Show patches with: Archived = No       |   309 patches
« 1 2 3 4 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
[-next] audit: correct audit_filter_inodes() definition [-next] audit: correct audit_filter_inodes() definition - - - --- 2023-07-21 xiujianfeng pcmoore Accepted
[-next] audit: Include securiry.h unconditionally [-next] audit: Include securiry.h unconditionally - - - --- 2023-07-20 xiujianfeng pcmoore Accepted
[-next] audit: let the caller of audit_get_sk() ensure that net is valid [-next] audit: let the caller of audit_get_sk() ensure that net is valid - - - --- 2023-03-17 Gaosheng Cui pcmoore Rejected
[-next] audit: refactor audit_log_cap to improve performance [-next] audit: refactor audit_log_cap to improve performance - - - --- 2023-03-07 Gaosheng Cui pcmoore Rejected
[-next] audit: remove out-of-date comment in auditd_reset() [-next] audit: remove out-of-date comment in auditd_reset() - - - --- 2023-08-04 Xiu Jianfeng pcmoore Rejected
[01/14] mm: percpu: unhide pcpu_embed_first_chunk prototype mm/init/kernel: missing-prototypes warnings - - - --- 2023-05-17 Arnd Bergmann pcmoore Handled Elsewhere
[01/16] mnt_idmapping: split out core vfs[ug]id_t definitions into vfsid.h fs: use type-safe uid representation for filesystem capabilities - - - --- 2023-11-29 Seth Forshee Handled Elsewhere
[02/14] mm: page_poison: always declare __kernel_map_pages() function mm/init/kernel: missing-prototypes warnings - - - --- 2023-05-17 Arnd Bergmann pcmoore Handled Elsewhere
[02/16] mnt_idmapping: include cred.h fs: use type-safe uid representation for filesystem capabilities - - - --- 2023-11-29 Seth Forshee Handled Elsewhere
[03/14] mm: sparse: mark populate_section_memmap() static mm/init/kernel: missing-prototypes warnings - - - --- 2023-05-17 Arnd Bergmann pcmoore Handled Elsewhere
[03/16] capability: rename cpu_vfs_cap_data to vfs_caps fs: use type-safe uid representation for filesystem capabilities 1 1 - --- 2023-11-29 Seth Forshee Handled Elsewhere
[04/14] audit: avoid missing-prototype warnings mm/init/kernel: missing-prototypes warnings - - - --- 2023-05-17 Arnd Bergmann pcmoore Accepted
[04/16] capability: use vfsuid_t for vfs_caps rootids fs: use type-safe uid representation for filesystem capabilities 1 - - --- 2023-11-29 Seth Forshee Handled Elsewhere
[05/14] lib: devmem_is_allowed: include linux/io.h mm/init/kernel: missing-prototypes warnings - - - --- 2023-05-17 Arnd Bergmann pcmoore Handled Elsewhere
[05/16] capability: provide helpers for converting between xattrs and vfs_caps fs: use type-safe uid representation for filesystem capabilities - - - --- 2023-11-29 Seth Forshee Handled Elsewhere
[06/14] locking: add lockevent_read() prototype mm/init/kernel: missing-prototypes warnings - - - --- 2023-05-17 Arnd Bergmann pcmoore Handled Elsewhere
[06/16] capability: provide a helper for converting vfs_caps to xattr for userspace fs: use type-safe uid representation for filesystem capabilities - - - --- 2023-11-29 Seth Forshee Handled Elsewhere
[07/14] panic: hide unused global functions mm/init/kernel: missing-prototypes warnings - - - --- 2023-05-17 Arnd Bergmann pcmoore Handled Elsewhere
[07/16] fs: add inode operations to get/set/remove fscaps fs: use type-safe uid representation for filesystem capabilities - 1 - --- 2023-11-29 Seth Forshee Handled Elsewhere
[08/14] panic: make function declarations visible mm/init/kernel: missing-prototypes warnings - - - --- 2023-05-17 Arnd Bergmann pcmoore Handled Elsewhere
[08/16] fs: add vfs_get_fscaps() fs: use type-safe uid representation for filesystem capabilities - - - --- 2023-11-29 Seth Forshee Handled Elsewhere
[09/14] kunit: include debugfs header file mm/init/kernel: missing-prototypes warnings - 1 - --- 2023-05-17 Arnd Bergmann pcmoore Handled Elsewhere
[09/16] fs: add vfs_set_fscaps() fs: use type-safe uid representation for filesystem capabilities - - - --- 2023-11-29 Seth Forshee Handled Elsewhere
[1/1] audit: remove redundant 'fsnotify_put_mark' [1/1] audit: remove redundant 'fsnotify_put_mark' - - - --- 2023-09-07 Wu Bo pcmoore Rejected
[1/2] audit: Vary struct audit_entry alignment audit: Further reduce syscall latency - - - --- 2023-12-12 Haakon Bugge pcmoore Rejected
[1/4] audit: refactor queue full checks audit: refactor and fix for potential deadlock - - - --- 2023-05-08 Eiichi Tsukata pcmoore Superseded
[10/14] suspend: add a arch_resume_nosmt() prototype mm/init/kernel: missing-prototypes warnings 1 - - --- 2023-05-17 Arnd Bergmann pcmoore Handled Elsewhere
[10/16] fs: add vfs_remove_fscaps() fs: use type-safe uid representation for filesystem capabilities - - - --- 2023-11-29 Seth Forshee Handled Elsewhere
[11/14] init: consolidate prototypes in linux/init.h mm/init/kernel: missing-prototypes warnings 1 1 - --- 2023-05-17 Arnd Bergmann pcmoore Handled Elsewhere
[11/16] ovl: add fscaps handlers fs: use type-safe uid representation for filesystem capabilities - - - --- 2023-11-29 Seth Forshee Handled Elsewhere
[12/14] init: move cifs_root_data() prototype into linux/mount.h mm/init/kernel: missing-prototypes warnings - - - --- 2023-05-17 Arnd Bergmann pcmoore Handled Elsewhere
[12/16] ovl: use vfs_{get,set}_fscaps() for copy-up fs: use type-safe uid representation for filesystem capabilities - 1 - --- 2023-11-29 Seth Forshee Handled Elsewhere
[13/14] thread_info: move function declarations to linux/thread_info.h mm/init/kernel: missing-prototypes warnings 1 - - --- 2023-05-17 Arnd Bergmann pcmoore Handled Elsewhere
[13/16] fs: use vfs interfaces for capabilities xattrs fs: use type-safe uid representation for filesystem capabilities - - - --- 2023-11-29 Seth Forshee Handled Elsewhere
[14/14] time_namespace: always provide arch_get_vdso_data() prototype for vdso mm/init/kernel: missing-prototypes warnings - - - --- 2023-05-17 Arnd Bergmann pcmoore Handled Elsewhere
[14/16] commoncap: remove cap_inode_getsecurity() fs: use type-safe uid representation for filesystem capabilities 1 - - --- 2023-11-29 Seth Forshee Handled Elsewhere
[15/16] commoncap: use vfs fscaps interfaces for killpriv checks fs: use type-safe uid representation for filesystem capabilities - - - --- 2023-11-29 Seth Forshee Handled Elsewhere
[16/16] vfs: return -EOPNOTSUPP for fscaps from vfs_*xattr() fs: use type-safe uid representation for filesystem capabilities - - - --- 2023-11-29 Seth Forshee Handled Elsewhere
[2/2] audit: Apply codegen optimizations Untitled series #809161 - - - --- 2023-12-12 Haakon Bugge pcmoore Rejected
[2/2] audit: Apply special optimizations audit: Further reduce syscall latency - - - --- 2023-12-12 Haakon Bugge pcmoore Not Applicable
[2/4] audit: account backlog waiting time in audit_receive() audit: refactor and fix for potential deadlock - - - --- 2023-05-08 Eiichi Tsukata pcmoore Superseded
[3/4] audit: convert DECLARE_WAITQUEUE to DEFINE_WAIT audit: refactor and fix for potential deadlock - - - --- 2023-05-08 Eiichi Tsukata pcmoore Superseded
[4/4] audit: check if queue is full after prepare_to_wait_exclusive() audit: refactor and fix for potential deadlock - - - --- 2023-05-08 Eiichi Tsukata pcmoore Superseded
[GIT,PULL] Audit patches for v6.5 [GIT,PULL] Audit patches for v6.5 - - - --- 2023-06-26 Paul Moore pcmoore Accepted
[GIT,PULL] Audit patches for v6.6 [GIT,PULL] Audit patches for v6.6 - - - --- 2023-08-29 Paul Moore pcmoore Accepted
[GIT,PULL] audit/audit-pr-20231030 [GIT,PULL] audit/audit-pr-20231030 - - - --- 2023-10-31 Paul Moore pcmoore Accepted
[GIT,PULL] audit/audit-pr-20231116 [GIT,PULL] audit/audit-pr-20231116 - - - --- 2023-11-16 Paul Moore pcmoore Accepted
[GIT,PULL] audit/audit-pr-20240105 [GIT,PULL] audit/audit-pr-20240105 - - - --- 2024-01-05 Paul Moore pcmoore Accepted
[GIT,PULL] audit/audit-pr-20240312 [GIT,PULL] audit/audit-pr-20240312 - - - --- 2024-03-12 Paul Moore pcmoore Accepted
[nf-next,RFC,2/2] selftests: netfilter: Test nf_tables audit logging nf_tables: follow-up on audit fix, propose kselftest - - - --- 2023-09-08 Phil Sutter Superseded
[nf,1/2] netfilter: nf_tables: Fix entries val in rule reset audit log nf_tables: follow-up on audit fix, propose kselftest - - - --- 2023-09-08 Phil Sutter pcmoore Superseded
[nf,1/3] selftests: netfilter: Extend nft_audit.sh Review nf_tables audit logging - - - --- 2023-09-23 Phil Sutter Handled Elsewhere
[nf,2/3] netfilter: nf_tables: Deduplicate nft_register_obj audit logs Review nf_tables audit logging 1 1 - --- 2023-09-23 Phil Sutter Handled Elsewhere
[nf,3/3] netfilter: nf_tables: Audit log object reset once per table Review nf_tables audit logging 1 1 - --- 2023-09-23 Phil Sutter Handled Elsewhere
[nf,v2] netfilter: nf_tables: audit log object reset once per table [nf,v2] netfilter: nf_tables: audit log object reset once per table 1 1 - --- 2023-10-11 Phil Sutter pcmoore Handled Elsewhere
[nf,v2] netfilter: nf_tables: Fix entries val in rule reset audit log [nf,v2] netfilter: nf_tables: Fix entries val in rule reset audit log - - - --- 2023-09-08 Phil Sutter Superseded
[nf,v3,1/2] netfilter: nf_tables: Fix entries val in rule reset audit log nf_tables: follow-up on audit fix, add selftest - 1 - --- 2023-09-13 Phil Sutter Handled Elsewhere
[nf,v3,2/2] selftests: netfilter: Test nf_tables audit logging nf_tables: follow-up on audit fix, add selftest - - - --- 2023-09-13 Phil Sutter Handled Elsewhere
[RFC,v1,1/7] lsm: Add audit_log_lsm_data() helper Landlock audit support 1 - - --- 2023-09-21 Mickaël Salaün pcmoore RFC
[RFC,v1,2/7] landlock: Factor out check_access_path() Landlock audit support - - - --- 2023-09-21 Mickaël Salaün pcmoore RFC
[RFC,v1,3/7] landlock: Log ruleset creation and release Landlock audit support - - - --- 2023-09-21 Mickaël Salaün pcmoore RFC
[RFC,v1,4/7] landlock: Log domain creation and enforcement Landlock audit support - - - --- 2023-09-21 Mickaël Salaün pcmoore RFC
[RFC,v1,5/7] landlock: Log file-related requests Landlock audit support - - - --- 2023-09-21 Mickaël Salaün pcmoore RFC
[RFC,v1,6/7] landlock: Log mount-related requests Landlock audit support - - - --- 2023-09-21 Mickaël Salaün pcmoore RFC
[RFC,v1,7/7] landlock: Log ptrace requests Landlock audit support - - - --- 2023-09-21 Mickaël Salaün pcmoore RFC
[RFC,v10,01/17] security: add ipe lsm Integrity Policy Enforcement LSM (IPE) - - - --- 2023-06-28 Fan Wu pcmoore Handled Elsewhere
[RFC,v10,02/17] ipe: add policy parser Integrity Policy Enforcement LSM (IPE) - - - --- 2023-06-28 Fan Wu pcmoore Handled Elsewhere
[RFC,v10,03/17] ipe: add evaluation loop Integrity Policy Enforcement LSM (IPE) - - - --- 2023-06-28 Fan Wu pcmoore Handled Elsewhere
[RFC,v10,04/17] ipe: add LSM hooks on execution and kernel read Integrity Policy Enforcement LSM (IPE) - - - --- 2023-06-28 Fan Wu pcmoore Handled Elsewhere
[RFC,v10,05/17] ipe: introduce 'boot_verified' as a trust provider Integrity Policy Enforcement LSM (IPE) - - - --- 2023-06-28 Fan Wu pcmoore Handled Elsewhere
[RFC,v10,06/17] security: add new securityfs delete function Integrity Policy Enforcement LSM (IPE) - - - --- 2023-06-28 Fan Wu pcmoore Handled Elsewhere
[RFC,v10,07/17] ipe: add userspace interface Integrity Policy Enforcement LSM (IPE) - - - --- 2023-06-28 Fan Wu pcmoore Handled Elsewhere
[RFC,v10,08/17] uapi|audit|ipe: add ipe auditing support Integrity Policy Enforcement LSM (IPE) - - - --- 2023-06-28 Fan Wu pcmoore Handled Elsewhere
[RFC,v10,09/17] ipe: add permissive toggle Integrity Policy Enforcement LSM (IPE) - - - --- 2023-06-28 Fan Wu pcmoore Handled Elsewhere
[RFC,v10,10/17] block|security: add LSM blob to block_device Integrity Policy Enforcement LSM (IPE) - 1 - --- 2023-06-28 Fan Wu pcmoore Handled Elsewhere
[RFC,v10,11/17] dm-verity: consume root hash digest and signature data via LSM hook Integrity Policy Enforcement LSM (IPE) - - - --- 2023-06-28 Fan Wu pcmoore Handled Elsewhere
[RFC,v10,12/17] ipe: add support for dm-verity as a trust provider Integrity Policy Enforcement LSM (IPE) - - - --- 2023-06-28 Fan Wu pcmoore Handled Elsewhere
[RFC,v10,13/17] fsverity: consume builtin signature via LSM hook Integrity Policy Enforcement LSM (IPE) - - - --- 2023-06-28 Fan Wu pcmoore Handled Elsewhere
[RFC,v10,14/17] ipe: enable support for fs-verity as a trust provider Integrity Policy Enforcement LSM (IPE) - - - --- 2023-06-28 Fan Wu pcmoore Handled Elsewhere
[RFC,v10,15/17] scripts: add boot policy generation program Integrity Policy Enforcement LSM (IPE) - - - --- 2023-06-28 Fan Wu pcmoore Handled Elsewhere
[RFC,v10,16/17] ipe: kunit test for parser Integrity Policy Enforcement LSM (IPE) - - - --- 2023-06-28 Fan Wu pcmoore Handled Elsewhere
[RFC,v10,17/17] documentation: add ipe documentation Integrity Policy Enforcement LSM (IPE) - - - --- 2023-06-28 Fan Wu pcmoore Handled Elsewhere
[RFC,v11,01/19] security: add ipe lsm Integrity Policy Enforcement LSM (IPE) - - - --- 2023-10-04 Fan Wu pcmoore Handled Elsewhere
[RFC,v11,02/19] ipe: add policy parser Integrity Policy Enforcement LSM (IPE) - - - --- 2023-10-04 Fan Wu pcmoore Handled Elsewhere
[RFC,v11,03/19] ipe: add evaluation loop Integrity Policy Enforcement LSM (IPE) - - - --- 2023-10-04 Fan Wu pcmoore Handled Elsewhere
[RFC,v11,04/19] ipe: add LSM hooks on execution and kernel read Integrity Policy Enforcement LSM (IPE) - - - --- 2023-10-04 Fan Wu pcmoore Handled Elsewhere
[RFC,v11,05/19] ipe: introduce 'boot_verified' as a trust provider Integrity Policy Enforcement LSM (IPE) - - - --- 2023-10-04 Fan Wu pcmoore Handled Elsewhere
[RFC,v11,06/19] security: add new securityfs delete function Integrity Policy Enforcement LSM (IPE) - - - --- 2023-10-04 Fan Wu pcmoore Handled Elsewhere
[RFC,v11,07/19] ipe: add userspace interface Integrity Policy Enforcement LSM (IPE) - - - --- 2023-10-04 Fan Wu pcmoore Handled Elsewhere
[RFC,v11,08/19] uapi|audit|ipe: add ipe auditing support Integrity Policy Enforcement LSM (IPE) - - - --- 2023-10-04 Fan Wu pcmoore Handled Elsewhere
[RFC,v11,09/19] ipe: add permissive toggle Integrity Policy Enforcement LSM (IPE) - - - --- 2023-10-04 Fan Wu pcmoore Handled Elsewhere
[RFC,v11,10/19] block|security: add LSM blob to block_device Integrity Policy Enforcement LSM (IPE) - 1 - --- 2023-10-04 Fan Wu pcmoore Handled Elsewhere
[RFC,v11,11/19] dm verity: set DM_TARGET_SINGLETON feature flag Integrity Policy Enforcement LSM (IPE) - - - --- 2023-10-04 Fan Wu pcmoore Handled Elsewhere
[RFC,v11,12/19] dm: add finalize hook to target_type Integrity Policy Enforcement LSM (IPE) - - - --- 2023-10-04 Fan Wu pcmoore Handled Elsewhere
[RFC,v11,13/19] dm verity: consume root hash digest and signature data via LSM hook Integrity Policy Enforcement LSM (IPE) - - - --- 2023-10-04 Fan Wu pcmoore Handled Elsewhere
[RFC,v11,14/19] ipe: add support for dm-verity as a trust provider Integrity Policy Enforcement LSM (IPE) - - - --- 2023-10-04 Fan Wu pcmoore Handled Elsewhere
[RFC,v11,15/19] fsverity: consume builtin signature via LSM hook Integrity Policy Enforcement LSM (IPE) - - - --- 2023-10-04 Fan Wu pcmoore Handled Elsewhere
[RFC,v11,16/19] ipe: enable support for fs-verity as a trust provider Integrity Policy Enforcement LSM (IPE) - - - --- 2023-10-04 Fan Wu pcmoore Handled Elsewhere
[RFC,v11,17/19] scripts: add boot policy generation program Integrity Policy Enforcement LSM (IPE) - - - --- 2023-10-04 Fan Wu pcmoore Handled Elsewhere
[RFC,v11,18/19] ipe: kunit test for parser Integrity Policy Enforcement LSM (IPE) - - - --- 2023-10-04 Fan Wu pcmoore Handled Elsewhere
« 1 2 3 4 »