Show patches with: State = Action Required       |   104 patches
« 1 2 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
[RFC] device mapper: Add builtin function dm_get_status() [RFC] device mapper: Add builtin function dm_get_status() - - - --- 2021-12-01 Roberto Sassu New
[v30,28/28] AppArmor: Remove the exclusive flag [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule 2 1 - --- 2021-11-24 Casey Schaufler New
[v30,27/28] LSM: Add /proc attr entry for full LSM context [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule - 1 - --- 2021-11-24 Casey Schaufler New
[v30,26/28] Audit: Add record for multiple object security contexts [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule - - - --- 2021-11-24 Casey Schaufler New
[v30,25/28] Audit: Add record for multiple task security contexts [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule - - - --- 2021-11-24 Casey Schaufler New
[v30,24/28] Audit: Add framework for auxiliary records [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule - - - --- 2021-11-24 Casey Schaufler New
[v30,23/28] Audit: Create audit_stamp structure [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule - - - --- 2021-11-24 Casey Schaufler New
[v30,22/28] Audit: Keep multiple LSM data in audit_names [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule - - - --- 2021-11-24 Casey Schaufler New
[v30,21/28] LSM: Extend security_secid_to_secctx to include module selection [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule - - - --- 2021-11-24 Casey Schaufler New
[v30,20/28] binder: Pass LSM identifier for confirmation [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule - - - --- 2021-11-24 Casey Schaufler New
[v30,19/28] NET: Store LSM netlabel data in a lsmblob [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule 2 2 - --- 2021-11-24 Casey Schaufler New
[v30,18/28] LSM: security_secid_to_secctx in netlink netfilter [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule 3 2 - --- 2021-11-24 Casey Schaufler New
[v30,17/28] LSM: Use lsmcontext in security_inode_getsecctx [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule 3 2 - --- 2021-11-24 Casey Schaufler New
[v30,16/28] LSM: Use lsmcontext in security_secid_to_secctx [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule 2 1 - --- 2021-11-24 Casey Schaufler New
[v30,15/28] LSM: Ensure the correct LSM context releaser [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule 3 2 - --- 2021-11-24 Casey Schaufler New
[v30,14/28] LSM: Specify which LSM to display [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule - - - --- 2021-11-24 Casey Schaufler New
[v30,13/28] LSM: Use lsmblob in security_cred_getsecid [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule 2 2 - --- 2021-11-24 Casey Schaufler New
[v30,12/28] LSM: Use lsmblob in security_inode_getsecid [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule 2 2 - --- 2021-11-24 Casey Schaufler New
[v30,11/28] LSM: Use lsmblob in security_task_getsecid [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule 2 2 - --- 2021-11-24 Casey Schaufler New
[v30,10/28] LSM: Use lsmblob in security_ipc_getsecid [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule 2 2 - --- 2021-11-24 Casey Schaufler New
[v30,09/28] LSM: Use lsmblob in security_secid_to_secctx [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule 1 1 - --- 2021-11-24 Casey Schaufler New
[v30,08/28] LSM: Use lsmblob in security_secctx_to_secid [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule 1 1 - --- 2021-11-24 Casey Schaufler New
[v30,07/28] LSM: Use lsmblob in security_kernel_act_as [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule 2 2 - --- 2021-11-24 Casey Schaufler New
[v30,06/28] LSM: Use lsmblob in security_audit_rule_match [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule - - - --- 2021-11-24 Casey Schaufler New
[v30,05/28] IMA: avoid label collisions with stacked LSMs [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule - - - --- 2021-11-24 Casey Schaufler New
[v30,04/28] LSM: provide lsm name and id slot mappings [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule 1 1 - --- 2021-11-24 Casey Schaufler New
[v30,03/28] LSM: Add the lsmblob data structure. [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule - - - --- 2021-11-24 Casey Schaufler New
[v30,02/28] LSM: Infrastructure management of the sock security [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule 2 2 - --- 2021-11-24 Casey Schaufler New
[v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule - - - --- 2021-11-24 Casey Schaufler New
audit: accelerate audit rule filter audit: accelerate audit rule filter - - - --- 2021-11-23 zhaozixuan (C) New
[RFC] integrity: disassociate ima_filter_rule from security_audit_rule [RFC] integrity: disassociate ima_filter_rule from security_audit_rule - - - --- 2021-11-04 Casey Schaufler New
[RFC,v1] audit: log AUDIT_TIME_* records only from rules [RFC,v1] audit: log AUDIT_TIME_* records only from rules - - - --- 2021-11-04 Richard Guy Briggs New
[RFC,v7,16/16] documentation: add ipe documentation Integrity Policy Enforcement (IPE) - - - --- 2021-10-13 Deven Bowers New
[RFC,v7,15/16] ipe: kunit tests Integrity Policy Enforcement (IPE) - - - --- 2021-10-13 Deven Bowers New
[RFC,v7,14/16] scripts: add boot policy generation program Integrity Policy Enforcement (IPE) - - - --- 2021-10-13 Deven Bowers New
[RFC,v7,13/16] ipe: enable support for fs-verity as a trust provider Integrity Policy Enforcement (IPE) - - - --- 2021-10-13 Deven Bowers New
[RFC,v7,12/16] fsverity|security: add security hooks to fsverity digest and signature Integrity Policy Enforcement (IPE) - - - --- 2021-10-13 Deven Bowers New
[RFC,v7,11/16] ipe: add support for dm-verity as a trust provider Integrity Policy Enforcement (IPE) - - - --- 2021-10-13 Deven Bowers New
[RFC,v7,10/16] fs|dm-verity: add block_dev LSM blob and submit dm-verity data Integrity Policy Enforcement (IPE) - - - --- 2021-10-13 Deven Bowers New
[RFC,v7,09/16] ipe: introduce 'boot_verified' as a trust provider Integrity Policy Enforcement (IPE) - - - --- 2021-10-13 Deven Bowers New
[RFC,v7,08/16] ipe: add permissive toggle Integrity Policy Enforcement (IPE) - - - --- 2021-10-13 Deven Bowers New
[RFC,v7,07/16] ipe: add auditing support Integrity Policy Enforcement (IPE) - - - --- 2021-10-13 Deven Bowers New
[RFC,v7,06/16] uapi|audit: add trust audit message definitions Integrity Policy Enforcement (IPE) - - - --- 2021-10-13 Deven Bowers New
[RFC,v7,05/16] ipe: add LSM hooks on execution and kernel read Integrity Policy Enforcement (IPE) - - - --- 2021-10-13 Deven Bowers New
[RFC,v7,04/16] ipe: add userspace interface Integrity Policy Enforcement (IPE) - - - --- 2021-10-13 Deven Bowers New
[RFC,v7,03/16] ipe: add evaluation loop Integrity Policy Enforcement (IPE) - - - --- 2021-10-13 Deven Bowers New
[RFC,v7,02/16] ipe: add policy parser Integrity Policy Enforcement (IPE) - - - --- 2021-10-13 Deven Bowers New
[RFC,v7,01/16] security: add ipe lsm & initial context creation Integrity Policy Enforcement (IPE) - - - --- 2021-10-13 Deven Bowers New
[v2,RESEND] powerpc/audit: Convert powerpc to AUDIT_ARCH_COMPAT_GENERIC [v2,RESEND] powerpc/audit: Convert powerpc to AUDIT_ARCH_COMPAT_GENERIC - - - --- 2021-08-24 LEROY Christophe New
[v28,01/25] LSM: Infrastructure management of the sock security [v28,01/25] LSM: Infrastructure management of the sock security 2 2 - --- 2021-07-22 Casey Schaufler New
[RFC] audit: reduce the number of kauditd_thread wakeups [RFC] audit: reduce the number of kauditd_thread wakeups 1 - - --- 2021-06-06 Paul Moore New
[V1] audit: log xattr args not covered by syscall record [V1] audit: log xattr args not covered by syscall record - - - --- 2021-05-07 Richard Guy Briggs New
alpha: Add syscall_get_return_value() alpha: Add syscall_get_return_value() - - - --- 2021-04-26 He Zhe New
[ghak90,v11,11/11] audit: add capcontid to set contid outside init_user_ns audit: implement container identifier - - - --- 2021-01-12 Richard Guy Briggs New
[ghak90,v11,10/11] audit: track container nesting audit: implement container identifier - - - --- 2021-01-12 Richard Guy Briggs New
[ghak90,v11,09/11] audit: contid check descendancy and nesting audit: implement container identifier - - - --- 2021-01-12 Richard Guy Briggs New
[ghak90,v11,08/11] audit: add support for containerid to network namespaces audit: implement container identifier 1 1 - --- 2021-01-12 Richard Guy Briggs New
[ghak90,v11,07/11] audit: add containerid filtering audit: implement container identifier 2 1 - --- 2021-01-12 Richard Guy Briggs New
[ghak90,v11,06/11] audit: add containerid support for user records audit: implement container identifier 1 1 - --- 2021-01-12 Richard Guy Briggs New
[ghak90,v11,05/11] audit: add support for non-syscall auxiliary records audit: implement container identifier 2 1 - --- 2021-01-12 Richard Guy Briggs New
[ghak90,v11,04/11] audit: add contid support for signalling the audit daemon audit: implement container identifier - - - --- 2021-01-12 Richard Guy Briggs New
[ghak90,v11,03/11] audit: log container info of syscalls audit: implement container identifier 3 1 - --- 2021-01-12 Richard Guy Briggs New
[ghak90,v11,02/11] audit: add container id audit: implement container identifier 3 1 - --- 2021-01-12 Richard Guy Briggs New
[ghak90,v11,01/11] audit: collect audit task parameters audit: implement container identifier 1 1 - --- 2021-01-12 Richard Guy Briggs New
audit-testsuite: tests for subject and object correctness audit-testsuite: tests for subject and object correctness - - - --- 2020-11-12 Casey Schaufler New
[RFC,v6,11/11] cleanup: uapi/linux/audit.h Integrity Policy Enforcement LSM (IPE) - - - --- 2020-07-30 Deven Bowers New
[RFC,v6,10/11] documentation: add ipe documentation Integrity Policy Enforcement LSM (IPE) 1 - - --- 2020-07-30 Deven Bowers New
[RFC,v6,09/11] ipe: add property for dmverity roothash Integrity Policy Enforcement LSM (IPE) - - - --- 2020-07-30 Deven Bowers New
[RFC,v6,08/11] dm-verity: add bdev_setsecurity hook for root-hash Integrity Policy Enforcement LSM (IPE) - - - --- 2020-07-30 Deven Bowers New
[RFC,v6,07/11] ipe: add property for signed dmverity volumes Integrity Policy Enforcement LSM (IPE) - - - --- 2020-07-30 Deven Bowers New
[RFC,v6,06/11] dm-verity: add bdev_setsecurity hook for dm-verity signature Integrity Policy Enforcement LSM (IPE) - - - --- 2020-07-30 Deven Bowers New
[RFC,v6,05/11] fs: add security blob and hooks for block_device Integrity Policy Enforcement LSM (IPE) - - - --- 2020-07-30 Deven Bowers New
[RFC,v6,04/11] ipe: add property for trust of boot volume Integrity Policy Enforcement LSM (IPE) - - - --- 2020-07-30 Deven Bowers New
[RFC,v6,03/11] security: add ipe lsm policy parser and policy loading Integrity Policy Enforcement LSM (IPE) - - - --- 2020-07-30 Deven Bowers New
[RFC,v6,02/11] security: add ipe lsm evaluation loop and audit system Integrity Policy Enforcement LSM (IPE) - - - --- 2020-07-30 Deven Bowers New
[RFC,v6,01/11] scripts: add ipe tooling to generate boot policy Integrity Policy Enforcement LSM (IPE) - - - --- 2020-07-30 Deven Bowers New
[ghak90,V9,13/13] audit: add capcontid to set contid outside init_user_ns audit: implement container identifier - - - --- 2020-06-27 Richard Guy Briggs New
[ghak90,V9,12/13] audit: track container nesting audit: implement container identifier - - - --- 2020-06-27 Richard Guy Briggs New
[ghak90,V9,11/13] audit: contid check descendancy and nesting audit: implement container identifier - - - --- 2020-06-27 Richard Guy Briggs New
[ghak90,V9,10/13] audit: add support for containerid to network namespaces audit: implement container identifier 1 1 - --- 2020-06-27 Richard Guy Briggs New
[ghak90,V9,09/13] audit: add containerid filtering audit: implement container identifier 2 1 - --- 2020-06-27 Richard Guy Briggs New
[ghak90,V9,08/13] audit: add containerid support for user records audit: implement container identifier 1 1 - --- 2020-06-27 Richard Guy Briggs New
[ghak90,V9,07/13] audit: add support for non-syscall auxiliary records audit: implement container identifier 2 1 - --- 2020-06-27 Richard Guy Briggs New
[ghak90,V9,06/13] audit: add contid support for signalling the audit daemon audit: implement container identifier - - - --- 2020-06-27 Richard Guy Briggs New
[ghak90,V9,05/13] audit: log container info of syscalls audit: implement container identifier 3 1 - --- 2020-06-27 Richard Guy Briggs New
[ghak90,V9,04/13] audit: log drop of contid on exit of last task audit: implement container identifier - - - --- 2020-06-27 Richard Guy Briggs New
[ghak90,V9,03/13] audit: read container ID of a process audit: implement container identifier 2 1 - --- 2020-06-27 Richard Guy Briggs New
[ghak90,V9,02/13] audit: add container id audit: implement container identifier 3 1 - --- 2020-06-27 Richard Guy Briggs New
[ghak90,V9,01/13] audit: collect audit task parameters audit: implement container identifier 1 1 - --- 2020-06-27 Richard Guy Briggs New
kernel: convert switch/case fallthrough comments to fallthrough; kernel: convert switch/case fallthrough comments to fallthrough; - - - --- 2019-10-18 Joe Perches New
[RFC,v3] security, capability: pass object information to security_capable [RFC,v3] security, capability: pass object information to security_capable - - - --- 2019-08-15 Aaron Goidel New
[RFC] audit, security: allow LSMs to selectively enable audit collection [RFC] audit, security: allow LSMs to selectively enable audit collection - - - --- 2019-08-15 Aaron Goidel New
[RFC] audit-testsuite: improve our chances of losing records in lost_reset [RFC] audit-testsuite: improve our chances of losing records in lost_reset - - - --- 2018-12-13 Paul Moore New
[ghak95] audit: Do not log full CWD path on empty relative paths [ghak95] audit: Do not log full CWD path on empty relative paths - 1 - --- 2018-08-02 Ondrej Mosnacek New
[V2] audit: remove arch_f pointer from struct audit_krule - - - --- 2018-02-16 Richard Guy Briggs New
[RFC,ghak21,4/4] audit: add parent of refused symlink to audit_names - - - --- 2018-02-14 Richard Guy Briggs New
[RFC,ghak21,3/4] audit: add refused symlink to audit_names - - - --- 2018-02-14 Richard Guy Briggs New
[RFC,ghak21,2/4] audit: link denied should not directly generate PATH record - - - --- 2018-02-14 Richard Guy Briggs New
[RFC,ghak21,1/4] audit: make ANOM_LINK obey audit_enabled and audit_dummy_context - - - --- 2018-02-14 Richard Guy Briggs New
[ghak8,ALT4,V4,3/3] audit: add new filetypes CREATE_ANON and PARENT_ANON - - - --- 2018-02-12 Richard Guy Briggs New
« 1 2 »