Show patches with: State = Action Required       |   107 patches
« 1 2 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
audit: catch errors from audit_filter_rules field checks - - - --- 2016-06-14 Richard Guy Briggs New
[1/1] audit: log binding and unbinding to netlink multicast - 1 - --- 2017-10-13 Steve Grubb New
[ghak8,ALT4,V4,1/3] audit: show partial pathname for entries with anonymous parents - - - --- 2018-02-12 Richard Guy Briggs New
[ghak8,ALT4,V4,2/3] audit: append new fstype field for anonymous PATH records - - - --- 2018-02-12 Richard Guy Briggs New
[ghak8,ALT4,V4,3/3] audit: add new filetypes CREATE_ANON and PARENT_ANON - - - --- 2018-02-12 Richard Guy Briggs New
[RFC,ghak21,1/4] audit: make ANOM_LINK obey audit_enabled and audit_dummy_context - - - --- 2018-02-14 Richard Guy Briggs New
[RFC,ghak21,2/4] audit: link denied should not directly generate PATH record - - - --- 2018-02-14 Richard Guy Briggs New
[RFC,ghak21,3/4] audit: add refused symlink to audit_names - - - --- 2018-02-14 Richard Guy Briggs New
[RFC,ghak21,4/4] audit: add parent of refused symlink to audit_names - - - --- 2018-02-14 Richard Guy Briggs New
[V2] audit: remove arch_f pointer from struct audit_krule - - - --- 2018-02-16 Richard Guy Briggs New
[ghak95] audit: Do not log full CWD path on empty relative paths [ghak95] audit: Do not log full CWD path on empty relative paths - 1 - --- 2018-08-02 Ondrej Mosnacek New
[RFC] audit-testsuite: improve our chances of losing records in lost_reset [RFC] audit-testsuite: improve our chances of losing records in lost_reset - - - --- 2018-12-13 Paul Moore New
[RFC] audit, security: allow LSMs to selectively enable audit collection [RFC] audit, security: allow LSMs to selectively enable audit collection - - - --- 2019-08-15 Aaron Goidel New
[RFC,v3] security, capability: pass object information to security_capable [RFC,v3] security, capability: pass object information to security_capable - - - --- 2019-08-15 Aaron Goidel New
kernel: convert switch/case fallthrough comments to fallthrough; kernel: convert switch/case fallthrough comments to fallthrough; - - - --- 2019-10-18 Joe Perches New
[ghak90,V9,01/13] audit: collect audit task parameters audit: implement container identifier 1 1 - --- 2020-06-27 Richard Guy Briggs New
[ghak90,V9,02/13] audit: add container id audit: implement container identifier 3 1 - --- 2020-06-27 Richard Guy Briggs New
[ghak90,V9,03/13] audit: read container ID of a process audit: implement container identifier 2 1 - --- 2020-06-27 Richard Guy Briggs New
[ghak90,V9,04/13] audit: log drop of contid on exit of last task audit: implement container identifier - - - --- 2020-06-27 Richard Guy Briggs New
[ghak90,V9,05/13] audit: log container info of syscalls audit: implement container identifier 3 1 - --- 2020-06-27 Richard Guy Briggs New
[ghak90,V9,06/13] audit: add contid support for signalling the audit daemon audit: implement container identifier - - - --- 2020-06-27 Richard Guy Briggs New
[ghak90,V9,07/13] audit: add support for non-syscall auxiliary records audit: implement container identifier 2 1 - --- 2020-06-27 Richard Guy Briggs New
[ghak90,V9,08/13] audit: add containerid support for user records audit: implement container identifier 1 1 - --- 2020-06-27 Richard Guy Briggs New
[ghak90,V9,09/13] audit: add containerid filtering audit: implement container identifier 2 1 - --- 2020-06-27 Richard Guy Briggs New
[ghak90,V9,10/13] audit: add support for containerid to network namespaces audit: implement container identifier 1 1 - --- 2020-06-27 Richard Guy Briggs New
[ghak90,V9,11/13] audit: contid check descendancy and nesting audit: implement container identifier - - - --- 2020-06-27 Richard Guy Briggs New
[ghak90,V9,12/13] audit: track container nesting audit: implement container identifier - - - --- 2020-06-27 Richard Guy Briggs New
[ghak90,V9,13/13] audit: add capcontid to set contid outside init_user_ns audit: implement container identifier - - - --- 2020-06-27 Richard Guy Briggs New
[RFC,v6,01/11] scripts: add ipe tooling to generate boot policy Integrity Policy Enforcement LSM (IPE) - - - --- 2020-07-30 Deven Bowers New
[RFC,v6,02/11] security: add ipe lsm evaluation loop and audit system Integrity Policy Enforcement LSM (IPE) - - - --- 2020-07-30 Deven Bowers New
[RFC,v6,03/11] security: add ipe lsm policy parser and policy loading Integrity Policy Enforcement LSM (IPE) - - - --- 2020-07-30 Deven Bowers New
[RFC,v6,04/11] ipe: add property for trust of boot volume Integrity Policy Enforcement LSM (IPE) - - - --- 2020-07-30 Deven Bowers New
[RFC,v6,05/11] fs: add security blob and hooks for block_device Integrity Policy Enforcement LSM (IPE) - - - --- 2020-07-30 Deven Bowers New
[RFC,v6,06/11] dm-verity: add bdev_setsecurity hook for dm-verity signature Integrity Policy Enforcement LSM (IPE) - - - --- 2020-07-30 Deven Bowers New
[RFC,v6,07/11] ipe: add property for signed dmverity volumes Integrity Policy Enforcement LSM (IPE) - - - --- 2020-07-30 Deven Bowers New
[RFC,v6,08/11] dm-verity: add bdev_setsecurity hook for root-hash Integrity Policy Enforcement LSM (IPE) - - - --- 2020-07-30 Deven Bowers New
[RFC,v6,09/11] ipe: add property for dmverity roothash Integrity Policy Enforcement LSM (IPE) - - - --- 2020-07-30 Deven Bowers New
[RFC,v6,10/11] documentation: add ipe documentation Integrity Policy Enforcement LSM (IPE) 1 - - --- 2020-07-30 Deven Bowers New
[RFC,v6,11/11] cleanup: uapi/linux/audit.h Integrity Policy Enforcement LSM (IPE) - - - --- 2020-07-30 Deven Bowers New
audit-testsuite: tests for subject and object correctness audit-testsuite: tests for subject and object correctness - - - --- 2020-11-12 Casey Schaufler New
[ghak90,v11,01/11] audit: collect audit task parameters audit: implement container identifier 1 1 - --- 2021-01-12 Richard Guy Briggs New
[ghak90,v11,02/11] audit: add container id audit: implement container identifier 3 1 - --- 2021-01-12 Richard Guy Briggs New
[ghak90,v11,03/11] audit: log container info of syscalls audit: implement container identifier 3 1 - --- 2021-01-12 Richard Guy Briggs New
[ghak90,v11,04/11] audit: add contid support for signalling the audit daemon audit: implement container identifier - - - --- 2021-01-12 Richard Guy Briggs New
[ghak90,v11,05/11] audit: add support for non-syscall auxiliary records audit: implement container identifier 2 1 - --- 2021-01-12 Richard Guy Briggs New
[ghak90,v11,06/11] audit: add containerid support for user records audit: implement container identifier 1 1 - --- 2021-01-12 Richard Guy Briggs New
[ghak90,v11,07/11] audit: add containerid filtering audit: implement container identifier 2 1 - --- 2021-01-12 Richard Guy Briggs New
[ghak90,v11,08/11] audit: add support for containerid to network namespaces audit: implement container identifier 1 1 - --- 2021-01-12 Richard Guy Briggs New
[ghak90,v11,09/11] audit: contid check descendancy and nesting audit: implement container identifier - - - --- 2021-01-12 Richard Guy Briggs New
[ghak90,v11,10/11] audit: track container nesting audit: implement container identifier - - - --- 2021-01-12 Richard Guy Briggs New
[ghak90,v11,11/11] audit: add capcontid to set contid outside init_user_ns audit: implement container identifier - - - --- 2021-01-12 Richard Guy Briggs New
alpha: Add syscall_get_return_value() alpha: Add syscall_get_return_value() - - - --- 2021-04-26 He Zhe New
[V1] audit: log xattr args not covered by syscall record [V1] audit: log xattr args not covered by syscall record - - - --- 2021-05-07 Richard Guy Briggs New
[RFC] audit: reduce the number of kauditd_thread wakeups [RFC] audit: reduce the number of kauditd_thread wakeups 1 - - --- 2021-06-06 Paul Moore New
[v28,01/25] LSM: Infrastructure management of the sock security [v28,01/25] LSM: Infrastructure management of the sock security 2 2 - --- 2021-07-22 Casey Schaufler New
[v2,RESEND] powerpc/audit: Convert powerpc to AUDIT_ARCH_COMPAT_GENERIC [v2,RESEND] powerpc/audit: Convert powerpc to AUDIT_ARCH_COMPAT_GENERIC - - - --- 2021-08-24 Christophe Leroy New
[v4,1/3] dm: introduce audit event module for device mapper dm: audit event logging - - - --- 2021-09-04 Weiß, Michael New
[v4,2/3] dm integrity: log audit events for dm-integrity target dm: audit event logging - - - --- 2021-09-04 Weiß, Michael New
[v4,3/3] dm crypt: log aead integrity violations to audit subsystem dm: audit event logging - - - --- 2021-09-04 Weiß, Michael New
[v29,01/28] LSM: Infrastructure management of the sock security [v29,01/28] LSM: Infrastructure management of the sock security 2 2 - --- 2021-09-24 Casey Schaufler New
[v29,02/28] LSM: Add the lsmblob data structure. [v29,01/28] LSM: Infrastructure management of the sock security 3 - - --- 2021-09-24 Casey Schaufler New
[v29,03/28] LSM: provide lsm name and id slot mappings [v29,01/28] LSM: Infrastructure management of the sock security 1 1 - --- 2021-09-24 Casey Schaufler New
[v29,04/28] IMA: avoid label collisions with stacked LSMs [v29,01/28] LSM: Infrastructure management of the sock security - 1 - --- 2021-09-24 Casey Schaufler New
[v29,05/28] LSM: Use lsmblob in security_audit_rule_match [v29,01/28] LSM: Infrastructure management of the sock security 2 2 - --- 2021-09-24 Casey Schaufler New
[v29,06/28] LSM: Use lsmblob in security_kernel_act_as [v29,01/28] LSM: Infrastructure management of the sock security 2 2 - --- 2021-09-24 Casey Schaufler New
[v29,07/28] LSM: Use lsmblob in security_secctx_to_secid [v29,01/28] LSM: Infrastructure management of the sock security 1 1 - --- 2021-09-24 Casey Schaufler New
[v29,08/28] LSM: Use lsmblob in security_secid_to_secctx [v29,01/28] LSM: Infrastructure management of the sock security 1 1 - --- 2021-09-24 Casey Schaufler New
[v29,09/28] LSM: Use lsmblob in security_ipc_getsecid [v29,01/28] LSM: Infrastructure management of the sock security 2 2 - --- 2021-09-24 Casey Schaufler New
[v29,10/28] LSM: Use lsmblob in security_task_getsecid [v29,01/28] LSM: Infrastructure management of the sock security 2 2 - --- 2021-09-24 Casey Schaufler New
[v29,11/28] LSM: Use lsmblob in security_inode_getsecid [v29,01/28] LSM: Infrastructure management of the sock security 2 2 - --- 2021-09-24 Casey Schaufler New
[v29,12/28] LSM: Use lsmblob in security_cred_getsecid [v29,01/28] LSM: Infrastructure management of the sock security 2 2 - --- 2021-09-24 Casey Schaufler New
[v29,13/28] IMA: Change internal interfaces to use lsmblobs [v29,01/28] LSM: Infrastructure management of the sock security 1 2 - --- 2021-09-24 Casey Schaufler New
[v29,14/28] LSM: Specify which LSM to display [v29,01/28] LSM: Infrastructure management of the sock security - - - --- 2021-09-24 Casey Schaufler New
[v29,15/28] LSM: Ensure the correct LSM context releaser [v29,01/28] LSM: Infrastructure management of the sock security 3 2 - --- 2021-09-24 Casey Schaufler New
[v29,16/28] LSM: Use lsmcontext in security_secid_to_secctx [v29,01/28] LSM: Infrastructure management of the sock security 2 1 - --- 2021-09-24 Casey Schaufler New
[v29,17/28] LSM: Use lsmcontext in security_inode_getsecctx [v29,01/28] LSM: Infrastructure management of the sock security 3 2 - --- 2021-09-24 Casey Schaufler New
[v29,18/28] LSM: security_secid_to_secctx in netlink netfilter [v29,01/28] LSM: Infrastructure management of the sock security 3 2 - --- 2021-09-24 Casey Schaufler New
[v29,19/28] NET: Store LSM netlabel data in a lsmblob [v29,01/28] LSM: Infrastructure management of the sock security 2 2 - --- 2021-09-24 Casey Schaufler New
[v29,20/28] LSM: Verify LSM display sanity in binder [v29,01/28] LSM: Infrastructure management of the sock security 2 2 - --- 2021-09-24 Casey Schaufler New
[v29,21/28] LSM: Extend security_secid_to_secctx to include module selection [v29,01/28] LSM: Infrastructure management of the sock security - - - --- 2021-09-24 Casey Schaufler New
[v29,22/28] Audit: Keep multiple LSM data in audit_names [v29,01/28] LSM: Infrastructure management of the sock security - - - --- 2021-09-24 Casey Schaufler New
[v29,23/28] Audit: Create audit_stamp structure [v29,01/28] LSM: Infrastructure management of the sock security - - - --- 2021-09-24 Casey Schaufler New
[v29,24/28] Audit: Add framework for auxiliary records [v29,01/28] LSM: Infrastructure management of the sock security - - - --- 2021-09-24 Casey Schaufler New
[v29,25/28] Audit: Add record for multiple task security contexts [v29,01/28] LSM: Infrastructure management of the sock security - - - --- 2021-09-24 Casey Schaufler New
[v29,26/28] Audit: Add record for multiple object security contexts [v29,01/28] LSM: Infrastructure management of the sock security - - - --- 2021-09-24 Casey Schaufler New
[v29,27/28] LSM: Add /proc attr entry for full LSM context [v29,01/28] LSM: Infrastructure management of the sock security - 1 - --- 2021-09-24 Casey Schaufler New
[v29,28/28] AppArmor: Remove the exclusive flag [v29,01/28] LSM: Infrastructure management of the sock security 2 1 - --- 2021-09-24 Casey Schaufler New
[-next,v2,1/2] audit: fix possible null-pointer dereference in audit_filter_rules Audit: fix warning and check priority early - - - --- 2021-10-13 cuigaosheng New
[-next,v2,2/2] audit: return early if the rule has a lower priority Audit: fix warning and check priority early - - - --- 2021-10-13 cuigaosheng New
[RFC,v7,01/16] security: add ipe lsm & initial context creation Integrity Policy Enforcement (IPE) - - - --- 2021-10-13 Deven Bowers New
[RFC,v7,02/16] ipe: add policy parser Integrity Policy Enforcement (IPE) - - - --- 2021-10-13 Deven Bowers New
[RFC,v7,03/16] ipe: add evaluation loop Integrity Policy Enforcement (IPE) - - - --- 2021-10-13 Deven Bowers New
[RFC,v7,04/16] ipe: add userspace interface Integrity Policy Enforcement (IPE) - - - --- 2021-10-13 Deven Bowers New
[RFC,v7,05/16] ipe: add LSM hooks on execution and kernel read Integrity Policy Enforcement (IPE) - - - --- 2021-10-13 Deven Bowers New
[RFC,v7,06/16] uapi|audit: add trust audit message definitions Integrity Policy Enforcement (IPE) - - - --- 2021-10-13 Deven Bowers New
[RFC,v7,07/16] ipe: add auditing support Integrity Policy Enforcement (IPE) - - - --- 2021-10-13 Deven Bowers New
[RFC,v7,08/16] ipe: add permissive toggle Integrity Policy Enforcement (IPE) - - - --- 2021-10-13 Deven Bowers New
[RFC,v7,09/16] ipe: introduce 'boot_verified' as a trust provider Integrity Policy Enforcement (IPE) - - - --- 2021-10-13 Deven Bowers New
[RFC,v7,10/16] fs|dm-verity: add block_dev LSM blob and submit dm-verity data Integrity Policy Enforcement (IPE) - - - --- 2021-10-13 Deven Bowers New
[RFC,v7,11/16] ipe: add support for dm-verity as a trust provider Integrity Policy Enforcement (IPE) - - - --- 2021-10-13 Deven Bowers New
« 1 2 »