summaryrefslogtreecommitdiffstats
path: root/security
Commit message (Expand)AuthorAgeFilesLines
* ima: extend "mask" policy matching supportMimi Zohar2015-06-161-5/+15
* ima: add support for new "euid" policy conditionMimi Zohar2015-06-161-4/+23
* ima: fix ima_show_template_data_ascii()Mimi Zohar2015-06-163-4/+5
* Merge branch 'smack-for-4.2-stacked' of https://github.com/cschaufler/smack-n...James Morris2015-06-131-7/+9
|\
| * Smack: freeing an error pointer in smk_write_revoke_subj()Dan Carpenter2015-06-121-7/+9
* | selinux: fix setting of security labels on NFSJ. Bruce Fields2015-06-051-0/+1
* | selinux: Remove unused permission definitionsStephen Smalley2015-06-041-14/+8Star
* | selinux: enable genfscon labeling for sysfs and pstore filesStephen Smalley2015-06-041-1/+3
* | selinux: enable per-file labeling for debugfs files.Stephen Smalley2015-06-042-22/+22
* | selinux: update netlink socket classesStephen Smalley2015-06-042-10/+32
* | signals: don't abuse __flush_signals() in selinux_bprm_committed_creds()Oleg Nesterov2015-06-041-2/+4
* | selinux: Print 'sclass' as string when unrecognized netlink message occursMarek Milkovic2015-06-041-2/+3
* | Merge branch 'smack-for-4.2-stacked' of https://github.com/cschaufler/smack-n...James Morris2015-06-034-186/+314
|\|
| * Smack: allow multiple labels in onlycapRafal Krypa2015-06-023-69/+160
| * Smack: fix seq operations in smackfsRafal Krypa2015-06-021-30/+22Star
| * smack: pass error code through pointersLukasz Pawelczyk2015-05-153-97/+139
| * Smack: ignore private inode for smack_file_receiveSeung-Woo Kim2015-05-151-0/+3
* | ima: pass iint to ima_add_violation()Roberto Sassu2015-05-215-9/+13
* | ima: wrap event related data to the new ima_event_data structureRoberto Sassu2015-05-215-79/+61Star
* | integrity: add validity checks for 'path' parameterDmitry Kasatkin2015-05-213-2/+5
* | evm: fix potential race when removing xattrsDmitry Kasatkin2015-05-211-4/+3Star
* | evm: labeling pseudo filesystems exceptionMimi Zohar2015-05-211-0/+11
* | ima: remove definition of IMA_X509_PATHDmitry Kasatkin2015-05-211-7/+1Star
* | ima: limit file hash setting by user to fix and log modesDmitry Kasatkin2015-05-211-2/+6
* | ima: do not measure or appraise the NSFS filesystemMimi Zohar2015-05-211-0/+2
* | ima: skip measurement of cgroupfs files and update documentationRoberto Sassu2015-05-211-0/+2
* | ima: cleanup ima_init_policy() a littleDan Carpenter2015-05-131-10/+6Star
|/
* LSM: Remove unused capability.cCasey Schaufler2015-05-121-1158/+0Star
* LSM: Switch to lists of hooksCasey Schaufler2015-05-1211-321/+570
* LSM: Add security module hook list headsCasey Schaufler2015-05-125-402/+406
* LSM: Introduce security hook calling MacrosCasey Schaufler2015-05-121-207/+226
* LSM: Split security.hCasey Schaufler2015-05-127-7/+7
* Merge branch 'for-linus' of git://git.kernel.org/pub/scm/linux/kernel/git/vir...Linus Torvalds2015-04-2716-117/+117
|\
| * VFS: security/: d_inode() annotationsDavid Howells2015-04-154-12/+12
| * VFS: security/: d_backing_inode() annotationsDavid Howells2015-04-1512-105/+105
| * Merge branch 'for-davem' into for-nextAl Viro2015-04-125-44/+12Star
| |\
* | | tomoyo: reduce mmap_sem hold for mm->exe_fileDavidlohr Bueso2015-04-171-5/+8
* | | Merge branch 'akpm' (patches from Andrew)Linus Torvalds2015-04-161-0/+1
|\ \ \
| * | | kernel: conditionally support non-root users, groups and capabilitiesIulia Manda2015-04-161-0/+1
* | | | Merge branch 'next' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/...Linus Torvalds2015-04-1516-115/+324
|\ \ \ \ | |/ / / |/| | |
| * | | lsm: copy comm before calling audit_log to avoid race in string printingRichard Guy Briggs2015-04-151-6/+9
| * | | Merge branch 'tomoyo-cleanup' of git://git.kernel.org/pub/scm/linux/kernel/gi...James Morris2015-04-134-45/+15Star
| |\ \ \
| | * | | tomoyo: Do not generate empty policy filesMichal Marek2015-04-073-29/+5Star
| | * | | tomoyo: Use if_changed when generating builtin-policy.hMichal Marek2015-04-071-18/+11Star
| | * | | tomoyo: Use bin2c to generate builtin-policy.hMichal Marek2015-04-072-10/+11
| * | | | selinux: increase avtab max bucketsStephen Smalley2015-04-071-1/+1
| * | | | selinux: Use a better hash function for avtabJohn Brooks2015-04-072-5/+38
| * | | | selinux: convert avtab hash table to flex_arrayStephen Smalley2015-04-072-13/+22
| * | | | selinux: reconcile security_netlbl_secattr_to_sid() and mls_import_netlbl_cat()Paul Moore2015-04-072-12/+4Star
| * | | | selinux: remove unnecessary pointer reassignmentJeff Vander Stoep2015-04-071-4/+2Star