aboutsummaryrefslogtreecommitdiff
path: root/security
AgeCommit message (Expand)AuthorFilesLines
2008-04-18security: enhance DEFAULT_MMAP_MIN_ADDR descriptionGravatar maximilian attems 1-4/+6
2008-04-18SELinux: add netport.[ch]Gravatar James Morris 2-0/+317
2008-04-18SELinux: Add network port SID cacheGravatar Paul Moore 5-21/+17
2008-04-18SELinux: turn mount options strings into definesGravatar Eric Paris 2-8/+13
2008-04-18selinux/ss/services.c should #include <linux/selinux.h>Gravatar Adrian Bunk 1-0/+1
2008-04-18selinux: introduce permissive typesGravatar Eric Paris 6-6/+48
2008-04-18selinux: remove ptrace_sidGravatar Roland McGrath 2-25/+47
2008-04-18SELinux: requesting no permissions in avc_has_perm_noaudit is a BUG()Gravatar Eric Paris 1-1/+3
2008-04-18security: code cleanupGravatar Andrew Morton 1-1/+1
2008-04-18security: replace remaining __FUNCTION__ occurrencesGravatar Harvey Harrison 8-26/+26
2008-04-18SELinux: create new open permissionGravatar Eric Paris 6-2/+47
2008-04-18selinux: selinux/netlabel.c should #include "netlabel.h"Gravatar Adrian Bunk 1-0/+1
2008-04-18SELinux: unify printk messagesGravatar James Morris 5-76/+76
2008-04-18SELinux: remove unused backpointers from security objectsGravatar James Morris 2-14/+0
2008-04-18SELinux: Correct the NetLabel locking for the sk_security_structGravatar Paul Moore 4-87/+15
2008-04-10SELinux: don't BUG if fs reuses a superblockGravatar Eric Paris 1-4/+4
2008-04-08SELinux: more GFP_NOFS fixups to prevent selinux from re-entering the fs codeGravatar Stephen Smalley 3-9/+13
2008-04-04selinux: prevent rentry into the FSGravatar Josef Bacik 1-2/+2
2008-04-02selinux: handle files opened with flags 3 by checking ioctl permissionGravatar Stephen Smalley 1-0/+6
2008-03-24smackfs: remove redundant lock, fix open(,O_RDWR)Gravatar Ahmed S. Darwish 1-33/+2
2008-03-20file capabilities: remove cap_task_kill()Gravatar Serge Hallyn 3-46/+0
2008-03-19smack: do not dereference NULL ipc objectGravatar Ahmed S. Darwish 1-3/+6
2008-03-18make selinux_parse_opts_str() staticGravatar Adrian Bunk 1-1/+2
2008-03-13smackfs: do not trust `count' in inodes write()sGravatar Ahmed S. Darwish 2-19/+20
2008-03-06LSM/SELinux: Interfaces to allow FS to control mount optionsGravatar Eric Paris 5-107/+128
2008-02-23Smack: update for file capabilitiesGravatar Casey Schaufler 1-13/+74
2008-02-23file capabilities: simplify signal checkGravatar Serge E. Hallyn 1-1/+1
2008-02-19Smack: unlabeled outgoing ambient packetsGravatar Casey Schaufler 2-23/+74
2008-02-14d_path: Use struct path in struct avc_audit_dataGravatar Jan Blunck 3-25/+24
2008-02-14Embed a struct path into struct nameidata instead of nd->{dentry,mnt}Gravatar Jan Blunck 2-3/+3
2008-02-13Smack: check for 'struct socket' with NULL skGravatar Ahmed S. Darwish 1-4/+5
2008-02-11selinux: support 64-bit capabilitiesGravatar Stephen Smalley 5-2/+27
2008-02-07Convert ERR_PTR(PTR_ERR(p)) instances to ERR_CAST(p)Gravatar David Howells 4-4/+4
2008-02-06SELinux: Remove security_get_policycaps()Gravatar Paul Moore 2-34/+0
2008-02-06security: allow Kconfig to set default mmap_min_addr protectionGravatar Eric Paris 2-1/+21
2008-02-05Smack: Simplified Mandatory Access Control KernelGravatar Casey Schaufler 8-0/+4095
2008-02-05capabilities: introduce per-process capability bounding setGravatar Serge E. Hallyn 1-17/+27
2008-02-05Add 64-bit capability support to the kernelGravatar Andrew Morgan 2-36/+68
2008-02-05revert "capabilities: clean up file capability reading"Gravatar Andrew Morton 1-15/+8
2008-02-05VFS/Security: Rework inode_getsecurity and callers to return resulting bufferGravatar David P. Quigley 3-31/+18
2008-02-01[AUDIT] add session id to audit messagesGravatar Eric Paris 2-9/+13
2008-02-01[PATCH] switch audit_get_loginuid() to task_struct *Gravatar Al Viro 2-4/+4
2008-01-31[SELinux]: Fix double free in selinux_netlbl_sock_setsid()Gravatar Paul Moore 1-1/+0
2008-01-30security: compile capabilities by defaultGravatar sergeh@us.ibm.com 1-0/+1
2008-01-30selinux: make selinux_set_mnt_opts() staticGravatar Adrian Bunk 1-2/+2
2008-01-30SELinux: Add warning messages on network denial due to errorGravatar Paul Moore 3-8/+40
2008-01-30SELinux: Add network ingress and egress control permission checksGravatar Paul Moore 1-122/+280
2008-01-30SELinux: Allow NetLabel to directly cache SIDsGravatar Paul Moore 5-134/+55
2008-01-30SELinux: Enable dynamic enable/disable of the network access checksGravatar Paul Moore 4-13/+83
2008-01-30SELinux: Better integration between peer labeling subsystemsGravatar Paul Moore 6-100/+208