Toggle navigation
Patchwork
Security modules development
Patches
Bundles
About this project
Login
Register
Mail settings
Show patches with
: Archived =
No
| 4908 patches
Series
Submitter
State
any
Action Required
New
Under Review
Accepted
Rejected
RFC
Not Applicable
Changes Requested
Awaiting Upstream
Superseded
Deferred
Mainlined
Queued
Needs ACK
Handled Elsewhere
In Next
Search
Archived
No
Yes
Both
Delegate
------
Nobody
holtmann
holtmann
holtmann
agk
mchehab
mchehab
gregkh
gregkh
mtosatti
lethal
lethal
avi
cvaroqui
jbrassow
mikulas
dtor
bmarzins
tmlind
jmberg
jmberg
mcgrof
mcgrof
mcgrof
lenb
lenb
kyle
felipebalbi
varenet
helge
helge
khilman
khilman
khilman
khilman
jwoithe
mlin
Zhang Rui
Zhang Rui
iksaif
cjackiewicz
hmh
jbarnes
jbarnes
jbarnes
willy
snitzer
iwamatsu
dougsland
mjg59
rafael
rafael
rafael
ericvh@gmail.com
ykzhao
venkip
sandeen
pwsan
lucho@ionkov.net
rminnich
anholt
aystarik
roland
shefty
mason
glikely
krh
djbw
djbw
djbw
cmarinas
doyu
jrn
sage
tomba
mmarek
cjb
trondmy
jikos
bcousson
jic23
olof
olof
olof
nsekhar
weiny2
horms
horms
bwidawsk
bwidawsk
shemminger
eulfhan
josef
josef
josef
dianders
jpan9
hal
kdave
bleung
evalenti
jlbec
wsa
bhelgaas
vkoul
vkoul
szlin
davejiang
markgross
tagr
tiwai
vireshk
mmind
dledford
geert
geert
herbert
herbert
kvalo
kvalo
kvalo
bentiss
arend
rzwisler
stellarhopper
stellarhopper
jejb
matthias_bgg
dvhart
axboe
axboe
pcmoore
pcmoore
pcmoore
mkp
mkp
stefan_schmidt
leon
lucvoo
jsakkine
jsakkine
jsakkine
bamse
bamse
demarchi
krzk
groeck
groeck
sboyd
sboyd
mturquette
mturquette
0andriy
carlocaione
luca
dgc
kbingham
derosier
narmstrong
narmstrong
atull
tytso
tytso
djwong
bvanassche
omos
jpirko
jpirko
GustavoARSilva
pkshih
patersonc
brauner
shuahkh
shuahkh
shuahkh
palmer
palmer
jgg
Kishon
idosch
labbott
jsimmons
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
lfadmin
broonie
broonie
broonie
mricon
mricon
mricon
kees
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
arnd
linusw
perfinion
bbrezillon
bachradsusi
rostedt
rostedt
kholk
nbd
ebiggers
ebiggers
pavelm
sds
m0reeze
ganis
jwcart2
matttbe
andmur01
lorpie01
chanwoochoi
dlezcano
jhedberg
vudentz
robertfoss
bgix
tedd_an
tsbogend
wens
wcrobert
robher
kstewart
kwilczynski
hansg
bpf
netdev
dsa
ethtool
netdrv
martineau
abelloni
trix
pabeni
mani_sadhasivam
mlimonci
liusong6
mjp
tohojo
pmalani
prestwoj
prestwoj
dhowells
tzungbi
conchuod
paulmck
jes
mtkaczyk
colyli
cem
pateldipen1984
iweiny
iweiny
bjorn
mhiramat
JanKiszka
jaegeuk
mraynal
aring
konradybcio
ij
Hailan
jstitt007
denkenz
denkenz
mkorenbl
jjohnson
frank_li
geliang
mdraidci
mdraidci
peluse
joelgranados
Apply
«
1
2
...
15
16
17
…
49
50
»
Patch
Series
A/R/T
S/W/F
Date
Submitter
Delegate
State
[v3,6/7] kunit: Print last test location on fault
Handle faults in KUnit tests
- 1 -
-
-
-
2024-03-19
Mickaël Salaün
Handled Elsewhere
[v3,5/7] kunit: Fix KUNIT_SUCCESS() calls in iov_iter tests
Handle faults in KUnit tests
- 2 -
-
-
-
2024-03-19
Mickaël Salaün
Handled Elsewhere
[v3,4/7] kunit: Handle test faults
Handle faults in KUnit tests
- 2 1
-
-
-
2024-03-19
Mickaël Salaün
Handled Elsewhere
[v3,3/7] kunit: Fix timeout message
Handle faults in KUnit tests
- 3 -
-
-
-
2024-03-19
Mickaël Salaün
Handled Elsewhere
[v3,2/7] kunit: Fix kthread reference
Handle faults in KUnit tests
- 3 -
-
-
-
2024-03-19
Mickaël Salaün
Handled Elsewhere
[v3,1/7] kunit: Handle thread creation error
Handle faults in KUnit tests
- 3 -
-
-
-
2024-03-19
Mickaël Salaün
Handled Elsewhere
[bpf-next,5/5] bpf: Fix compare error in function retval_range_within
Fix kernel panic caused by bpf lsm return value
- - -
-
-
-
2024-03-16
Xu Kuohai
pcmoore
Superseded
[bpf-next,4/5] bpf, lsm: Check bpf lsm hook return values in verifier
Fix kernel panic caused by bpf lsm return value
- - -
-
-
-
2024-03-16
Xu Kuohai
pcmoore
Superseded
[bpf-next,3/5] bpf, lsm: Add function to read lsm hook return value range
Fix kernel panic caused by bpf lsm return value
- - -
-
-
-
2024-03-16
Xu Kuohai
pcmoore
Superseded
[bpf-next,2/5] bpf, lsm: Add return value range description for lsm hook
Fix kernel panic caused by bpf lsm return value
- - -
-
-
-
2024-03-16
Xu Kuohai
pcmoore
Superseded
[bpf-next,1/5] bpf, lsm: Annotate lsm hook return integer with new macro LSM_RET_INT
Fix kernel panic caused by bpf lsm return value
- - -
-
-
-
2024-03-16
Xu Kuohai
pcmoore
Superseded
[RFC,v15,21/21] documentation: add ipe documentation
Integrity Policy Enforcement LSM (IPE)
- - -
-
-
-
2024-03-16
Fan Wu
pcmoore
Changes Requested
[RFC,v15,20/21] ipe: kunit test for parser
Integrity Policy Enforcement LSM (IPE)
- - -
-
-
-
2024-03-16
Fan Wu
pcmoore
Changes Requested
[RFC,v15,19/21] scripts: add boot policy generation program
Integrity Policy Enforcement LSM (IPE)
- - -
-
-
-
2024-03-16
Fan Wu
pcmoore
Changes Requested
[RFC,v15,18/21] ipe: enable support for fs-verity as a trust provider
Integrity Policy Enforcement LSM (IPE)
- - -
-
-
-
2024-03-16
Fan Wu
pcmoore
Changes Requested
[RFC,v15,17/21] fsverity: consume builtin signature via LSM hook
Integrity Policy Enforcement LSM (IPE)
- - -
-
-
-
2024-03-16
Fan Wu
pcmoore
Changes Requested
[RFC,v15,16/21] security: add security_inode_setintegrity() hook
Integrity Policy Enforcement LSM (IPE)
- - -
-
-
-
2024-03-16
Fan Wu
pcmoore
Changes Requested
[RFC,v15,15/21] ipe: add support for dm-verity as a trust provider
Integrity Policy Enforcement LSM (IPE)
- - -
-
-
-
2024-03-16
Fan Wu
pcmoore
Changes Requested
[RFC,v15,14/21] dm verity: consume root hash digest and signature data via LSM hook
Integrity Policy Enforcement LSM (IPE)
- - -
-
-
-
2024-03-16
Fan Wu
pcmoore
Changes Requested
[RFC,v15,13/21] dm: add finalize hook to target_type
Integrity Policy Enforcement LSM (IPE)
- - -
-
-
-
2024-03-16
Fan Wu
pcmoore
Changes Requested
[RFC,v15,12/21] security: add security_bdev_setintegrity() hook
Integrity Policy Enforcement LSM (IPE)
- - -
-
-
-
2024-03-16
Fan Wu
pcmoore
Changes Requested
[RFC,v15,11/21] block|security: add LSM blob to block_device
Integrity Policy Enforcement LSM (IPE)
- 1 -
-
-
-
2024-03-16
Fan Wu
pcmoore
Changes Requested
[RFC,v15,10/21] ipe: add permissive toggle
Integrity Policy Enforcement LSM (IPE)
- - -
-
-
-
2024-03-16
Fan Wu
pcmoore
Changes Requested
[RFC,v15,09/21] uapi|audit|ipe: add ipe auditing support
Integrity Policy Enforcement LSM (IPE)
- - -
-
-
-
2024-03-16
Fan Wu
pcmoore
Changes Requested
[RFC,v15,08/21] ipe: add userspace interface
Integrity Policy Enforcement LSM (IPE)
- - -
-
-
-
2024-03-16
Fan Wu
pcmoore
Changes Requested
[RFC,v15,07/21] security: add new securityfs delete function
Integrity Policy Enforcement LSM (IPE)
- - -
-
-
-
2024-03-16
Fan Wu
pcmoore
Changes Requested
[RFC,v15,06/21] ipe: introduce 'boot_verified' as a trust provider
Integrity Policy Enforcement LSM (IPE)
- - -
-
-
-
2024-03-16
Fan Wu
pcmoore
Changes Requested
[RFC,v15,05/21] initramfs|security: Add a security hook to do_populate_rootfs()
Integrity Policy Enforcement LSM (IPE)
- - -
-
-
-
2024-03-16
Fan Wu
pcmoore
Changes Requested
[RFC,v15,04/21] ipe: add LSM hooks on execution and kernel read
Integrity Policy Enforcement LSM (IPE)
- - -
-
-
-
2024-03-16
Fan Wu
pcmoore
Changes Requested
[RFC,v15,03/21] ipe: add evaluation loop
Integrity Policy Enforcement LSM (IPE)
- - -
-
-
-
2024-03-16
Fan Wu
pcmoore
Changes Requested
[RFC,v15,02/21] ipe: add policy parser
Integrity Policy Enforcement LSM (IPE)
- - -
-
-
-
2024-03-16
Fan Wu
pcmoore
Changes Requested
[RFC,v15,01/21] security: add ipe lsm
Integrity Policy Enforcement LSM (IPE)
- - -
-
-
-
2024-03-16
Fan Wu
pcmoore
Changes Requested
[11/11] sysctl: treewide: constify the ctl_table argument of handlers
sysctl: treewide: constify ctl_table argument of sysctl handlers
- - -
-
-
-
2024-03-15
Thomas Weißschuh
pcmoore
Handled Elsewhere
[10/11] sysctl: constify ctl_table arguments of utility function
sysctl: treewide: constify ctl_table argument of sysctl handlers
- - -
-
-
-
2024-03-15
Thomas Weißschuh
pcmoore
Handled Elsewhere
[09/11] ipvs: constify ctl_table arguments of utility functions
sysctl: treewide: constify ctl_table argument of sysctl handlers
- - -
-
-
-
2024-03-15
Thomas Weißschuh
pcmoore
Handled Elsewhere
[08/11] ipv6/ndisc: constify ctl_table arguments of utility function
sysctl: treewide: constify ctl_table argument of sysctl handlers
- - -
-
-
-
2024-03-15
Thomas Weißschuh
pcmoore
Handled Elsewhere
[07/11] ipv6/addrconf: constify ctl_table arguments of utility functions
sysctl: treewide: constify ctl_table argument of sysctl handlers
- - -
-
-
-
2024-03-15
Thomas Weißschuh
pcmoore
Handled Elsewhere
[06/11] ipv4/sysctl: constify ctl_table arguments of utility functions
sysctl: treewide: constify ctl_table argument of sysctl handlers
- - -
-
-
-
2024-03-15
Thomas Weißschuh
pcmoore
Handled Elsewhere
[05/11] neighbour: constify ctl_table arguments of utility function
sysctl: treewide: constify ctl_table argument of sysctl handlers
- - -
-
-
-
2024-03-15
Thomas Weißschuh
pcmoore
Handled Elsewhere
[04/11] utsname: constify ctl_table arguments of utility function
sysctl: treewide: constify ctl_table argument of sysctl handlers
- - -
-
-
-
2024-03-15
Thomas Weißschuh
pcmoore
Handled Elsewhere
[03/11] hugetlb: constify ctl_table arguments of utility functions
sysctl: treewide: constify ctl_table argument of sysctl handlers
- - -
-
-
-
2024-03-15
Thomas Weißschuh
pcmoore
Handled Elsewhere
[02/11] cgroup: bpf: constify ctl_table arguments and fields
sysctl: treewide: constify ctl_table argument of sysctl handlers
- - -
-
-
-
2024-03-15
Thomas Weißschuh
pcmoore
Handled Elsewhere
[01/11] stackleak: don't modify ctl_table argument
sysctl: treewide: constify ctl_table argument of sysctl handlers
1 - -
-
-
-
2024-03-15
Thomas Weißschuh
pcmoore
Handled Elsewhere
[RFC,1/2] lsm: introduce new hook security_vm_execstack
[RFC,1/2] lsm: introduce new hook security_vm_execstack
- - -
-
-
-
2024-03-15
Christian Göttsche
pcmoore
Under Review
[RFC,2/2] selinux: wire up new execstack LSM hook
[RFC,1/2] lsm: introduce new hook security_vm_execstack
- - -
-
-
-
2024-03-15
Christian Göttsche
pcmoore
Under Review
[RFC] fs: Add an use vfs_get_ioctl_handler()
[RFC] fs: Add an use vfs_get_ioctl_handler()
- - -
-
-
-
2024-03-15
Mickaël Salaün
pcmoore
RFC
[1/2] yama: document function parameter
[1/2] yama: document function parameter
- 3 -
-
-
-
2024-03-15
Christian Göttsche
pcmoore
Handled Elsewhere
[2/2] apparmor: fix typo in kernel doc
[1/2] yama: document function parameter
1 1 -
-
-
-
2024-03-15
Christian Göttsche
Handled Elsewhere
[10/10] coccinelle: add script for capable_any()
[01/10] capability: introduce new capable flag CAP_OPT_NOAUDIT_ONDENY
- - -
-
-
-
2024-03-15
Christian Göttsche
pcmoore
Under Review
[09/10] bpf: use new capable_any functionality
[01/10] capability: introduce new capable flag CAP_OPT_NOAUDIT_ONDENY
1 - -
-
-
-
2024-03-15
Christian Göttsche
pcmoore
Under Review
[08/10] net: use new capable_any functionality
[01/10] capability: introduce new capable flag CAP_OPT_NOAUDIT_ONDENY
- 1 -
-
-
-
2024-03-15
Christian Göttsche
pcmoore
Under Review
[07/10] kernel: use new capable_any functionality
[01/10] capability: introduce new capable flag CAP_OPT_NOAUDIT_ONDENY
- 2 -
-
-
-
2024-03-15
Christian Göttsche
pcmoore
Under Review
[06/10] fs: use new capable_any functionality
[01/10] capability: introduce new capable flag CAP_OPT_NOAUDIT_ONDENY
1 - -
-
-
-
2024-03-15
Christian Göttsche
pcmoore
Under Review
[05/10] drivers: use new capable_any functionality
[01/10] capability: introduce new capable flag CAP_OPT_NOAUDIT_ONDENY
2 - -
-
-
-
2024-03-15
Christian Göttsche
pcmoore
Under Review
[04/10] block: use new capable_any functionality
[01/10] capability: introduce new capable flag CAP_OPT_NOAUDIT_ONDENY
- - -
-
-
-
2024-03-15
Christian Göttsche
pcmoore
Under Review
[03/10] capability: use new capable_any functionality
[01/10] capability: introduce new capable flag CAP_OPT_NOAUDIT_ONDENY
1 - -
-
-
-
2024-03-15
Christian Göttsche
pcmoore
Under Review
[02/10] capability: add any wrappers to test for multiple caps with exactly one audit message
[01/10] capability: introduce new capable flag CAP_OPT_NOAUDIT_ONDENY
- 1 -
-
-
-
2024-03-15
Christian Göttsche
pcmoore
Under Review
[01/10] capability: introduce new capable flag CAP_OPT_NOAUDIT_ONDENY
[01/10] capability: introduce new capable flag CAP_OPT_NOAUDIT_ONDENY
2 1 -
-
-
-
2024-03-15
Christian Göttsche
pcmoore
Under Review
[GIT,PULL] lsm/lsm-pr-20240314
[GIT,PULL] lsm/lsm-pr-20240314
- - -
-
-
-
2024-03-14
Paul Moore
pcmoore
Accepted
lsm: handle the NULL buffer case in lsm_fill_user_ctx()
lsm: handle the NULL buffer case in lsm_fill_user_ctx()
1 - -
-
-
-
2024-03-14
Paul Moore
pcmoore
Accepted
[v3] LSM: use 32 bit compatible data types in LSM syscalls.
[v3] LSM: use 32 bit compatible data types in LSM syscalls.
- - -
-
-
-
2024-03-13
Casey Schaufler
pcmoore
Accepted
[GIT,PULL] Landlock updates for v6.9
[GIT,PULL] Landlock updates for v6.9
- - -
-
-
-
2024-03-13
Mickaël Salaün
pcmoore
Handled Elsewhere
[v2] LSM: use 32 bit compatible data types in LSM syscalls.
[v2] LSM: use 32 bit compatible data types in LSM syscalls.
- - -
-
-
-
2024-03-13
Casey Schaufler
pcmoore
Changes Requested
[GIT,PULL] lsm/lsm-pr-20240312
[GIT,PULL] lsm/lsm-pr-20240312
- - -
-
-
-
2024-03-12
Paul Moore
pcmoore
Accepted
[GIT,PULL] selinux/selinux-pr-20240312
[GIT,PULL] selinux/selinux-pr-20240312
- - -
-
-
-
2024-03-12
Paul Moore
pcmoore
Handled Elsewhere
LSM: use 32 bit compatible data types in LSM syscalls.
LSM: use 32 bit compatible data types in LSM syscalls.
- - -
-
-
-
2024-03-12
Casey Schaufler
pcmoore
Changes Requested
[GIT,PULL] Smack patches for 6.9
[GIT,PULL] Smack patches for 6.9
- - -
-
-
-
2024-03-11
Casey Schaufler
pcmoore
Handled Elsewhere
[RFC,8/8] clavis: Introduce new LSM called clavis
Clavis LSM
- - -
-
-
-
2024-03-11
Eric Snowberg
pcmoore
Changes Requested
[RFC,7/8] clavis: Introduce a new key type called clavis_key_acl
Clavis LSM
- - -
-
-
-
2024-03-11
Eric Snowberg
pcmoore
Changes Requested
[RFC,6/8] keys: Add ability to track intended usage of the public key
Clavis LSM
- - -
-
-
-
2024-03-11
Eric Snowberg
pcmoore
Changes Requested
[RFC,5/8] keys: Add new verification type (VERIFYING_CLAVIS_SIGNATURE)
Clavis LSM
- - -
-
-
-
2024-03-11
Eric Snowberg
pcmoore
Changes Requested
[RFC,4/8] clavis: Prevent clavis boot param from changing during kexec
Clavis LSM
- - -
-
-
-
2024-03-11
Eric Snowberg
pcmoore
Changes Requested
[RFC,3/8] efi: Make clavis boot param persist across kexec
Clavis LSM
- - -
-
-
-
2024-03-11
Eric Snowberg
pcmoore
Changes Requested
[RFC,2/8] clavis: Introduce a new system keyring called clavis
Clavis LSM
- - -
-
-
-
2024-03-11
Eric Snowberg
pcmoore
Changes Requested
[RFC,1/8] certs: Introduce ability to link to a system key
Clavis LSM
- - -
-
-
-
2024-03-11
Eric Snowberg
pcmoore
Changes Requested
[v10,9/9] landlock: Document IOCTL support
Landlock: IOCTL support
- - -
-
-
-
2024-03-09
Günther Noack
pcmoore
Handled Elsewhere
[v10,8/9] samples/landlock: Add support for LANDLOCK_ACCESS_FS_IOCTL_DEV
Landlock: IOCTL support
- - -
-
-
-
2024-03-09
Günther Noack
pcmoore
Handled Elsewhere
[v10,7/9] selftests/landlock: Check IOCTL restrictions for named UNIX domain sockets
Landlock: IOCTL support
- - -
-
-
-
2024-03-09
Günther Noack
pcmoore
Handled Elsewhere
[v10,6/9] selftests/landlock: Test IOCTLs on named pipes
Landlock: IOCTL support
- - -
-
-
-
2024-03-09
Günther Noack
pcmoore
Handled Elsewhere
[v10,5/9] selftests/landlock: Test ioctl(2) and ftruncate(2) with open(O_PATH)
Landlock: IOCTL support
- - -
-
-
-
2024-03-09
Günther Noack
pcmoore
Handled Elsewhere
[v10,4/9] selftests/landlock: Test IOCTL with memfds
Landlock: IOCTL support
- - -
-
-
-
2024-03-09
Günther Noack
pcmoore
Handled Elsewhere
[v10,3/9] selftests/landlock: Test IOCTL support
Landlock: IOCTL support
- - -
-
-
-
2024-03-09
Günther Noack
pcmoore
Handled Elsewhere
[v10,2/9] landlock: Add IOCTL access right for character and block devices
Landlock: IOCTL support
- - -
-
-
-
2024-03-09
Günther Noack
pcmoore
Handled Elsewhere
[v10,1/9] security: Create security_file_vfs_ioctl hook
Landlock: IOCTL support
- - -
-
-
-
2024-03-09
Günther Noack
pcmoore
Rejected
[v6,6/6] docs: trusted-encrypted: add DCP as new trust source
DCP as trusted keys backend
- - -
-
-
-
2024-03-07
David Gstir
Handled Elsewhere
[v6,5/6] docs: document DCP-backed trusted keys kernel params
DCP as trusted keys backend
- - -
-
-
-
2024-03-07
David Gstir
Handled Elsewhere
[v6,4/6] MAINTAINERS: add entry for DCP-based trusted keys
DCP as trusted keys backend
1 - -
-
-
-
2024-03-07
David Gstir
Handled Elsewhere
[v6,3/6] KEYS: trusted: Introduce NXP DCP-backed trusted keys
DCP as trusted keys backend
- 1 -
-
-
-
2024-03-07
David Gstir
Handled Elsewhere
[v6,2/6] KEYS: trusted: improve scalability of trust source config
DCP as trusted keys backend
- - -
-
-
-
2024-03-07
David Gstir
Handled Elsewhere
[v6,1/6] crypto: mxs-dcp: Add support for hardware-bound keys
DCP as trusted keys backend
1 1 -
-
-
-
2024-03-07
David Gstir
Handled Elsewhere
samples/landlock: Don't error out if a file path cannot be opened
samples/landlock: Don't error out if a file path cannot be opened
- 1 -
-
-
-
2024-03-07
Mickaël Salaün
Handled Elsewhere
evm: Change vfs_getxattr() with __vfs_getxattr() in evm_calc_hmac_or_hash()
evm: Change vfs_getxattr() with __vfs_getxattr() in evm_calc_hmac_or_hash()
- - -
-
-
-
2024-03-07
Roberto Sassu
Handled Elsewhere
landlock: Use f_cred in security_file_open() hook
landlock: Use f_cred in security_file_open() hook
- 1 -
-
-
-
2024-03-07
Mickaël Salaün
Handled Elsewhere
[2/2] landlock: Rename "ptrace" files to "task"
[1/2] landlock: Simplify current_check_access_socket()
- - -
-
-
-
2024-03-07
Mickaël Salaün
Handled Elsewhere
[1/2] landlock: Simplify current_check_access_socket()
[1/2] landlock: Simplify current_check_access_socket()
- - -
-
-
-
2024-03-07
Mickaël Salaün
Handled Elsewhere
[RFC,v14,19/19] documentation: add ipe documentation
Integrity Policy Enforcement LSM (IPE)
- - -
-
-
-
2024-03-06
Fan Wu
pcmoore
Changes Requested
[RFC,v14,18/19] ipe: kunit test for parser
Integrity Policy Enforcement LSM (IPE)
- - -
-
-
-
2024-03-06
Fan Wu
pcmoore
Changes Requested
[RFC,v14,17/19] scripts: add boot policy generation program
Integrity Policy Enforcement LSM (IPE)
- - -
-
-
-
2024-03-06
Fan Wu
pcmoore
Changes Requested
[RFC,v14,16/19] ipe: enable support for fs-verity as a trust provider
Integrity Policy Enforcement LSM (IPE)
- - -
-
-
-
2024-03-06
Fan Wu
pcmoore
Changes Requested
[RFC,v14,15/19] fsverity: consume builtin signature via LSM hook
Integrity Policy Enforcement LSM (IPE)
- - -
-
-
-
2024-03-06
Fan Wu
pcmoore
Changes Requested
«
1
2
...
15
16
17
…
49
50
»