summaryrefslogtreecommitdiffstats
path: root/security
Commit message (Expand)AuthorAgeFilesLines
* ima: define is_ima_appraise_enabled()Mimi Zohar2017-06-211-0/+10
* ima: define Kconfig IMA_APPRAISE_BOOTPARAM optionMimi Zohar2017-06-212-0/+10
* ima: define a set of appraisal rules requiring file signaturesMimi Zohar2017-06-211-1/+25
* ima: extend the "ima_policy" boot command line to support multiple policiesMimi Zohar2017-06-211-5/+10
* Merge branch 'smack-for-4.13' of git://github.com/cschaufler/smack-next into ...James Morris2017-06-214-18/+31
|\
| * Smack: Use cap_capable in privilege checkCasey Schaufler2017-06-012-9/+12
| * Smack: Safer check for a socket in file_receiveCasey Schaufler2017-06-011-1/+1
| * smack: use pernet operations for hook registrationFlorian Westphal2017-06-011-8/+18
* | apparmor: export that basic profile namespaces are supportedJohn Johansen2017-06-111-0/+7
* | apparmor: add stacked domain labels interfaceJohn Johansen2017-06-112-0/+8
* | apparmor: add domain label stacking info to apparmorfsJohn Johansen2017-06-113-0/+39
* | apparmor: move change_profile mediation to using labelsJohn Johansen2017-06-111-68/+123
* | apparmor: move change_hat mediation to using labelsJohn Johansen2017-06-111-102/+201
* | apparmor: move exec domain mediation to using labelsJohn Johansen2017-06-112-259/+678
* | apparmor: support v7 transition format compatible with label_parseJohn Johansen2017-06-112-7/+15
* | apparmor: mediate files when they are receivedJohn Johansen2017-06-112-0/+7
* | apparmor: rework file permission to cache file access in file->ctxJohn Johansen2017-06-111-6/+76
* | apparmor: move path_link mediation to using labelsJohn Johansen2017-06-113-47/+59
* | apparmor: refactor path name lookup and permission checks around labelsJohn Johansen2017-06-113-45/+85
* | apparmor: update aa_audit_file() to use labelsJohn Johansen2017-06-113-9/+18
* | apparmor: move aa_file_perm() to use labelsJohn Johansen2017-06-113-37/+64
* | apparmor: allow ptrace checks to be finer grained than just capabilityJohn Johansen2017-06-113-0/+68
* | apparmor: move ptrace checks to using labelsJohn Johansen2017-06-115-80/+58Star
* | apparmor: add cross check permission helper macrosJohn Johansen2017-06-111-1/+41
* | apparmor: move resource checks to using labelsJohn Johansen2017-06-113-42/+80
* | apparmor: move capability checks to using labelsJohn Johansen2017-06-115-29/+58
* | apparmor: update query interface to support label queriesJohn Johansen2017-06-111-7/+39
* | apparmor: switch getprocattr to using label_print fns()John Johansen2017-06-113-37/+27Star
* | apparmor: switch from profiles to using labels on contextsJohn Johansen2017-06-1120-529/+686
* | apparmor: add the base fns() for domain labelsJohn Johansen2017-06-112-0/+2561
* | apparmor: revalidate files during execJohn Johansen2017-06-114-0/+81
* | apparmor: cleanup rename XXX_file_context() to XXX_file_ctx()John Johansen2017-06-112-11/+16
* | apparmor: convert aa_change_XXX bool parameters to flagsJohn Johansen2017-06-115-32/+29Star
* | apparmor: cleanup remove unused and not fully implemented profile renameJohn Johansen2017-06-111-37/+2Star
* | apparmor: refactor updating profiles to the newest parentJohn Johansen2017-06-111-4/+31
* | apparmor: share profile name on replacementJohn Johansen2017-06-113-9/+72
* | apparmor: convert to profile block critical sectionsJohn Johansen2017-06-118-56/+162
* | apparmor: move bprm_committing_creds/committed_creds to lsm.cJohn Johansen2017-06-113-32/+30Star
* | apparmor: fix display of ns nameJohn Johansen2017-06-111-1/+1
* | apparmor: fix apparmor_query dataJohn Johansen2017-06-111-2/+6
* | apparmor: fix policy load/remove semanticsJohn Johansen2017-06-112-15/+13Star
* | apparmor: add namespace lookup fns()John Johansen2017-06-113-4/+73
* | apparmor: cleanup __find_child()John Johansen2017-06-111-8/+8
* | apparmor: provide information about path buffer size at bootJohn Johansen2017-06-111-2/+9
* | apparmor: add profile permission query abilityJohn Johansen2017-06-111-1/+102
* | apparmor: switch from file_perms to aa_permsJohn Johansen2017-06-115-48/+29Star
* | apparmor: add gerneric permissions struct and support fnsJohn Johansen2017-06-114-17/+153
* | apparmor: add fn to test if profile supports a given mediation classJohn Johansen2017-06-111-0/+10
* | apparmor: speed up transactional queriesJohn Johansen2017-06-111-11/+114
* | apparmor: add label data availability to the feature setJohn Johansen2017-06-111-0/+10