Show patches with: Archived = No       |   4912 patches
« 1 2 ... 23 24 2549 50 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
[v3,2/5] smack: Handle SMACK64TRANSMUTE in smack_inode_setsecurity() Smack transmute fixes - - - --- 2023-11-16 Roberto Sassu Handled Elsewhere
[v3,1/5] smack: Set SMACK64TRANSMUTE only for dirs in smack_inode_setxattr() Smack transmute fixes - - - --- 2023-11-16 Roberto Sassu Handled Elsewhere
MAINTAINERS: update the LSM entry MAINTAINERS: update the LSM entry - - - --- 2023-11-15 Paul Moore pcmoore Accepted
mailmap: add entries for Serge Hallyn's dead accounts mailmap: add entries for Serge Hallyn's dead accounts - - - --- 2023-11-13 Paul Moore pcmoore Accepted
[RFC,v2,19/19] virt: Add Heki KUnit tests Hypervisor-Enforced Kernel Integrity - - - --- 2023-11-13 Mickaël Salaün Handled Elsewhere
[RFC,v2,18/19] heki: x86: Protect guest kernel memory using the KVM hypervisor Hypervisor-Enforced Kernel Integrity - - - --- 2023-11-13 Mickaël Salaün Handled Elsewhere
[RFC,v2,17/19] heki: x86: Update permissions counters during text patching Hypervisor-Enforced Kernel Integrity - - - --- 2023-11-13 Mickaël Salaün Handled Elsewhere
[RFC,v2,16/19] heki: x86: Update permissions counters when guest page permissions change Hypervisor-Enforced Kernel Integrity - - - --- 2023-11-13 Mickaël Salaün Handled Elsewhere
[RFC,v2,15/19] heki: x86: Initialize permissions counters for pages in vmap()/vunmap() Hypervisor-Enforced Kernel Integrity - - - --- 2023-11-13 Mickaël Salaün Handled Elsewhere
[RFC,v2,14/19] heki: x86: Initialize permissions counters for pages mapped into KVA Hypervisor-Enforced Kernel Integrity - - - --- 2023-11-13 Mickaël Salaün Handled Elsewhere
[RFC,v2,13/19] heki: Implement a kernel page table walker Hypervisor-Enforced Kernel Integrity - - - --- 2023-11-13 Mickaël Salaün Handled Elsewhere
[RFC,v2,12/19] x86: Implement the Memory Table feature to store arbitrary per-page data Hypervisor-Enforced Kernel Integrity - - - --- 2023-11-13 Mickaël Salaün Handled Elsewhere
[RFC,v2,11/19] KVM: x86: Add new hypercall to set EPT permissions Hypervisor-Enforced Kernel Integrity - - - --- 2023-11-13 Mickaël Salaün Handled Elsewhere
[RFC,v2,10/19] KVM: x86: Implement per-guest-page permissions Hypervisor-Enforced Kernel Integrity - - - --- 2023-11-13 Mickaël Salaün Handled Elsewhere
[RFC,v2,09/19] KVM: x86: Extend kvm_range_has_memory_attributes() with match_all Hypervisor-Enforced Kernel Integrity - - - --- 2023-11-13 Mickaël Salaün Handled Elsewhere
[RFC,v2,08/19] KVM: x86: Extend kvm_vm_set_mem_attributes() with a mask Hypervisor-Enforced Kernel Integrity - - - --- 2023-11-13 Mickaël Salaün Handled Elsewhere
[RFC,v2,07/19] KVM: x86: Make memory attribute helpers more generic Hypervisor-Enforced Kernel Integrity - - - --- 2023-11-13 Mickaël Salaün Handled Elsewhere
[RFC,v2,06/19] KVM: x86: Add kvm_x86_ops.fault_gva() Hypervisor-Enforced Kernel Integrity - - - --- 2023-11-13 Mickaël Salaün Handled Elsewhere
[RFC,v2,05/19] KVM: VMX: Add MBEC support Hypervisor-Enforced Kernel Integrity - - - --- 2023-11-13 Mickaël Salaün Handled Elsewhere
[RFC,v2,04/19] heki: Lock guest control registers at the end of guest kernel init Hypervisor-Enforced Kernel Integrity - - - --- 2023-11-13 Mickaël Salaün Handled Elsewhere
[RFC,v2,03/19] KVM: x86: Add notifications for Heki policy configuration and violation Hypervisor-Enforced Kernel Integrity - - - --- 2023-11-13 Mickaël Salaün Handled Elsewhere
[RFC,v2,02/19] KVM: x86: Add new hypercall to lock control registers Hypervisor-Enforced Kernel Integrity - - - --- 2023-11-13 Mickaël Salaün Handled Elsewhere
[RFC,v2,01/19] virt: Introduce Hypervisor Enforced Kernel Integrity (Heki) Hypervisor-Enforced Kernel Integrity - - - --- 2023-11-13 Mickaël Salaün Handled Elsewhere
[RFC,-mm,4/4] selftests/bpf: Add selftests for mbind(2) with lsm prog mm, security, bpf: Fine-grained control over memory policy adjustments with lsm bpf - - - --- 2023-11-12 Yafang Shao pcmoore RFC
[RFC,-mm,3/4] mm, security: Add lsm hook for set_mempolicy_home_node(2) mm, security, bpf: Fine-grained control over memory policy adjustments with lsm bpf - - - --- 2023-11-12 Yafang Shao pcmoore RFC
[RFC,-mm,2/4] mm, security: Add lsm hook for set_mempolicy(2) mm, security, bpf: Fine-grained control over memory policy adjustments with lsm bpf - - - --- 2023-11-12 Yafang Shao pcmoore RFC
[RFC,-mm,1/4] mm, security: Add lsm hook for mbind(2) mm, security, bpf: Fine-grained control over memory policy adjustments with lsm bpf - - - --- 2023-11-12 Yafang Shao pcmoore RFC
exitz syscall exitz syscall - - - --- 2023-11-11 York Jasper Niebuhr Changes Requested
[5/5] LSM: A sample of dynamically appendable LSM module. LSM: Officially support appending LSM hooks after boot. - - - --- 2023-11-11 Tetsuo Handa Superseded
[4/5] LSM: Add a LSM module which handles dynamically appendable LSM hooks. LSM: Officially support appending LSM hooks after boot. - - - --- 2023-11-11 Tetsuo Handa Superseded
[3/5] LSM: Split LSM_HOOK() into LSM_INT_HOOK() and LSM_VOID_HOOK(). LSM: Officially support appending LSM hooks after boot. - - - --- 2023-11-11 Tetsuo Handa Superseded
[2/5] LSM: Add a header file containing only arguments of LSM callback functions. LSM: Officially support appending LSM hooks after boot. - - - --- 2023-11-11 Tetsuo Handa Superseded
[1/5] LSM: Auto-undef LSM_HOOK macro. LSM: Officially support appending LSM hooks after boot. - - - --- 2023-11-11 Tetsuo Handa Superseded
[v8,5/5] security: Add CONFIG_SECURITY_HOOK_LIKELY Reduce overhead of LSMs with static calls 1 1 - --- 2023-11-10 KP Singh pcmoore Changes Requested
[v8,4/5] bpf: Only enable BPF LSM hooks when an LSM program is attached Reduce overhead of LSMs with static calls 2 2 - --- 2023-11-10 KP Singh pcmoore Changes Requested
[v8,3/5] security: Replace indirect LSM hook calls with static calls Reduce overhead of LSMs with static calls 1 2 - --- 2023-11-10 KP Singh pcmoore Changes Requested
[v8,2/5] security: Count the LSMs enabled at compile time Reduce overhead of LSMs with static calls 1 1 - --- 2023-11-10 KP Singh pcmoore Changes Requested
[v8,1/5] kernel: Add helper macros for loop unrolling Reduce overhead of LSMs with static calls 1 2 - --- 2023-11-10 KP Singh pcmoore Changes Requested
mailmap: update/replace my old email addresses mailmap: update/replace my old email addresses - - - --- 2023-11-10 Paul Moore pcmoore Accepted
lsm: mark the lsm_id variables are marked as static lsm: mark the lsm_id variables are marked as static - 1 - --- 2023-11-10 Paul Moore pcmoore Accepted
[v10,bpf-next,17/17] bpf,selinux: allocate bpf_security_struct per BPF token BPF token and BPF FS-based delegation - - - --- 2023-11-10 Andrii Nakryiko pcmoore Superseded
[v10,bpf-next,16/17] selftests/bpf: add BPF token-enabled tests BPF token and BPF FS-based delegation - - - --- 2023-11-10 Andrii Nakryiko pcmoore Superseded
[v10,bpf-next,15/17] libbpf: add BPF token support to bpf_prog_load() API BPF token and BPF FS-based delegation - - - --- 2023-11-10 Andrii Nakryiko pcmoore Superseded
[v10,bpf-next,14/17] libbpf: add BPF token support to bpf_btf_load() API BPF token and BPF FS-based delegation - - - --- 2023-11-10 Andrii Nakryiko pcmoore Superseded
[v10,bpf-next,13/17] libbpf: add BPF token support to bpf_map_create() API BPF token and BPF FS-based delegation - - - --- 2023-11-10 Andrii Nakryiko pcmoore Superseded
[v10,bpf-next,12/17] libbpf: add bpf_token_create() API BPF token and BPF FS-based delegation - - - --- 2023-11-10 Andrii Nakryiko pcmoore Superseded
[v10,bpf-next,11/17] bpf,lsm: add BPF token LSM hooks BPF token and BPF FS-based delegation 1 - - --- 2023-11-10 Andrii Nakryiko pcmoore Superseded
[v10,bpf-next,10/17] bpf,lsm: refactor bpf_map_alloc/bpf_map_free LSM hooks BPF token and BPF FS-based delegation 1 - - --- 2023-11-10 Andrii Nakryiko pcmoore Superseded
[v10,bpf-next,09/17] bpf,lsm: refactor bpf_prog_alloc/bpf_prog_free LSM hooks BPF token and BPF FS-based delegation 1 - - --- 2023-11-10 Andrii Nakryiko pcmoore Superseded
[v10,bpf-next,08/17] bpf: consistently use BPF token throughout BPF verifier logic BPF token and BPF FS-based delegation - - - --- 2023-11-10 Andrii Nakryiko pcmoore Superseded
[v10,bpf-next,07/17] bpf: take into account BPF token when fetching helper protos BPF token and BPF FS-based delegation - - - --- 2023-11-10 Andrii Nakryiko pcmoore Superseded
[v10,bpf-next,06/17] bpf: add BPF token support to BPF_PROG_LOAD command BPF token and BPF FS-based delegation - - - --- 2023-11-10 Andrii Nakryiko pcmoore Superseded
[v10,bpf-next,05/17] bpf: add BPF token support to BPF_BTF_LOAD command BPF token and BPF FS-based delegation - - - --- 2023-11-10 Andrii Nakryiko pcmoore Superseded
[v10,bpf-next,04/17] bpf: add BPF token support to BPF_MAP_CREATE command BPF token and BPF FS-based delegation - - - --- 2023-11-10 Andrii Nakryiko pcmoore Superseded
[v10,bpf-next,03/17] bpf: introduce BPF token object BPF token and BPF FS-based delegation - - - --- 2023-11-10 Andrii Nakryiko pcmoore Superseded
[v10,bpf-next,02/17] bpf: add BPF token delegation mount options to BPF FS BPF token and BPF FS-based delegation - - - --- 2023-11-10 Andrii Nakryiko pcmoore Superseded
[v10,bpf-next,01/17] bpf: align CAP_NET_ADMIN checks with bpf_capable() approach BPF token and BPF FS-based delegation 1 - - --- 2023-11-10 Andrii Nakryiko pcmoore Superseded
[GIT,PULL] lsm/lsm-pr-20231109 [GIT,PULL] lsm/lsm-pr-20231109 - - - --- 2023-11-09 Paul Moore pcmoore Accepted
KEYS: encrypted: Add check for strsep KEYS: encrypted: Add check for strsep - - - --- 2023-11-08 Chen Ni Handled Elsewhere
[v5,23/23] integrity: Switch from rbtree to LSM-managed blob for integrity_iint_cache security: Move IMA and EVM to the LSM infrastructure - 1 - --- 2023-11-07 Roberto Sassu pcmoore Changes Requested
[v5,22/23] integrity: Move integrity functions to the LSM infrastructure security: Move IMA and EVM to the LSM infrastructure - 1 - --- 2023-11-07 Roberto Sassu pcmoore Changes Requested
[v5,21/23] evm: Move to LSM infrastructure security: Move IMA and EVM to the LSM infrastructure 1 - - --- 2023-11-07 Roberto Sassu pcmoore Changes Requested
[v5,20/23] ima: Move IMA-Appraisal to LSM infrastructure security: Move IMA and EVM to the LSM infrastructure - 2 - --- 2023-11-07 Roberto Sassu pcmoore Changes Requested
[v5,19/23] ima: Move to LSM infrastructure security: Move IMA and EVM to the LSM infrastructure 1 1 - --- 2023-11-07 Roberto Sassu pcmoore Changes Requested
[v5,18/23] security: Introduce key_post_create_or_update hook security: Move IMA and EVM to the LSM infrastructure 1 1 - --- 2023-11-07 Roberto Sassu pcmoore Changes Requested
[v5,17/23] security: Introduce inode_post_remove_acl hook security: Move IMA and EVM to the LSM infrastructure 1 1 - --- 2023-11-07 Roberto Sassu pcmoore Changes Requested
[v5,16/23] security: Introduce inode_post_set_acl hook security: Move IMA and EVM to the LSM infrastructure 1 1 - --- 2023-11-07 Roberto Sassu pcmoore Changes Requested
[v5,15/23] security: Introduce inode_post_create_tmpfile hook security: Move IMA and EVM to the LSM infrastructure 1 - - --- 2023-11-07 Roberto Sassu pcmoore Changes Requested
[v5,14/23] security: Introduce path_post_mknod hook security: Move IMA and EVM to the LSM infrastructure 1 - - --- 2023-11-07 Roberto Sassu pcmoore Changes Requested
[v5,13/23] security: Introduce file_pre_free_security hook security: Move IMA and EVM to the LSM infrastructure 1 - - --- 2023-11-07 Roberto Sassu pcmoore Changes Requested
[v5,12/23] security: Introduce file_post_open hook security: Move IMA and EVM to the LSM infrastructure 1 1 - --- 2023-11-07 Roberto Sassu pcmoore Changes Requested
[v5,11/23] security: Introduce inode_post_removexattr hook security: Move IMA and EVM to the LSM infrastructure - 2 - --- 2023-11-07 Roberto Sassu pcmoore Changes Requested
[v5,10/23] security: Introduce inode_post_setattr hook security: Move IMA and EVM to the LSM infrastructure 1 2 - --- 2023-11-07 Roberto Sassu pcmoore Changes Requested
[v5,09/23] security: Align inode_setattr hook definition with EVM security: Move IMA and EVM to the LSM infrastructure 1 2 - --- 2023-11-07 Roberto Sassu pcmoore Changes Requested
[v5,08/23] evm: Align evm_inode_post_setxattr() definition with LSM infrastructure security: Move IMA and EVM to the LSM infrastructure - 3 - --- 2023-11-07 Roberto Sassu pcmoore Changes Requested
[v5,07/23] evm: Align evm_inode_setxattr() definition with LSM infrastructure security: Move IMA and EVM to the LSM infrastructure - 3 - --- 2023-11-07 Roberto Sassu pcmoore Changes Requested
[v5,06/23] evm: Align evm_inode_post_setattr() definition with LSM infrastructure security: Move IMA and EVM to the LSM infrastructure - 2 - --- 2023-11-07 Roberto Sassu pcmoore Changes Requested
[v5,05/23] ima: Align ima_post_read_file() definition with LSM infrastructure security: Move IMA and EVM to the LSM infrastructure - 2 - --- 2023-11-07 Roberto Sassu pcmoore Changes Requested
[v5,04/23] ima: Align ima_inode_removexattr() definition with LSM infrastructure security: Move IMA and EVM to the LSM infrastructure - 2 - --- 2023-11-07 Roberto Sassu pcmoore Changes Requested
[v5,03/23] ima: Align ima_inode_setxattr() definition with LSM infrastructure security: Move IMA and EVM to the LSM infrastructure - 3 - --- 2023-11-07 Roberto Sassu pcmoore Changes Requested
[v5,02/23] ima: Align ima_file_mprotect() definition with LSM infrastructure security: Move IMA and EVM to the LSM infrastructure - 2 - --- 2023-11-07 Roberto Sassu pcmoore Changes Requested
[v5,01/23] ima: Align ima_inode_post_setattr() definition with LSM infrastructure security: Move IMA and EVM to the LSM infrastructure - 2 - --- 2023-11-07 Roberto Sassu pcmoore Changes Requested
[v2,2/2] ima: Remove EXPERIMENTAL from Kconfig ima: IMA_KEYRINGS_PERMIT_SIGNED_BY_BUILTIN_OR_SECONDARY cleanup 1 1 - --- 2023-11-06 Eric Snowberg Handled Elsewhere
[v2,1/2] ima: Reword IMA_KEYRINGS_PERMIT_SIGNED_BY_BUILTIN_OR_SECONDARY ima: IMA_KEYRINGS_PERMIT_SIGNED_BY_BUILTIN_OR_SECONDARY cleanup - - - --- 2023-11-06 Eric Snowberg Handled Elsewhere
[v9,bpf-next,17/17] bpf,selinux: allocate bpf_security_struct per BPF token BPF token and BPF FS-based delegation - - - --- 2023-11-03 Andrii Nakryiko pcmoore Superseded
[v9,bpf-next,16/17] selftests/bpf: add BPF token-enabled tests BPF token and BPF FS-based delegation - - - --- 2023-11-03 Andrii Nakryiko pcmoore Handled Elsewhere
[v9,bpf-next,15/17] libbpf: add BPF token support to bpf_prog_load() API BPF token and BPF FS-based delegation - - - --- 2023-11-03 Andrii Nakryiko pcmoore Handled Elsewhere
[v9,bpf-next,14/17] libbpf: add BPF token support to bpf_btf_load() API BPF token and BPF FS-based delegation - - - --- 2023-11-03 Andrii Nakryiko pcmoore Handled Elsewhere
[v9,bpf-next,13/17] libbpf: add BPF token support to bpf_map_create() API BPF token and BPF FS-based delegation - - - --- 2023-11-03 Andrii Nakryiko pcmoore Handled Elsewhere
[v9,bpf-next,12/17] libbpf: add bpf_token_create() API BPF token and BPF FS-based delegation - - - --- 2023-11-03 Andrii Nakryiko pcmoore Handled Elsewhere
[v9,bpf-next,11/17] bpf,lsm: add BPF token LSM hooks BPF token and BPF FS-based delegation 1 - - --- 2023-11-03 Andrii Nakryiko pcmoore Handled Elsewhere
[v9,bpf-next,10/17] bpf,lsm: refactor bpf_map_alloc/bpf_map_free LSM hooks BPF token and BPF FS-based delegation 1 - - --- 2023-11-03 Andrii Nakryiko pcmoore Handled Elsewhere
[v9,bpf-next,09/17] bpf,lsm: refactor bpf_prog_alloc/bpf_prog_free LSM hooks BPF token and BPF FS-based delegation 1 - - --- 2023-11-03 Andrii Nakryiko pcmoore Handled Elsewhere
[v9,bpf-next,08/17] bpf: consistently use BPF token throughout BPF verifier logic BPF token and BPF FS-based delegation - - - --- 2023-11-03 Andrii Nakryiko pcmoore Handled Elsewhere
[v9,bpf-next,07/17] bpf: take into account BPF token when fetching helper protos BPF token and BPF FS-based delegation - - - --- 2023-11-03 Andrii Nakryiko pcmoore Handled Elsewhere
[v9,bpf-next,06/17] bpf: add BPF token support to BPF_PROG_LOAD command BPF token and BPF FS-based delegation - - - --- 2023-11-03 Andrii Nakryiko pcmoore Handled Elsewhere
[v9,bpf-next,05/17] bpf: add BPF token support to BPF_BTF_LOAD command BPF token and BPF FS-based delegation - - - --- 2023-11-03 Andrii Nakryiko pcmoore Handled Elsewhere
[v9,bpf-next,04/17] bpf: add BPF token support to BPF_MAP_CREATE command BPF token and BPF FS-based delegation - - - --- 2023-11-03 Andrii Nakryiko pcmoore Handled Elsewhere
[v9,bpf-next,03/17] bpf: introduce BPF token object BPF token and BPF FS-based delegation - - - --- 2023-11-03 Andrii Nakryiko pcmoore Handled Elsewhere
[v9,bpf-next,02/17] bpf: add BPF token delegation mount options to BPF FS BPF token and BPF FS-based delegation - - - --- 2023-11-03 Andrii Nakryiko pcmoore Handled Elsewhere
« 1 2 ... 23 24 2549 50 »