Show patches with: Submitter = Mickaël Salaün       |   107 patches
« 1 2 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
[GIT,PULL] Add trusted_for(2) (was O_MAYEXEC) [GIT,PULL] Add trusted_for(2) (was O_MAYEXEC) - - - --- 2022-03-21 Mickaël Salaün New
[v18,4/4] selftest/interpreter: Add tests for trusted_for(2) policies Add trusted_for(2) (was O_MAYEXEC) - 2 - --- 2022-01-04 Mickaël Salaün New
[v18,3/4] arch: Wire up trusted_for(2) Add trusted_for(2) (was O_MAYEXEC) 1 2 - --- 2022-01-04 Mickaël Salaün New
[v18,2/4] fs: Add trusted_for(2) syscall implementation and related sysctl Add trusted_for(2) (was O_MAYEXEC) 1 - - --- 2022-01-04 Mickaël Salaün New
[v18,1/4] printk: Move back proc_dointvec_minmax_sysadmin() to sysctl.c Add trusted_for(2) (was O_MAYEXEC) - - - --- 2022-01-04 Mickaël Salaün New
[v17,3/3] selftest/interpreter: Add tests for trusted_for(2) policies Add trusted_for(2) (was O_MAYEXEC) - 2 - --- 2021-11-15 Mickaël Salaün New
[v17,2/3] arch: Wire up trusted_for(2) Add trusted_for(2) (was O_MAYEXEC) 1 2 - --- 2021-11-15 Mickaël Salaün New
[v17,1/3] fs: Add trusted_for(2) syscall implementation and related sysctl Add trusted_for(2) (was O_MAYEXEC) 1 - - --- 2021-11-15 Mickaël Salaün New
[v16,3/3] selftest/interpreter: Add tests for trusted_for(2) policies Add trusted_for(2) (was O_MAYEXEC) - 2 - --- 2021-11-10 Mickaël Salaün New
[v16,2/3] arch: Wire up trusted_for(2) Add trusted_for(2) (was O_MAYEXEC) 1 2 - --- 2021-11-10 Mickaël Salaün New
[v16,1/3] fs: Add trusted_for(2) syscall implementation and related sysctl Add trusted_for(2) (was O_MAYEXEC) 1 - - --- 2021-11-10 Mickaël Salaün New
[v15,3/3] selftest/interpreter: Add tests for trusted_for(2) policies Add trusted_for(2) (was O_MAYEXEC) - 2 - --- 2021-10-12 Mickaël Salaün New
[v15,2/3] arch: Wire up trusted_for(2) Add trusted_for(2) (was O_MAYEXEC) 1 2 - --- 2021-10-12 Mickaël Salaün New
[v15,1/3] fs: Add trusted_for(2) syscall implementation and related sysctl Add trusted_for(2) (was O_MAYEXEC) 1 - - --- 2021-10-12 Mickaël Salaün New
[v14,3/3] selftest/interpreter: Add tests for trusted_for(2) policies Add trusted_for(2) (was O_MAYEXEC) - 2 - --- 2021-10-08 Mickaël Salaün New
[v14,2/3] arch: Wire up trusted_for(2) Add trusted_for(2) (was O_MAYEXEC) 1 2 - --- 2021-10-08 Mickaël Salaün New
[v14,1/3] fs: Add trusted_for(2) syscall implementation and related sysctl Add trusted_for(2) (was O_MAYEXEC) 2 - - --- 2021-10-08 Mickaël Salaün New
[v13,3/3] selftest/interpreter: Add tests for trusted_for(2) policies Add trusted_for(2) (was O_MAYEXEC) - 1 - --- 2021-10-07 Mickaël Salaün New
[v13,2/3] arch: Wire up trusted_for(2) Add trusted_for(2) (was O_MAYEXEC) 1 2 - --- 2021-10-07 Mickaël Salaün New
[v13,1/3] fs: Add trusted_for(2) syscall implementation and related sysctl Add trusted_for(2) (was O_MAYEXEC) 1 - - --- 2021-10-07 Mickaël Salaün New
[v8,5/5] certs: Allow root user to append signed hashes to the blacklist keyring Enable root to update the blacklist keyring - - - --- 2021-07-12 Mickaël Salaün New
[v8,4/5] certs: Factor out the blacklist hash creation Enable root to update the blacklist keyring - - - --- 2021-07-12 Mickaël Salaün New
[v8,3/5] certs: Make blacklist_vet_description() more strict Enable root to update the blacklist keyring - 1 - --- 2021-07-12 Mickaël Salaün New
[v8,2/5] certs: Check that builtin blacklist hashes are valid Enable root to update the blacklist keyring - - - --- 2021-07-12 Mickaël Salaün New
[v8,1/5] tools/certs: Add print-cert-tbs-hash.sh Enable root to update the blacklist keyring - 1 - --- 2021-07-12 Mickaël Salaün New
[v7,5/5] certs: Allow root user to append signed hashes to the blacklist keyring Enable root to update the blacklist keyring - - - --- 2021-03-12 Mickaël Salaün New
[v7,4/5] certs: Factor out the blacklist hash creation Enable root to update the blacklist keyring - 1 - --- 2021-03-12 Mickaël Salaün New
[v7,3/5] certs: Make blacklist_vet_description() more strict Enable root to update the blacklist keyring - 1 - --- 2021-03-12 Mickaël Salaün New
[v7,2/5] certs: Check that builtin blacklist hashes are valid Enable root to update the blacklist keyring - 1 - --- 2021-03-12 Mickaël Salaün New
[v7,1/5] tools/certs: Add print-cert-tbs-hash.sh Enable root to update the blacklist keyring - 1 1 --- 2021-03-12 Mickaël Salaün New
[v6,5/5] certs: Allow root user to append signed hashes to the blacklist keyring Enable root to update the blacklist keyring - - 1 --- 2021-02-10 Mickaël Salaün New
[v6,4/5] certs: Factor out the blacklist hash creation Enable root to update the blacklist keyring - - - --- 2021-02-10 Mickaël Salaün New
[v6,3/5] certs: Make blacklist_vet_description() more strict Enable root to update the blacklist keyring - 1 - --- 2021-02-10 Mickaël Salaün New
[v6,2/5] certs: Check that builtin blacklist hashes are valid Enable root to update the blacklist keyring - - - --- 2021-02-10 Mickaël Salaün New
[v6,1/5] tools/certs: Add print-cert-tbs-hash.sh Enable root to update the blacklist keyring - 1 - --- 2021-02-10 Mickaël Salaün New
[v4,10/10] certs: Allow root user to append signed hashes to the blacklist keyring Enable root to update the blacklist keyring - - - --- 2021-01-21 Mickaël Salaün New
[v4,09/10] PKCS#7: Fix missing include Enable root to update the blacklist keyring - 2 - --- 2021-01-21 Mickaël Salaün New
[v4,08/10] certs: Factor out the blacklist hash creation Enable root to update the blacklist keyring 1 - - --- 2021-01-21 Mickaël Salaün New
[v4,07/10] certs/blacklist: fix kernel doc interface issue Enable root to update the blacklist keyring - 2 - --- 2021-01-21 Mickaël Salaün New
[v4,06/10] certs: Make blacklist_vet_description() more strict Enable root to update the blacklist keyring 1 - - --- 2021-01-21 Mickaël Salaün New
[v4,05/10] certs: Replace K{U,G}IDT_INIT() with GLOBAL_ROOT_{U,G}ID Enable root to update the blacklist keyring - - - --- 2021-01-21 Mickaël Salaün New
[v4,04/10] certs: Fix blacklist flag type confusion Enable root to update the blacklist keyring 1 - - --- 2021-01-21 Mickaël Salaün New
[v4,03/10] certs: Fix blacklisted hexadecimal hash string check Enable root to update the blacklist keyring - 1 - --- 2021-01-21 Mickaël Salaün New
[v4,02/10] certs: Check that builtin blacklist hashes are valid Enable root to update the blacklist keyring - - - --- 2021-01-21 Mickaël Salaün New
[v4,01/10] tools/certs: Add print-cert-tbs-hash.sh Enable root to update the blacklist keyring - - - --- 2021-01-21 Mickaël Salaün New
[v3,10/10] tools/certs: Add print-cert-tbs-hash.sh Enable root to update the blacklist keyring - - - --- 2021-01-14 Mickaël Salaün New
[v3,09/10] certs: Allow root user to append signed hashes to the blacklist keyring Enable root to update the blacklist keyring - - - --- 2021-01-14 Mickaël Salaün New
[v3,08/10] certs: Check that builtin blacklist hashes are valid Enable root to update the blacklist keyring 1 - - --- 2021-01-14 Mickaël Salaün New
[v3,07/10] certs: Factor out the blacklist hash creation Enable root to update the blacklist keyring 1 - - --- 2021-01-14 Mickaël Salaün New
[v3,06/10] certs: Make blacklist_vet_description() more strict Enable root to update the blacklist keyring 1 - - --- 2021-01-14 Mickaël Salaün New
[v3,05/10] certs: Replace K{U,G}IDT_INIT() with GLOBAL_ROOT_{U,G}ID Enable root to update the blacklist keyring - - - --- 2021-01-14 Mickaël Salaün New
[v3,04/10] certs: Fix blacklist flag type confusion Enable root to update the blacklist keyring 1 - - --- 2021-01-14 Mickaël Salaün New
[v3,03/10] PKCS#7: Fix missing include Enable root to update the blacklist keyring - 2 - --- 2021-01-14 Mickaël Salaün New
[v3,02/10] certs: Fix blacklisted hexadecimal hash string check Enable root to update the blacklist keyring - 1 - --- 2021-01-14 Mickaël Salaün New
[v3,01/10] certs/blacklist: fix kernel doc interface issue Enable root to update the blacklist keyring - 2 - --- 2021-01-14 Mickaël Salaün New
[v2,5/5] tools/certs: Add print-cert-tbs-hash.sh Enable root to update the blacklist keyring - - - --- 2020-12-11 Mickaël Salaün New
[v2,4/5] certs: Allow root user to append signed hashes to the blacklist keyring Enable root to update the blacklist keyring - - - --- 2020-12-11 Mickaël Salaün New
[v2,3/5] certs: Check that builtin blacklist hashes are valid Enable root to update the blacklist keyring - - - --- 2020-12-11 Mickaël Salaün New
[v2,2/5] certs: Factor out the blacklist hash creation Enable root to update the blacklist keyring - - - --- 2020-12-11 Mickaël Salaün New
[v2,1/5] certs: Make blacklist_vet_description() more strict Enable root to update the blacklist keyring - - - --- 2020-12-11 Mickaël Salaün New
[v12,3/3] selftest/interpreter: Add tests for trusted_for(2) policies Add trusted_for(2) (was O_MAYEXEC) - 1 - --- 2020-12-03 Mickaël Salaün New
[v12,2/3] arch: Wire up trusted_for(2) Add trusted_for(2) (was O_MAYEXEC) 1 1 - --- 2020-12-03 Mickaël Salaün New
[v12,1/3] fs: Add trusted_for(2) syscall implementation and related sysctl Add trusted_for(2) (was O_MAYEXEC) - - - --- 2020-12-03 Mickaël Salaün New
[v1,9/9] tools/certs: Add print-cert-tbs-hash.sh Enable root to update the blacklist keyring - - - --- 2020-11-20 Mickaël Salaün New
[v1,8/9] certs: Replace K{U,G}IDT_INIT() with GLOBAL_ROOT_{U,G}ID Enable root to update the blacklist keyring - - - --- 2020-11-20 Mickaël Salaün New
[v1,7/9] certs: Allow root user to append signed hashes to the blacklist keyring Enable root to update the blacklist keyring - - - --- 2020-11-20 Mickaël Salaün New
[v1,6/9] certs: Fix blacklist flag type confusion Enable root to update the blacklist keyring - - - --- 2020-11-20 Mickaël Salaün New
[v1,5/9] PKCS#7: Fix missing include Enable root to update the blacklist keyring - - - --- 2020-11-20 Mickaël Salaün New
[v1,4/9] certs: Check that builtin blacklist hashes are valid Enable root to update the blacklist keyring - - - --- 2020-11-20 Mickaël Salaün New
[v1,3/9] certs: Factor out the blacklist hash creation Enable root to update the blacklist keyring - - - --- 2020-11-20 Mickaël Salaün New
[v1,2/9] certs: Make blacklist_vet_description() more strict Enable root to update the blacklist keyring - - - --- 2020-11-20 Mickaël Salaün New
[v1,1/9] certs: Fix blacklisted hexadecimal hash string check Enable root to update the blacklist keyring - - - --- 2020-11-20 Mickaël Salaün New
[v3] dm verity: Add support for signature verification with 2nd keyring [v3] dm verity: Add support for signature verification with 2nd keyring - - - --- 2020-10-23 Mickaël Salaün New
[RESEND,v11,3/3] selftest/interpreter: Add tests for trusted_for(2) policies Add trusted_for(2) (was O_MAYEXEC) - 1 - --- 2020-10-19 Mickaël Salaün New
[RESEND,v11,2/3] arch: Wire up trusted_for(2) Add trusted_for(2) (was O_MAYEXEC) 1 1 - --- 2020-10-19 Mickaël Salaün New
[RESEND,v11,1/3] fs: Add trusted_for(2) syscall implementation and related sysctl Add trusted_for(2) (was O_MAYEXEC) - - - --- 2020-10-19 Mickaël Salaün New
[v2] dm verity: Add support for signature verification with 2nd keyring [v2] dm verity: Add support for signature verification with 2nd keyring - - - --- 2020-10-15 Mickaël Salaün New
[v1] dm verity: Add support for signature verification with 2nd keyring [v1] dm verity: Add support for signature verification with 2nd keyring - - - --- 2020-10-02 Mickaël Salaün New
[v11,3/3] selftest/interpreter: Add tests for trusted_for(2) policies Add trusted_for(2) (was O_MAYEXEC) - 1 - --- 2020-10-01 Mickaël Salaün New
[v11,2/3] arch: Wire up trusted_for(2) Add trusted_for(2) (was O_MAYEXEC) - 1 - --- 2020-10-01 Mickaël Salaün New
[v11,1/3] fs: Add trusted_for(2) syscall implementation and related sysctl Add trusted_for(2) (was O_MAYEXEC) - - - --- 2020-10-01 Mickaël Salaün New
[v10,3/3] selftest/interpreter: Add tests for trusted_for(2) policies Add trusted_for(2) (was O_MAYEXEC) - 1 - --- 2020-09-24 Mickaël Salaün New
[v10,2/3] arch: Wire up trusted_for(2) Add trusted_for(2) (was O_MAYEXEC) - 1 - --- 2020-09-24 Mickaël Salaün New
[v10,1/3] fs: Add trusted_for(2) syscall implementation and related sysctl Add trusted_for(2) (was O_MAYEXEC) - - - --- 2020-09-24 Mickaël Salaün New
[RFC,v8,3/3] selftest/interpreter: Add tests for AT_INTERPRETED enforcing Add support for AT_INTERPRETED (was O_MAYEXEC) - 1 - --- 2020-09-08 Mickaël Salaün New
[RFC,v8,2/3] fs,doc: Enable to configure exec checks for AT_INTERPRETED Add support for AT_INTERPRETED (was O_MAYEXEC) - 1 - --- 2020-09-08 Mickaël Salaün New
[RFC,v8,1/3] fs: Introduce AT_INTERPRETED flag for faccessat2(2) Add support for AT_INTERPRETED (was O_MAYEXEC) - - - --- 2020-09-08 Mickaël Salaün New
[v7,7/7] ima: add policy support for the new file open MAY_OPENEXEC flag Add support for O_MAYEXEC - 2 - --- 2020-07-23 Mickaël Salaün New
[v7,6/7] selftest/openat2: Add tests for O_MAYEXEC enforcing Add support for O_MAYEXEC - 2 - --- 2020-07-23 Mickaël Salaün New
[v7,5/7] fs,doc: Enable to enforce noexec mounts or file exec through O_MAYEXEC Add support for O_MAYEXEC 1 1 - --- 2020-07-23 Mickaël Salaün New
[v7,4/7] fs: Introduce O_MAYEXEC flag for openat2(2) Add support for O_MAYEXEC 1 - - --- 2020-07-23 Mickaël Salaün New
[v7,3/7] exec: Move path_noexec() check earlier Add support for O_MAYEXEC - - - --- 2020-07-23 Mickaël Salaün New
[v7,2/7] exec: Move S_ISREG() check earlier Add support for O_MAYEXEC - - - --- 2020-07-23 Mickaël Salaün New
[v7,1/7] exec: Change uselib(2) IS_SREG() failure to EACCES Add support for O_MAYEXEC 1 - - --- 2020-07-23 Mickaël Salaün New
[v6,7/7] ima: add policy support for the new file open MAY_OPENEXEC flag Add support for O_MAYEXEC 1 1 - --- 2020-07-14 Mickaël Salaün New
[v6,6/7] selftest/openat2: Add tests for O_MAYEXEC enforcing Add support for O_MAYEXEC - 2 - --- 2020-07-14 Mickaël Salaün New
[v6,5/7] fs,doc: Enable to enforce noexec mounts or file exec through O_MAYEXEC Add support for O_MAYEXEC - 2 - --- 2020-07-14 Mickaël Salaün New
[v6,4/7] fs: Introduce O_MAYEXEC flag for openat2(2) Add support for O_MAYEXEC - 2 - --- 2020-07-14 Mickaël Salaün New
[v6,3/7] exec: Move path_noexec() check earlier Add support for O_MAYEXEC 1 - - --- 2020-07-14 Mickaël Salaün New
[v6,2/7] exec: Move S_ISREG() check earlier Add support for O_MAYEXEC 1 - - --- 2020-07-14 Mickaël Salaün New
« 1 2 »