Toggle navigation
Patchwork
Security modules development
Patches
Bundles
About this project
Login
Register
Mail settings
Show patches with
: State =
Action Required
| 12037 patches
Series
Submitter
State
any
Action Required
New
Under Review
Accepted
Rejected
RFC
Not Applicable
Changes Requested
Awaiting Upstream
Superseded
Deferred
Mainlined
Queued
Needs ACK
Handled Elsewhere
In Next
Search
Archived
No
Yes
Both
Delegate
------
Nobody
holtmann
holtmann
holtmann
agk
mchehab
mchehab
gregkh
gregkh
mtosatti
lethal
lethal
avi
asi123
andmike
cvaroqui
nomura
jbrassow
dtor
kueda
bmarzins
tmlind
jmberg
jmberg
mcgrof
lenb
lenb
kyle
felipebalbi
varenet
helge
helge
khilman
khilman
khilman
khilman
jwoithe
mlin
Zhang Rui
Zhang Rui
iksaif
cjackiewicz
hmh
jbarnes
jbarnes
jbarnes
willy
snitzer
iwamatsu
dougsland
mjg59
rafael
rafael
rafael
ericvh@gmail.com
ykzhao
venkip
sandeen
pwsan
lucho@ionkov.net
rminnich
anholt
aystarik
roland
shefty
mason
glikely
krh
djbw
djbw
djbw
cmarinas
doyu
jrn
sage
tomba
mmarek
cjb
trondmy
jikos
bcousson
jic23
olof
olof
olof
nsekhar
weiny2
horms
horms
bwidawsk
bwidawsk
shemminger
eulfhan
josef
josef
josef
dianders
jpan9
hal
kdave
bleung
evalenti
jlbec
bhelgaas
vkoul
vkoul
szlin
markgross
tagr
tiwai
vireshk
mmind
dledford
geert
geert
herbert
herbert
kvalo
kvalo
kvalo
bentiss
arend
rzwisler
stellarhopper
stellarhopper
jejb
matthias_bgg
dvhart
axboe
axboe
pcmoore
pcmoore
pcmoore
mkp
mkp
stefan_schmidt
leon
lucvoo
jsakkine
jsakkine
jsakkine
bamse
bamse
demarchi
krzk
groeck
groeck
sboyd
sboyd
mturquette
mturquette
0andriy
carlocaione
luca
dgc
kbingham
derosier
narmstrong
narmstrong
atull
tytso
tytso
djwong
bvanassche
omos
jpirko
jpirko
GustavoARSilva
pkshih
patersonc
brauner
shuahkh
shuahkh
shuahkh
palmer
palmer
jgg
Kishon
idosch
labbott
jsimmons
broonie
broonie
broonie
mricon
mricon
mricon
kees
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
arnd
linusw
perfinion
bbrezillon
bachradsusi
rostedt
rostedt
kholk
nbd
ebiggers
ebiggers
pavelm
sds
m0reeze
ganis
jwcart2
matttbe
andmur01
lorpie01
chanwoochoi
dlezcano
jhedberg
vudentz
robertfoss
bgix
tedd_an
tsbogend
wens
wcrobert
robher
kstewart
kwilczynski
hansg
bpf
netdev
dsa
ethtool
netdrv
martineau
abelloni
trix
pabeni
mani_sadhasivam
liusong6
mjp
tohojo
pmalani
prestwoj
prestwoj
dhowells
tzungbi
conchuod
paulmck
jes
mtkaczyk
colyli
pateldipen1984
iweiny
iweiny
bjorn
mhiramat
JanKiszka
jaegeuk
mraynal
aring
konradybcio
ij
Hailan
jstitt007
denkenz
denkenz
mkorenbl
jjohnson
frank_li
geliang
mdraidci
Apply
«
1
2
3
4
…
120
121
»
Patch
Series
A/R/T
S/W/F
Date
Submitter
Delegate
State
[2/2] ima: evm: Rename *_post_path_mknod() to *_path_post_mknod()
[1/2] security: Handle dentries without inode in security_path_post_mknod()
- - -
-
-
-
2024-03-29
Roberto Sassu
New
[1/2] security: Handle dentries without inode in security_path_post_mknod()
[1/2] security: Handle dentries without inode in security_path_post_mknod()
- - -
-
-
-
2024-03-29
Roberto Sassu
New
[v2] landlock: Add abstract unix socket connect restrictions
[v2] landlock: Add abstract unix socket connect restrictions
- - -
-
-
-
2024-03-28
TaheraFahimi
New
[v16,20/20] documentation: add ipe documentation
Integrity Policy Enforcement LSM (IPE)
- - -
-
-
-
2024-03-28
Fan Wu
New
[v16,19/20] ipe: kunit test for parser
Integrity Policy Enforcement LSM (IPE)
- - -
-
-
-
2024-03-28
Fan Wu
New
[v16,18/20] scripts: add boot policy generation program
Integrity Policy Enforcement LSM (IPE)
- - -
-
-
-
2024-03-28
Fan Wu
New
[v16,17/20] ipe: enable support for fs-verity as a trust provider
Integrity Policy Enforcement LSM (IPE)
- - -
-
-
-
2024-03-28
Fan Wu
New
[v16,16/20] fsverity: consume fsverity built-in signatures via LSM hook
Integrity Policy Enforcement LSM (IPE)
- - -
-
-
-
2024-03-28
Fan Wu
New
[v16,15/20] security: add security_inode_setintegrity() hook
Integrity Policy Enforcement LSM (IPE)
- - -
-
-
-
2024-03-28
Fan Wu
New
[v16,14/20] ipe: add support for dm-verity as a trust provider
Integrity Policy Enforcement LSM (IPE)
- - -
-
-
-
2024-03-28
Fan Wu
New
[v16,13/20] dm verity: consume root hash digest and signature data via LSM hook
Integrity Policy Enforcement LSM (IPE)
- - -
-
-
-
2024-03-28
Fan Wu
New
[v16,12/20] dm: add finalize hook to target_type
Integrity Policy Enforcement LSM (IPE)
- - -
-
-
-
2024-03-28
Fan Wu
New
[v16,11/20] block|security: add LSM blob to block_device
Integrity Policy Enforcement LSM (IPE)
- - -
-
-
-
2024-03-28
Fan Wu
New
[v16,10/20] ipe: add permissive toggle
Integrity Policy Enforcement LSM (IPE)
- - -
-
-
-
2024-03-28
Fan Wu
New
[v16,09/20] uapi|audit|ipe: add ipe auditing support
Integrity Policy Enforcement LSM (IPE)
- - -
-
-
-
2024-03-28
Fan Wu
New
[v16,08/20] ipe: add userspace interface
Integrity Policy Enforcement LSM (IPE)
- - -
-
-
-
2024-03-28
Fan Wu
New
[v16,07/20] security: add new securityfs delete function
Integrity Policy Enforcement LSM (IPE)
- - -
-
-
-
2024-03-28
Fan Wu
New
[v16,06/20] ipe: introduce 'boot_verified' as a trust provider
Integrity Policy Enforcement LSM (IPE)
- - -
-
-
-
2024-03-28
Fan Wu
New
[v16,05/20] initramfs|security: Add a security hook to do_populate_rootfs()
Integrity Policy Enforcement LSM (IPE)
- - -
-
-
-
2024-03-28
Fan Wu
New
[v16,04/20] ipe: add LSM hooks on execution and kernel read
Integrity Policy Enforcement LSM (IPE)
- - -
-
-
-
2024-03-28
Fan Wu
New
[v16,03/20] ipe: add evaluation loop
Integrity Policy Enforcement LSM (IPE)
- - -
-
-
-
2024-03-28
Fan Wu
New
[v16,02/20] ipe: add policy parser
Integrity Policy Enforcement LSM (IPE)
- - -
-
-
-
2024-03-28
Fan Wu
New
[v16,01/20] security: add ipe lsm
Integrity Policy Enforcement LSM (IPE)
- - -
-
-
-
2024-03-28
Fan Wu
New
landlock: Add abstract unix socket connect restrictions
landlock: Add abstract unix socket connect restrictions
- - -
-
-
-
2024-03-28
TaheraFahimi
New
[7/7] drivers: perf: Remove the now superfluous sentinel elements from ctl_table array
[1/7] memory: Remove the now superfluous sentinel element from ctl_table array
- - -
-
-
-
2024-03-28
Joel Granados via B4 Relay
New
[6/7] io_uring: Remove the now superfluous sentinel elements from ctl_table array
[1/7] memory: Remove the now superfluous sentinel element from ctl_table array
- - -
-
-
-
2024-03-28
Joel Granados via B4 Relay
New
[5/7] ipc: Remove the now superfluous sentinel element from ctl_table array
[1/7] memory: Remove the now superfluous sentinel element from ctl_table array
- - -
-
-
-
2024-03-28
Joel Granados via B4 Relay
New
[4/7] initrd: Remove the now superfluous sentinel element from ctl_table array
[1/7] memory: Remove the now superfluous sentinel element from ctl_table array
- - -
-
-
-
2024-03-28
Joel Granados via B4 Relay
New
[3/7] crypto: Remove the now superfluous sentinel element from ctl_table array
[1/7] memory: Remove the now superfluous sentinel element from ctl_table array
- - -
-
-
-
2024-03-28
Joel Granados via B4 Relay
New
[2/7] security: Remove the now superfluous sentinel element from ctl_table array
[1/7] memory: Remove the now superfluous sentinel element from ctl_table array
- - -
-
-
-
2024-03-28
Joel Granados via B4 Relay
New
[1/7] memory: Remove the now superfluous sentinel element from ctl_table array
[1/7] memory: Remove the now superfluous sentinel element from ctl_table array
- - -
-
-
-
2024-03-28
Joel Granados via B4 Relay
New
[0/7] sysctl: Remove sentinel elements from misc directories
- - -
-
-
-
2024-03-28
Joel Granados via B4 Relay
New
LANDLOCK: use kmem_cache for landlock_object
LANDLOCK: use kmem_cache for landlock_object
- - -
-
-
-
2024-03-27
Ayush Tiwari
New
[v13,10/10] fs/ioctl: Add a comment to keep the logic in sync with the Landlock LSM
Landlock: IOCTL support
- - -
-
-
-
2024-03-27
Günther Noack
New
[v13,09/10] MAINTAINERS: Notify Landlock maintainers about changes to fs/ioctl.c
Landlock: IOCTL support
- - -
-
-
-
2024-03-27
Günther Noack
New
[v13,08/10] landlock: Document IOCTL support
Landlock: IOCTL support
- - -
-
-
-
2024-03-27
Günther Noack
New
[v13,07/10] samples/landlock: Add support for LANDLOCK_ACCESS_FS_IOCTL_DEV
Landlock: IOCTL support
- - -
-
-
-
2024-03-27
Günther Noack
New
[v13,06/10] selftests/landlock: Check IOCTL restrictions for named UNIX domain sockets
Landlock: IOCTL support
- - -
-
-
-
2024-03-27
Günther Noack
New
[v13,05/10] selftests/landlock: Test IOCTLs on named pipes
Landlock: IOCTL support
- - -
-
-
-
2024-03-27
Günther Noack
New
[v13,04/10] selftests/landlock: Test ioctl(2) and ftruncate(2) with open(O_PATH)
Landlock: IOCTL support
- - -
-
-
-
2024-03-27
Günther Noack
New
[v13,03/10] selftests/landlock: Test IOCTL with memfds
Landlock: IOCTL support
- - -
-
-
-
2024-03-27
Günther Noack
New
[v13,02/10] selftests/landlock: Test IOCTL support
Landlock: IOCTL support
- - -
-
-
-
2024-03-27
Günther Noack
New
[v13,01/10] landlock: Add IOCTL access right for character and block devices
Landlock: IOCTL support
- - -
-
-
-
2024-03-27
Günther Noack
New
[v1,2/2] selftests/landlock: Improve AF_UNSPEC tests
[v1,1/2] lsm: Check and handle error priority for socket_bind and socket_connect
- - -
-
-
-
2024-03-27
Mickaël Salaün
New
[v1,1/2] lsm: Check and handle error priority for socket_bind and socket_connect
[v1,1/2] lsm: Check and handle error priority for socket_bind and socket_connect
- - -
-
-
-
2024-03-27
Mickaël Salaün
New
[v7,6/6] docs: trusted-encrypted: add DCP as new trust source
DCP as trusted keys backend
- - -
-
-
-
2024-03-27
David Gstir
New
[v7,5/6] docs: document DCP-backed trusted keys kernel params
DCP as trusted keys backend
- 1 -
-
-
-
2024-03-27
David Gstir
New
[v7,4/6] MAINTAINERS: add entry for DCP-based trusted keys
DCP as trusted keys backend
1 - -
-
-
-
2024-03-27
David Gstir
New
[v7,3/6] KEYS: trusted: Introduce NXP DCP-backed trusted keys
DCP as trusted keys backend
- 1 -
-
-
-
2024-03-27
David Gstir
New
[v7,2/6] KEYS: trusted: improve scalability of trust source config
DCP as trusted keys backend
- 1 1
-
-
-
2024-03-27
David Gstir
New
[v7,1/6] crypto: mxs-dcp: Add support for hardware-bound keys
DCP as trusted keys backend
1 1 -
-
-
-
2024-03-27
David Gstir
New
[v2] proc: allow restricting /proc/pid/mem writes
[v2] proc: allow restricting /proc/pid/mem writes
- - -
-
-
-
2024-03-01
Adrian Ratiu
New
[v10,6/7] doc: trusted-encrypted: describe new CAAM trust source
KEYS: trusted: Introduce support for NXP CAAM-based trusted keys
- 2 -
-
-
-
2022-05-13
Ahmad Fatoum
New
[v10,5/7] KEYS: trusted: Introduce support for NXP CAAM-based trusted keys
KEYS: trusted: Introduce support for NXP CAAM-based trusted keys
- 3 5
-
-
-
2022-05-13
Ahmad Fatoum
New
[v10,4/7] crypto: caam - add in-kernel interface for blob generator
KEYS: trusted: Introduce support for NXP CAAM-based trusted keys
- 2 5
-
-
-
2022-05-13
Ahmad Fatoum
New
[v10,3/7] crypto: caam - determine whether CAAM supports blob encap/decap
KEYS: trusted: Introduce support for NXP CAAM-based trusted keys
- 1 1
-
-
-
2022-05-13
Ahmad Fatoum
New
[v10,2/7] KEYS: trusted: allow use of kernel RNG for key material
KEYS: trusted: Introduce support for NXP CAAM-based trusted keys
2 3 3
-
-
-
2022-05-13
Ahmad Fatoum
New
[v10,1/7] KEYS: trusted: allow use of TEE as backend without TCG_TPM support
KEYS: trusted: Introduce support for NXP CAAM-based trusted keys
- 3 5
-
-
-
2022-05-13
Ahmad Fatoum
New
[v2] landlock: Explain how to support Landlock
[v2] landlock: Explain how to support Landlock
- 1 -
-
-
-
2022-05-13
Mickaël Salaün
New
[v4] x86/kexec: Carry forward IMA measurement log on kexec
[v4] x86/kexec: Carry forward IMA measurement log on kexec
- 1 -
-
-
-
2022-05-12
Jonathan McDowell
New
[v1] landlock: Explain how to support Landlock
[v1] landlock: Explain how to support Landlock
- - -
-
-
-
2022-05-12
Mickaël Salaün
New
[-next] apparmor: Fix aa_str_perms() kernel-doc comment
[-next] apparmor: Fix aa_str_perms() kernel-doc comment
1 - -
-
-
-
2022-05-12
Yang Li
New
[v8,4/4] kexec, KEYS, s390: Make use of built-in and secondary keyring for signature verification
Untitled series #640875
2 1 -
-
-
-
2022-05-12
Coiby Xu
New
[v8,3/4] arm64: kexec_file: use more system keyrings to verify kernel image signature
Untitled series #640875
2 - -
-
-
-
2022-05-12
Coiby Xu
New
[v8,2/4] kexec, KEYS: make the code in bzImage64_verify_sig generic
Untitled series #640875
1 1 -
-
-
-
2022-05-12
Coiby Xu
New
loadpin: stop using bdevname
loadpin: stop using bdevname
- - -
-
-
-
2022-05-12
Christoph Hellwig
New
[v7,4/4] kexec, KEYS, s390: Make use of built-in and secondary keyring for signature verification
Untitled series #640797
1 1 -
-
-
-
2022-05-12
Coiby Xu
New
[v7,3/4] arm64: kexec_file: use more system keyrings to verify kernel image signature
Untitled series #640797
2 - -
-
-
-
2022-05-12
Coiby Xu
New
[v7,2/4] kexec, KEYS: make the code in bzImage64_verify_sig generic
Untitled series #640797
1 1 -
-
-
-
2022-05-12
Coiby Xu
New
[v3] x86/kexec: Carry forward IMA measurement log on kexec
[v3] x86/kexec: Carry forward IMA measurement log on kexec
- - -
-
-
-
2022-05-11
Jonathan McDowell
New
[v2] big_keys: Use struct for internal payload
[v2] big_keys: Use struct for internal payload
- - -
-
-
-
2022-05-10
Kees Cook
New
big_keys: Use struct for internal payload
big_keys: Use struct for internal payload
- - -
-
-
-
2022-05-08
Kees Cook
New
[v3,12/12] landlock: Add design choices documentation for filesystem access rights
Landlock: file linking and renaming support
- 1 -
-
-
-
2022-05-06
Mickaël Salaün
New
[v3,11/12] landlock: Document good practices about filesystem policies
Landlock: file linking and renaming support
- 1 -
-
-
-
2022-05-06
Mickaël Salaün
New
[v3,10/12] landlock: Document LANDLOCK_ACCESS_FS_REFER and ABI versioning
Landlock: file linking and renaming support
- 1 -
-
-
-
2022-05-06
Mickaël Salaün
New
[v3,09/12] samples/landlock: Add support for file reparenting
Landlock: file linking and renaming support
- 1 -
-
-
-
2022-05-06
Mickaël Salaün
New
[v3,08/12] selftests/landlock: Add 11 new test suites dedicated to file reparenting
Landlock: file linking and renaming support
- - -
-
-
-
2022-05-06
Mickaël Salaün
New
[v3,07/12] landlock: Add support for file reparenting with LANDLOCK_ACCESS_FS_REFER
Landlock: file linking and renaming support
- 1 -
-
-
-
2022-05-06
Mickaël Salaün
New
[v3,06/12] LSM: Remove double path_rename hook calls for RENAME_EXCHANGE
Landlock: file linking and renaming support
2 1 -
-
-
-
2022-05-06
Mickaël Salaün
New
[v3,05/12] landlock: Move filesystem helpers and add a new one
Landlock: file linking and renaming support
- 1 -
-
-
-
2022-05-06
Mickaël Salaün
New
[v3,04/12] landlock: Fix same-layer rule unions
Landlock: file linking and renaming support
- 1 -
-
-
-
2022-05-06
Mickaël Salaün
New
[v3,03/12] landlock: Create find_rule() from unmask_layers()
Landlock: file linking and renaming support
- 1 -
-
-
-
2022-05-06
Mickaël Salaün
New
[v3,02/12] landlock: Reduce the maximum number of layers to 16
Landlock: file linking and renaming support
- 1 -
-
-
-
2022-05-06
Mickaël Salaün
New
[v3,01/12] landlock: Define access_mask_t to enforce a consistent access mask size
Landlock: file linking and renaming support
- 1 -
-
-
-
2022-05-06
Mickaël Salaün
New
[v2,10/10] selftests/landlock: Test landlock_create_ruleset(2) argument check ordering
Minor Landlock fixes and new tests
- - -
-
-
-
2022-05-06
Mickaël Salaün
New
[v2,09/10] landlock: Change landlock_restrict_self(2) check ordering
Minor Landlock fixes and new tests
- - -
-
-
-
2022-05-06
Mickaël Salaün
New
[v2,08/10] landlock: Change landlock_add_rule(2) argument check ordering
Minor Landlock fixes and new tests
- - -
-
-
-
2022-05-06
Mickaël Salaün
New
[v2,07/10] selftests/landlock: Add tests for O_PATH
Minor Landlock fixes and new tests
- - -
-
-
-
2022-05-06
Mickaël Salaün
New
[v2,06/10] selftests/landlock: Fully test file rename with "remove" access
Minor Landlock fixes and new tests
- - -
-
-
-
2022-05-06
Mickaël Salaün
New
[v2,05/10] selftests/landlock: Extend access right tests to directories
Minor Landlock fixes and new tests
- - -
-
-
-
2022-05-06
Mickaël Salaün
New
[v2,04/10] selftests/landlock: Add tests for unknown access rights
Minor Landlock fixes and new tests
- - -
-
-
-
2022-05-06
Mickaël Salaün
New
[v2,03/10] selftests/landlock: Extend tests for minimal valid attribute size
Minor Landlock fixes and new tests
- - -
-
-
-
2022-05-06
Mickaël Salaün
New
[v2,02/10] selftests/landlock: Make tests build with old libc
Minor Landlock fixes and new tests
- - -
-
-
-
2022-05-06
Mickaël Salaün
New
[v2,01/10] landlock: Fix landlock_add_rule(2) documentation
Minor Landlock fixes and new tests
- - -
-
-
-
2022-05-06
Mickaël Salaün
New
[v1,7/7] samples/landlock: Format with clang-format
Landlock: Clean up coding style with clang-format
- - -
-
-
-
2022-05-06
Mickaël Salaün
New
[v1,6/7] samples/landlock: Add clang-format exceptions
Landlock: Clean up coding style with clang-format
- - -
-
-
-
2022-05-06
Mickaël Salaün
New
[v1,5/7] selftests/landlock: Format with clang-format
Landlock: Clean up coding style with clang-format
- - -
-
-
-
2022-05-06
Mickaël Salaün
New
[v1,4/7] selftests/landlock: Normalize array assignment
Landlock: Clean up coding style with clang-format
- - -
-
-
-
2022-05-06
Mickaël Salaün
New
[v1,3/7] selftests/landlock: Add clang-format exceptions
Landlock: Clean up coding style with clang-format
- - -
-
-
-
2022-05-06
Mickaël Salaün
New
[v1,2/7] landlock: Format with clang-format
Landlock: Clean up coding style with clang-format
- - -
-
-
-
2022-05-06
Mickaël Salaün
New
«
1
2
3
4
…
120
121
»