summaryrefslogtreecommitdiffstats
path: root/security/integrity/ima
Commit message (Expand)AuthorAgeFilesLines
* ima: open a new file instance if no read permissionsGoldwyn Rodrigues2018-10-101-20/+34
* ima: fix showing large 'violations' or 'runtime_measurements_count'Eric Biggers2018-10-101-3/+3
* security/integrity: constify some read-only dataEric Biggers2018-10-106-10/+13
* Merge branch 'next-integrity' of git://git.kernel.org/pub/scm/linux/kernel/gi...Linus Torvalds2018-08-162-3/+7
|\
| * ima: Differentiate auditing policy rules from "audit" actionsStefan Berger2018-07-181-2/+2
| * ima: Do not audit if CONFIG_INTEGRITY_AUDIT is not setStefan Berger2018-07-182-1/+6
| * ima: Use audit_log_format() rather than audit_log_string()Stefan Berger2018-07-181-2/+1Star
| * ima: Call audit_log_string() rather than logging it untrustedStefan Berger2018-07-181-1/+1
* | Merge branch 'next-tpm' of git://git.kernel.org/pub/scm/linux/kernel/git/jmor...Linus Torvalds2018-08-164-16/+10Star
|\ \
| * | ima: Get rid of ima_used_chip and use ima_tpm_chip != NULL insteadStefan Berger2018-07-284-8/+4Star
| * | ima: Use tpm_default_chip() and call TPM functions with a tpm_chipStefan Berger2018-07-284-9/+7Star
| |/
* | Merge branch 'next-general' of git://git.kernel.org/pub/scm/linux/kernel/git/...Linus Torvalds2018-08-154-17/+158
|\|
| * ima: based on policy warn about loading firmware (pre-allocated buffer)Mimi Zohar2018-07-161-0/+8
| * module: replace the existing LSM hook in init_moduleMimi Zohar2018-07-161-13/+10Star
| * ima: add build time policyMimi Zohar2018-07-162-3/+101
| * ima: based on policy require signed firmware (sysfs fallback)Mimi Zohar2018-07-161-1/+9
| * ima: based on policy require signed kexec kernel imagesMimi Zohar2018-07-163-0/+30
* | IMA: don't propagate opened through the entire thingAl Viro2018-07-123-12/+12
|/
* Merge branch 'next-integrity' of git://git.kernel.org/pub/scm/linux/kernel/gi...Linus Torvalds2018-06-086-41/+71
|\
| * IMA: use list_splice_tail_init_rcu() instead of its open coded variantPetko Manolov2018-05-311-15/+2Star
| * ima: use match_string() helperYisheng Xie2018-05-311-7/+4Star
| * ima: fix updating the ima_appraise flagMimi Zohar2018-05-221-9/+19
| * ima: based on policy verify firmware signatures (pre-allocated buffer)Mimi Zohar2018-05-221-0/+1
| * ima: define a new policy condition based on the filesystem nameMimi Zohar2018-05-221-1/+24
| * integrity: Add an integrity directory in securityfsMatthew Garrett2018-05-171-1/+8
| * ima: Remove unused variable ima_initializedPetr Vorel2018-05-172-6/+2Star
| * ima: Unify loggingPetr Vorel2018-05-173-2/+9
| * ima: Reflect correct permissions for policyPetr Vorel2018-05-171-0/+2
* | audit: use inline function to get audit contextRichard Guy Briggs2018-05-141-1/+1
|/
* ima: Fallback to the builtin hash algorithmPetr Vorel2018-03-252-0/+15
* ima: Add smackfs to the default appraise/measure listMartin Townsend2018-03-251-0/+2
* ima: Improvements in ima_appraise_measurement()Thiago Jung Bauermann2018-03-251-13/+22
* ima: Simplify ima_eventsig_init()Thiago Jung Bauermann2018-03-251-8/+3Star
* ima: drop vla in ima_audit_measurement()Tycho Andersen2018-03-251-6/+10
* ima: Fix Kconfig to select TPM 2.0 CRB interfaceJiandi An2018-03-251-0/+1
* ima: fail signature verification based on policyMimi Zohar2018-03-233-6/+13
* ima: clear IMA_HASHMimi Zohar2018-03-231-1/+1
* ima: re-evaluate files on privileged mounted filesystemsMimi Zohar2018-03-231-2/+11
* ima: fail file signature verification on non-init mounted filesystemsMimi Zohar2018-03-231-1/+14
* IMA: Support using new creds in appraisal policyMatthew Garrett2018-03-235-27/+70
* iversion: Rename make inode_cmp_iversion{+raw} to inode_eq_iversion{+raw}Goffredo Baroncelli2018-02-011-1/+1
* Merge branch 'next-tpm' of git://git.kernel.org/pub/scm/linux/kernel/git/jmor...Linus Torvalds2018-01-313-3/+3
|\
| * tpm: use struct tpm_chip for tpm_chip_find_get()Jarkko Sakkinen2018-01-083-3/+3
* | Merge branch 'next-integrity' of git://git.kernel.org/pub/scm/linux/kernel/gi...Linus Torvalds2018-01-315-56/+127
|\ \
| * | ima/policy: fix parsing of fsuuidMike Rapoport2018-01-181-1/+1
| * | ima: Use i_version only when filesystem supports itSascha Hauer2017-12-181-1/+2
| * | ima: log message to module appraisal errorBruno E. O. Meneguele2017-12-181-1/+3
| * | ima: pass filename to ima_rdwr_violation_check()Roberto Sassu2017-12-181-3/+3
| * | ima: Fix line continuation formatJoe Perches2017-12-181-6/+5Star
| * | ima: support new "hash" and "dont_hash" policy actionsMimi Zohar2017-12-184-10/+50