Show patches with: none      |   15936 patches
« 1 2 ... 61 62 63159 160 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
[5/5] ima: enable loading of build time generated key to .ima keyring ima: kernel build support for loading the kernel module signing key - - - --- 2021-02-11 Nayna Jain New
[4/5] keys: define build time generated ephemeral kernel CA key ima: kernel build support for loading the kernel module signing key - - - --- 2021-02-11 Nayna Jain New
[3/5] ima: update kernel module signing process during build ima: kernel build support for loading the kernel module signing key - - - --- 2021-02-11 Nayna Jain New
[2/5] keys: generate self-signed module signing key using CSR ima: kernel build support for loading the kernel module signing key - - - --- 2021-02-11 Nayna Jain New
[1/5] keys: cleanup build time module signing keys ima: kernel build support for loading the kernel module signing key - - - --- 2021-02-11 Nayna Jain New
[GIT,PULL] Add EFI_CERT_X509_GUID support for dbx/mokx entries [GIT,PULL] Add EFI_CERT_X509_GUID support for dbx/mokx entries - - - --- 2021-02-10 David Howells New
[GIT,PULL] keys: Collected minor fixes and cleanups [GIT,PULL] keys: Collected minor fixes and cleanups - - - --- 2021-02-10 David Howells New
[no subject] Untitled series #432931 - - - --- 2021-02-10 David Howells New
[v6,5/5] certs: Allow root user to append signed hashes to the blacklist keyring Enable root to update the blacklist keyring - - 1 --- 2021-02-10 Mickaël Salaün New
[v6,4/5] certs: Factor out the blacklist hash creation Enable root to update the blacklist keyring - - - --- 2021-02-10 Mickaël Salaün New
[v6,3/5] certs: Make blacklist_vet_description() more strict Enable root to update the blacklist keyring - 1 - --- 2021-02-10 Mickaël Salaün New
[v6,2/5] certs: Check that builtin blacklist hashes are valid Enable root to update the blacklist keyring - - - --- 2021-02-10 Mickaël Salaün New
[v6,1/5] tools/certs: Add print-cert-tbs-hash.sh Enable root to update the blacklist keyring - 1 - --- 2021-02-10 Mickaël Salaün New
[-next] integrity: Make function integrity_add_key() static [-next] integrity: Make function integrity_add_key() static - 2 - --- 2021-02-10 Wei Yongjun New
[-next] IMA: Make function ima_mok_init() static [-next] IMA: Make function ima_mok_init() static - - - --- 2021-02-10 Wei Yongjun New
[v1] efi: Don't use knowledge about efi_guid_t internals [v1] efi: Don't use knowledge about efi_guid_t internals 1 1 - --- 2021-02-09 Andy Shevchenko New
[2/2] keys: Allow request_key upcalls from a container to be intercepted keys: request_key() interception in containers - - - --- 2021-02-04 David Howells New
[1/2] Add namespace tags that can be used for matching without pinning a ns keys: request_key() interception in containers - - - --- 2021-02-04 David Howells New
[RESEND,v5] proc: Allow pid_revalidate() during LOOKUP_RCU [RESEND,v5] proc: Allow pid_revalidate() during LOOKUP_RCU - - - --- 2021-02-04 Stephen Brennan New
[v28,12/12] landlock: Add user and kernel documentation Landlock LSM - 1 - --- 2021-02-02 Mickaël Salaün New
[v28,11/12] samples/landlock: Add a sandbox manager example Landlock LSM - 1 - --- 2021-02-02 Mickaël Salaün New
[v28,09/12] arch: Wire up Landlock syscalls Landlock LSM - - - --- 2021-02-02 Mickaël Salaün New
[v28,08/12] landlock: Add syscall implementations Landlock LSM 1 - - --- 2021-02-02 Mickaël Salaün New
[v28,07/12] landlock: Support filesystem access-control Landlock LSM - - - --- 2021-02-02 Mickaël Salaün New
[v28,06/12] fs,security: Add sb_delete hook Landlock LSM 1 1 - --- 2021-02-02 Mickaël Salaün New
[v28,05/12] LSM: Infrastructure management of the superblock Landlock LSM 1 1 - --- 2021-02-02 Mickaël Salaün New
[v28,04/12] landlock: Add ptrace restrictions Landlock LSM 1 1 - --- 2021-02-02 Mickaël Salaün New
[v28,03/12] landlock: Set up the security framework and manage credentials Landlock LSM 1 1 - --- 2021-02-02 Mickaël Salaün New
[v28,02/12] landlock: Add ruleset and domain management Landlock LSM 1 - - --- 2021-02-02 Mickaël Salaün New
[v28,01/12] landlock: Add object management Landlock LSM 1 1 - --- 2021-02-02 Mickaël Salaün New
[v3,1/1] process_madvise.2: Add process_madvise man page [v3,1/1] process_madvise.2: Add process_madvise man page - 1 - --- 2021-02-02 Suren Baghdasaryan New
[3/3] IMA: add support to measure duplicate buffer for critical data hook support for duplicate measurement of integrity critical data - - - --- 2021-01-30 Tushar Sugandhi New
[2/3] IMA: update functions to read allow_dup policy condition support for duplicate measurement of integrity critical data - - - --- 2021-01-30 Tushar Sugandhi New
[1/3] IMA: add policy condition to measure duplicate critical data support for duplicate measurement of integrity critical data - - - --- 2021-01-30 Tushar Sugandhi New
[v2] selinux: measure state and policy capabilities [v2] selinux: measure state and policy capabilities - - - --- 2021-01-29 Lakshmi Ramasubramanian New
[v2,1/1] process_madvise.2: Add process_madvise man page [v2,1/1] process_madvise.2: Add process_madvise man page - - - --- 2021-01-29 Suren Baghdasaryan New
[v2] smackfs: restrict bytes count in smackfs write functions [v2] smackfs: restrict bytes count in smackfs write functions - - - --- 2021-01-28 Sabyrzhan Tasbolatov New
[v24,25/25] AppArmor: Remove the exclusive flag [v24,01/25] LSM: Infrastructure management of the sock security 2 1 - --- 2021-01-26 Casey Schaufler New
[v24,24/25] LSM: Add /proc attr entry for full LSM context [v24,01/25] LSM: Infrastructure management of the sock security - 1 - --- 2021-01-26 Casey Schaufler New
[v24,23/25] Audit: Add a new record for multiple object LSM attributes [v24,01/25] LSM: Infrastructure management of the sock security - - - --- 2021-01-26 Casey Schaufler New
[v24,22/25] Audit: Add new record for multiple process LSM attributes [v24,01/25] LSM: Infrastructure management of the sock security - - - --- 2021-01-26 Casey Schaufler New
[v24,21/25] audit: add support for non-syscall auxiliary records [v24,01/25] LSM: Infrastructure management of the sock security - - - --- 2021-01-26 Casey Schaufler New
[v24,20/25] LSM: Verify LSM display sanity in binder [v24,01/25] LSM: Infrastructure management of the sock security 2 2 - --- 2021-01-26 Casey Schaufler New
[v24,19/25] NET: Store LSM netlabel data in a lsmblob [v24,01/25] LSM: Infrastructure management of the sock security 2 2 - --- 2021-01-26 Casey Schaufler New
[v24,18/25] LSM: security_secid_to_secctx in netlink netfilter [v24,01/25] LSM: Infrastructure management of the sock security 2 2 - --- 2021-01-26 Casey Schaufler New
[v24,17/25] LSM: Use lsmcontext in security_inode_getsecctx [v24,01/25] LSM: Infrastructure management of the sock security 2 1 - --- 2021-01-26 Casey Schaufler New
[v24,16/25] LSM: Use lsmcontext in security_secid_to_secctx [v24,01/25] LSM: Infrastructure management of the sock security 2 1 - --- 2021-01-26 Casey Schaufler New
[v24,15/25] LSM: Ensure the correct LSM context releaser [v24,01/25] LSM: Infrastructure management of the sock security 1 2 - --- 2021-01-26 Casey Schaufler New
[v24,14/25] LSM: Specify which LSM to display [v24,01/25] LSM: Infrastructure management of the sock security - - - --- 2021-01-26 Casey Schaufler New
[v24,13/25] IMA: Change internal interfaces to use lsmblobs [v24,01/25] LSM: Infrastructure management of the sock security 1 2 - --- 2021-01-26 Casey Schaufler New
[v24,12/25] LSM: Use lsmblob in security_cred_getsecid [v24,01/25] LSM: Infrastructure management of the sock security 2 2 - --- 2021-01-26 Casey Schaufler New
[v24,11/25] LSM: Use lsmblob in security_inode_getsecid [v24,01/25] LSM: Infrastructure management of the sock security 2 2 - --- 2021-01-26 Casey Schaufler New
[v24,10/25] LSM: Use lsmblob in security_task_getsecid [v24,01/25] LSM: Infrastructure management of the sock security 2 2 - --- 2021-01-26 Casey Schaufler New
[v24,09/25] LSM: Use lsmblob in security_ipc_getsecid [v24,01/25] LSM: Infrastructure management of the sock security 2 2 - --- 2021-01-26 Casey Schaufler New
[v24,08/25] LSM: Use lsmblob in security_secid_to_secctx [v24,01/25] LSM: Infrastructure management of the sock security - - - --- 2021-01-26 Casey Schaufler New
[v24,07/25] LSM: Use lsmblob in security_secctx_to_secid [v24,01/25] LSM: Infrastructure management of the sock security - - - --- 2021-01-26 Casey Schaufler New
[v24,06/25] LSM: Use lsmblob in security_kernel_act_as [v24,01/25] LSM: Infrastructure management of the sock security 2 2 - --- 2021-01-26 Casey Schaufler New
[v24,05/25] LSM: Use lsmblob in security_audit_rule_match [v24,01/25] LSM: Infrastructure management of the sock security 2 2 - --- 2021-01-26 Casey Schaufler New
[v24,04/25] IMA: avoid label collisions with stacked LSMs [v24,01/25] LSM: Infrastructure management of the sock security - - - --- 2021-01-26 Casey Schaufler New
[v24,03/25] LSM: provide lsm name and id slot mappings [v24,01/25] LSM: Infrastructure management of the sock security - - - --- 2021-01-26 Casey Schaufler New
[v24,02/25] LSM: Add the lsmblob data structure. [v24,01/25] LSM: Infrastructure management of the sock security 3 - - --- 2021-01-26 Casey Schaufler New
[v24,01/25] LSM: Infrastructure management of the sock security [v24,01/25] LSM: Infrastructure management of the sock security 2 2 - --- 2021-01-26 Casey Schaufler New
smackfs: restrict bytes count in smackfs write functions smackfs: restrict bytes count in smackfs write functions - - - --- 2021-01-24 Sabyrzhan Tasbolatov New
[v5] proc: Allow pid_revalidate() during LOOKUP_RCU [v5] proc: Allow pid_revalidate() during LOOKUP_RCU - - - --- 2021-01-22 Stephen Brennan New
[v5,4/4] integrity: Load mokx variables into the blacklist keyring Add EFI_CERT_X509_GUID support for dbx/mokx entries - - - --- 2021-01-22 Eric Snowberg New
[v5,3/4] certs: Add ability to preload revocation certs Add EFI_CERT_X509_GUID support for dbx/mokx entries 1 - - --- 2021-01-22 Eric Snowberg New
[v5,2/4] certs: Move load_system_certificate_list to a common function Add EFI_CERT_X509_GUID support for dbx/mokx entries 1 - - --- 2021-01-22 Eric Snowberg New
[v5,1/4] certs: Add EFI_CERT_X509_GUID support for dbx entries Add EFI_CERT_X509_GUID support for dbx/mokx entries - 1 - --- 2021-01-22 Eric Snowberg New
[v27,12/12] landlock: Add user and kernel documentation Landlock LSM - 1 - --- 2021-01-21 Mickaël Salaün New
[v27,11/12] samples/landlock: Add a sandbox manager example Landlock LSM - 1 - --- 2021-01-21 Mickaël Salaün New
[v27,09/12] arch: Wire up Landlock syscalls Landlock LSM - - - --- 2021-01-21 Mickaël Salaün New
[v27,08/12] landlock: Add syscall implementations Landlock LSM - 1 - --- 2021-01-21 Mickaël Salaün New
[v27,07/12] landlock: Support filesystem access-control Landlock LSM - - - --- 2021-01-21 Mickaël Salaün New
[v27,06/12] fs,security: Add sb_delete hook Landlock LSM - 1 - --- 2021-01-21 Mickaël Salaün New
[v27,05/12] LSM: Infrastructure management of the superblock Landlock LSM - 1 - --- 2021-01-21 Mickaël Salaün New
[v27,04/12] landlock: Add ptrace restrictions Landlock LSM - 1 - --- 2021-01-21 Mickaël Salaün New
[v27,03/12] landlock: Set up the security framework and manage credentials Landlock LSM - 1 - --- 2021-01-21 Mickaël Salaün New
[v27,02/12] landlock: Add ruleset and domain management Landlock LSM - - - --- 2021-01-21 Mickaël Salaün New
[v27,01/12] landlock: Add object management Landlock LSM - 1 - --- 2021-01-21 Mickaël Salaün New
selinux: measure state and policy capabilities selinux: measure state and policy capabilities - - - --- 2021-01-21 Lakshmi Ramasubramanian New
[v4,10/10] certs: Allow root user to append signed hashes to the blacklist keyring Enable root to update the blacklist keyring - - - --- 2021-01-21 Mickaël Salaün New
[v4,09/10] PKCS#7: Fix missing include Enable root to update the blacklist keyring - 2 - --- 2021-01-21 Mickaël Salaün New
[v4,08/10] certs: Factor out the blacklist hash creation Enable root to update the blacklist keyring 1 - - --- 2021-01-21 Mickaël Salaün New
[v4,07/10] certs/blacklist: fix kernel doc interface issue Enable root to update the blacklist keyring - 2 - --- 2021-01-21 Mickaël Salaün New
[v4,06/10] certs: Make blacklist_vet_description() more strict Enable root to update the blacklist keyring 1 - - --- 2021-01-21 Mickaël Salaün New
[v4,05/10] certs: Replace K{U,G}IDT_INIT() with GLOBAL_ROOT_{U,G}ID Enable root to update the blacklist keyring - - - --- 2021-01-21 Mickaël Salaün New
[v4,04/10] certs: Fix blacklist flag type confusion Enable root to update the blacklist keyring 1 - - --- 2021-01-21 Mickaël Salaün New
[v4,03/10] certs: Fix blacklisted hexadecimal hash string check Enable root to update the blacklist keyring - 1 - --- 2021-01-21 Mickaël Salaün New
[v4,02/10] certs: Check that builtin blacklist hashes are valid Enable root to update the blacklist keyring - - - --- 2021-01-21 Mickaël Salaün New
[v4,01/10] tools/certs: Add print-cert-tbs-hash.sh Enable root to update the blacklist keyring - - - --- 2021-01-21 Mickaël Salaün New
[v6,39/40] xfs: support idmapped mounts idmapped mounts - - - --- 2021-01-21 Christian Brauner New
[v6,38/40] ext4: support idmapped mounts idmapped mounts - - - --- 2021-01-21 Christian Brauner New
[v6,37/40] fat: handle idmapped mounts idmapped mounts - - - --- 2021-01-21 Christian Brauner New
[v6,36/40] tests: add mount_setattr() selftests idmapped mounts - - - --- 2021-01-21 Christian Brauner New
[v6,35/40] fs: introduce MOUNT_ATTR_IDMAP idmapped mounts - 1 - --- 2021-01-21 Christian Brauner New
[v6,34/40] fs: add mount_setattr() idmapped mounts - 1 - --- 2021-01-21 Christian Brauner New
[v6,33/40] fs: add attr_flags_to_mnt_flags helper idmapped mounts - 1 - --- 2021-01-21 Christian Brauner New
[v6,32/40] fs: split out functions to hold writers idmapped mounts - 1 - --- 2021-01-21 Christian Brauner New
[v6,31/40] namespace: only take read lock in do_reconfigure_mnt() idmapped mounts - 1 - --- 2021-01-21 Christian Brauner New
[v6,30/40] mount: make {lock,unlock}_mount_hash() static idmapped mounts - 1 - --- 2021-01-21 Christian Brauner New
« 1 2 ... 61 62 63159 160 »