Show patches with: State = Action Required       |   96 patches
Patch Series A/R/T S/W/F Date Submitter Delegate State
[v4,8/8] Smack: Brutalist io_uring support Add LSM access controls and auditing to io_uring - - - --- 2021-09-15 Paul Moore New
[v4,7/8] selinux: add support for the io_uring access controls Add LSM access controls and auditing to io_uring - - - --- 2021-09-15 Paul Moore New
[v4,6/8] lsm,io_uring: add LSM hooks to io_uring Add LSM access controls and auditing to io_uring - - - --- 2021-09-15 Paul Moore New
[v4,5/8] io_uring: convert io_uring to the secure anon inode interface Add LSM access controls and auditing to io_uring - - - --- 2021-09-15 Paul Moore New
[v4,4/8] fs: add anon_inode_getfile_secure() similar to anon_inode_getfd_secure() Add LSM access controls and auditing to io_uring 1 - - --- 2021-09-15 Paul Moore New
[v4,3/8] audit: add filtering for io_uring records Add LSM access controls and auditing to io_uring 1 - - --- 2021-09-15 Paul Moore New
[v4,2/8] audit, io_uring, io-wq: add some basic audit support to io_uring Add LSM access controls and auditing to io_uring - - - --- 2021-09-15 Paul Moore New
[v4,1/8] audit: prepare audit_context for use in calling contexts beyond syscalls Add LSM access controls and auditing to io_uring 1 - - --- 2021-09-15 Paul Moore New
lsm_audit: avoid overloading the "key" audit field lsm_audit: avoid overloading the "key" audit field - 1 - --- 2021-09-14 Ondrej Mosnacek New
[v4,3/3] dm crypt: log aead integrity violations to audit subsystem dm: audit event logging - - - --- 2021-09-04 Weiß, Michael New
[v4,2/3] dm integrity: log audit events for dm-integrity target dm: audit event logging - - - --- 2021-09-04 Weiß, Michael New
[v4,1/3] dm: introduce audit event module for device mapper dm: audit event logging - - - --- 2021-09-04 Weiß, Michael New
[v2,RESEND] powerpc/audit: Convert powerpc to AUDIT_ARCH_COMPAT_GENERIC [v2,RESEND] powerpc/audit: Convert powerpc to AUDIT_ARCH_COMPAT_GENERIC - - - --- 2021-08-24 Christophe Leroy New
[v28,25/25] AppArmor: Remove the exclusive flag [v28,01/25] LSM: Infrastructure management of the sock security 2 1 - --- 2021-07-22 Casey Schaufler New
[v28,24/25] LSM: Add /proc attr entry for full LSM context [v28,01/25] LSM: Infrastructure management of the sock security - 1 - --- 2021-07-22 Casey Schaufler New
[v28,23/25] Audit: Add record for multiple object LSM attributes [v28,01/25] LSM: Infrastructure management of the sock security - - - --- 2021-07-22 Casey Schaufler New
[v28,22/25] Audit: Add record for multiple process LSM attributes [v28,01/25] LSM: Infrastructure management of the sock security - - - --- 2021-07-22 Casey Schaufler New
[v28,21/25] audit: support non-syscall auxiliary records [v28,01/25] LSM: Infrastructure management of the sock security 1 - - --- 2021-07-22 Casey Schaufler New
[v28,20/25] LSM: Verify LSM display sanity in binder [v28,01/25] LSM: Infrastructure management of the sock security 2 2 - --- 2021-07-22 Casey Schaufler New
[v28,19/25] NET: Store LSM netlabel data in a lsmblob [v28,01/25] LSM: Infrastructure management of the sock security 2 2 - --- 2021-07-22 Casey Schaufler New
[v28,18/25] LSM: security_secid_to_secctx in netlink netfilter [v28,01/25] LSM: Infrastructure management of the sock security 3 2 - --- 2021-07-22 Casey Schaufler New
[v28,17/25] LSM: Use lsmcontext in security_inode_getsecctx [v28,01/25] LSM: Infrastructure management of the sock security 3 2 - --- 2021-07-22 Casey Schaufler New
[v28,16/25] LSM: Use lsmcontext in security_secid_to_secctx [v28,01/25] LSM: Infrastructure management of the sock security 2 1 - --- 2021-07-22 Casey Schaufler New
[v28,15/25] LSM: Ensure the correct LSM context releaser [v28,01/25] LSM: Infrastructure management of the sock security 3 2 - --- 2021-07-22 Casey Schaufler New
[v28,14/25] LSM: Specify which LSM to display [v28,01/25] LSM: Infrastructure management of the sock security - - - --- 2021-07-22 Casey Schaufler New
[v28,13/25] IMA: Change internal interfaces to use lsmblobs [v28,01/25] LSM: Infrastructure management of the sock security 1 2 - --- 2021-07-22 Casey Schaufler New
[v28,12/25] LSM: Use lsmblob in security_cred_getsecid [v28,01/25] LSM: Infrastructure management of the sock security 2 2 - --- 2021-07-22 Casey Schaufler New
[v28,11/25] LSM: Use lsmblob in security_inode_getsecid [v28,01/25] LSM: Infrastructure management of the sock security 2 2 - --- 2021-07-22 Casey Schaufler New
[v28,10/25] LSM: Use lsmblob in security_task_getsecid [v28,01/25] LSM: Infrastructure management of the sock security 2 2 - --- 2021-07-22 Casey Schaufler New
[v28,09/25] LSM: Use lsmblob in security_ipc_getsecid [v28,01/25] LSM: Infrastructure management of the sock security 2 2 - --- 2021-07-22 Casey Schaufler New
[v28,08/25] LSM: Use lsmblob in security_secid_to_secctx [v28,01/25] LSM: Infrastructure management of the sock security 1 1 - --- 2021-07-22 Casey Schaufler New
[v28,07/25] LSM: Use lsmblob in security_secctx_to_secid [v28,01/25] LSM: Infrastructure management of the sock security 1 1 - --- 2021-07-22 Casey Schaufler New
[v28,06/25] LSM: Use lsmblob in security_kernel_act_as [v28,01/25] LSM: Infrastructure management of the sock security 2 2 - --- 2021-07-22 Casey Schaufler New
[v28,05/25] LSM: Use lsmblob in security_audit_rule_match [v28,01/25] LSM: Infrastructure management of the sock security 2 2 - --- 2021-07-22 Casey Schaufler New
[v28,04/25] IMA: avoid label collisions with stacked LSMs [v28,01/25] LSM: Infrastructure management of the sock security - 1 - --- 2021-07-22 Casey Schaufler New
[v28,03/25] LSM: provide lsm name and id slot mappings [v28,01/25] LSM: Infrastructure management of the sock security 1 1 - --- 2021-07-22 Casey Schaufler New
[v28,02/25] LSM: Add the lsmblob data structure. [v28,01/25] LSM: Infrastructure management of the sock security 3 - - --- 2021-07-22 Casey Schaufler New
[v28,01/25] LSM: Infrastructure management of the sock security [v28,01/25] LSM: Infrastructure management of the sock security 2 2 - --- 2021-07-22 Casey Schaufler New
[v28,01/25] LSM: Infrastructure management of the sock security [v28,01/25] LSM: Infrastructure management of the sock security 2 2 - --- 2021-07-22 Casey Schaufler New
[RFC] audit: reduce the number of kauditd_thread wakeups [RFC] audit: reduce the number of kauditd_thread wakeups 1 - - --- 2021-06-06 Paul Moore New
[v4,3/3] audit: add OPENAT2 record to list how audit: add support for openat2 1 - - --- 2021-05-19 Richard Guy Briggs New
[v4,2/3] audit: add support for the openat2 syscall audit: add support for openat2 1 - - --- 2021-05-19 Richard Guy Briggs New
[v4,1/3] audit: replace magic audit syscall class numbers with macros audit: add support for openat2 1 - - --- 2021-05-19 Richard Guy Briggs New
[V1] audit: log xattr args not covered by syscall record [V1] audit: log xattr args not covered by syscall record - - - --- 2021-05-07 Richard Guy Briggs New
alpha: Add syscall_get_return_value() alpha: Add syscall_get_return_value() - - - --- 2021-04-26 He Zhe New
[ghak90,v11,11/11] audit: add capcontid to set contid outside init_user_ns audit: implement container identifier - - - --- 2021-01-12 Richard Guy Briggs New
[ghak90,v11,10/11] audit: track container nesting audit: implement container identifier - - - --- 2021-01-12 Richard Guy Briggs New
[ghak90,v11,09/11] audit: contid check descendancy and nesting audit: implement container identifier - - - --- 2021-01-12 Richard Guy Briggs New
[ghak90,v11,08/11] audit: add support for containerid to network namespaces audit: implement container identifier 1 1 - --- 2021-01-12 Richard Guy Briggs New
[ghak90,v11,07/11] audit: add containerid filtering audit: implement container identifier 2 1 - --- 2021-01-12 Richard Guy Briggs New
[ghak90,v11,06/11] audit: add containerid support for user records audit: implement container identifier 1 1 - --- 2021-01-12 Richard Guy Briggs New
[ghak90,v11,05/11] audit: add support for non-syscall auxiliary records audit: implement container identifier 2 1 - --- 2021-01-12 Richard Guy Briggs New
[ghak90,v11,04/11] audit: add contid support for signalling the audit daemon audit: implement container identifier - - - --- 2021-01-12 Richard Guy Briggs New
[ghak90,v11,03/11] audit: log container info of syscalls audit: implement container identifier 3 1 - --- 2021-01-12 Richard Guy Briggs New
[ghak90,v11,02/11] audit: add container id audit: implement container identifier 3 1 - --- 2021-01-12 Richard Guy Briggs New
[ghak90,v11,01/11] audit: collect audit task parameters audit: implement container identifier 1 1 - --- 2021-01-12 Richard Guy Briggs New
audit-testsuite: tests for subject and object correctness audit-testsuite: tests for subject and object correctness - - - --- 2020-11-12 Casey Schaufler New
[RFC,v6,11/11] cleanup: uapi/linux/audit.h Integrity Policy Enforcement LSM (IPE) - - - --- 2020-07-30 Deven Bowers New
[RFC,v6,10/11] documentation: add ipe documentation Integrity Policy Enforcement LSM (IPE) 1 - - --- 2020-07-30 Deven Bowers New
[RFC,v6,09/11] ipe: add property for dmverity roothash Integrity Policy Enforcement LSM (IPE) - - - --- 2020-07-30 Deven Bowers New
[RFC,v6,08/11] dm-verity: add bdev_setsecurity hook for root-hash Integrity Policy Enforcement LSM (IPE) - - - --- 2020-07-30 Deven Bowers New
[RFC,v6,07/11] ipe: add property for signed dmverity volumes Integrity Policy Enforcement LSM (IPE) - - - --- 2020-07-30 Deven Bowers New
[RFC,v6,06/11] dm-verity: add bdev_setsecurity hook for dm-verity signature Integrity Policy Enforcement LSM (IPE) - - - --- 2020-07-30 Deven Bowers New
[RFC,v6,05/11] fs: add security blob and hooks for block_device Integrity Policy Enforcement LSM (IPE) - - - --- 2020-07-30 Deven Bowers New
[RFC,v6,04/11] ipe: add property for trust of boot volume Integrity Policy Enforcement LSM (IPE) - - - --- 2020-07-30 Deven Bowers New
[RFC,v6,03/11] security: add ipe lsm policy parser and policy loading Integrity Policy Enforcement LSM (IPE) - - - --- 2020-07-30 Deven Bowers New
[RFC,v6,02/11] security: add ipe lsm evaluation loop and audit system Integrity Policy Enforcement LSM (IPE) - - - --- 2020-07-30 Deven Bowers New
[RFC,v6,01/11] scripts: add ipe tooling to generate boot policy Integrity Policy Enforcement LSM (IPE) - - - --- 2020-07-30 Deven Bowers New
[ghak90,V9,13/13] audit: add capcontid to set contid outside init_user_ns audit: implement container identifier - - - --- 2020-06-27 Richard Guy Briggs New
[ghak90,V9,12/13] audit: track container nesting audit: implement container identifier - - - --- 2020-06-27 Richard Guy Briggs New
[ghak90,V9,11/13] audit: contid check descendancy and nesting audit: implement container identifier - - - --- 2020-06-27 Richard Guy Briggs New
[ghak90,V9,10/13] audit: add support for containerid to network namespaces audit: implement container identifier 1 1 - --- 2020-06-27 Richard Guy Briggs New
[ghak90,V9,09/13] audit: add containerid filtering audit: implement container identifier 2 1 - --- 2020-06-27 Richard Guy Briggs New
[ghak90,V9,08/13] audit: add containerid support for user records audit: implement container identifier 1 1 - --- 2020-06-27 Richard Guy Briggs New
[ghak90,V9,07/13] audit: add support for non-syscall auxiliary records audit: implement container identifier 2 1 - --- 2020-06-27 Richard Guy Briggs New
[ghak90,V9,06/13] audit: add contid support for signalling the audit daemon audit: implement container identifier - - - --- 2020-06-27 Richard Guy Briggs New
[ghak90,V9,05/13] audit: log container info of syscalls audit: implement container identifier 3 1 - --- 2020-06-27 Richard Guy Briggs New
[ghak90,V9,04/13] audit: log drop of contid on exit of last task audit: implement container identifier - - - --- 2020-06-27 Richard Guy Briggs New
[ghak90,V9,03/13] audit: read container ID of a process audit: implement container identifier 2 1 - --- 2020-06-27 Richard Guy Briggs New
[ghak90,V9,02/13] audit: add container id audit: implement container identifier 3 1 - --- 2020-06-27 Richard Guy Briggs New
[ghak90,V9,01/13] audit: collect audit task parameters audit: implement container identifier 1 1 - --- 2020-06-27 Richard Guy Briggs New
kernel: convert switch/case fallthrough comments to fallthrough; kernel: convert switch/case fallthrough comments to fallthrough; - - - --- 2019-10-18 Joe Perches New
[RFC,v3] security, capability: pass object information to security_capable [RFC,v3] security, capability: pass object information to security_capable - - - --- 2019-08-15 Aaron Goidel New
[RFC] audit, security: allow LSMs to selectively enable audit collection [RFC] audit, security: allow LSMs to selectively enable audit collection - - - --- 2019-08-15 Aaron Goidel New
[RFC] audit-testsuite: improve our chances of losing records in lost_reset [RFC] audit-testsuite: improve our chances of losing records in lost_reset - - - --- 2018-12-13 Paul Moore New
[ghak95] audit: Do not log full CWD path on empty relative paths [ghak95] audit: Do not log full CWD path on empty relative paths - 1 - --- 2018-08-02 Ondrej Mosnacek New
[V2] audit: remove arch_f pointer from struct audit_krule - - - --- 2018-02-16 Richard Guy Briggs New
[RFC,ghak21,4/4] audit: add parent of refused symlink to audit_names - - - --- 2018-02-14 Richard Guy Briggs New
[RFC,ghak21,3/4] audit: add refused symlink to audit_names - - - --- 2018-02-14 Richard Guy Briggs New
[RFC,ghak21,2/4] audit: link denied should not directly generate PATH record - - - --- 2018-02-14 Richard Guy Briggs New
[RFC,ghak21,1/4] audit: make ANOM_LINK obey audit_enabled and audit_dummy_context - - - --- 2018-02-14 Richard Guy Briggs New
[ghak8,ALT4,V4,3/3] audit: add new filetypes CREATE_ANON and PARENT_ANON - - - --- 2018-02-12 Richard Guy Briggs New
[ghak8,ALT4,V4,2/3] audit: append new fstype field for anonymous PATH records - - - --- 2018-02-12 Richard Guy Briggs New
[ghak8,ALT4,V4,1/3] audit: show partial pathname for entries with anonymous parents - - - --- 2018-02-12 Richard Guy Briggs New
[1/1] audit: log binding and unbinding to netlink multicast - 1 - --- 2017-10-13 Steve Grubb New
audit: catch errors from audit_filter_rules field checks - - - --- 2016-06-14 Richard Guy Briggs New