/+11
2019-06-14ima: use the lsm policy update notifierGravatar Janne Karhunen 3-20/+106
2019-06-14LSM: switch to blocking policy update notifiersGravatar Janne Karhunen 3-12/+15
2019-06-14x86/ima: fix the Kconfig dependency for IMA_ARCH_POLICYGravatar Nayna Jain 1-1/+2
2019-06-14ima: Make arch_policy_entry staticGravatar YueHaibing 1-1/+1
2019-06-12Merge tag 'selinux-pr-20190612' of git://git.kernel.org/pub/scm/linux/kernel/...Gravatar Linus Torvalds 2-13/+36
2019-06-12selinux: fix empty write to keycreate fileGravatar Ondrej Mosnacek 1-5/+6
2019-06-12selinux: fix a missing-check bug in selinux_sb_eat_lsm_opts()Gravatar Gen Zhang 1-6/+14
2019-06-12selinux: fix a missing-check bug in selinux_add_mnt_opt( )Gravatar Gen Zhang 1-5/+14