Show patches with: Archived = No       |   4011 patches
« 1 2 ... 34 35 3640 41 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
KEYS: encrypted: fix key instantiation with user-provided data KEYS: encrypted: fix key instantiation with user-provided data - - - --- 2022-09-16 Nikolaus Voss Handled Elsewhere
[v14,26/26] ima: Enable IMA namespaces ima: Namespace IMA with audit support in IMA-ns - - - --- 2022-09-15 Stefan Berger Handled Elsewhere
[v14,25/26] ima: Restrict informational audit messages to init_ima_ns ima: Namespace IMA with audit support in IMA-ns - - - --- 2022-09-15 Stefan Berger Handled Elsewhere
[v14,24/26] ima: Limit number of policy rules in non-init_ima_ns ima: Namespace IMA with audit support in IMA-ns - - - --- 2022-09-15 Stefan Berger Handled Elsewhere
[v14,23/26] ima: Show owning user namespace's uid and gid when displaying policy ima: Namespace IMA with audit support in IMA-ns - 2 - --- 2022-09-15 Stefan Berger Handled Elsewhere
[v14,22/26] ima: Introduce securityfs file to activate an IMA namespace ima: Namespace IMA with audit support in IMA-ns - - - --- 2022-09-15 Stefan Berger Handled Elsewhere
[v14,21/26] ima: Setup securityfs for IMA namespace ima: Namespace IMA with audit support in IMA-ns 2 1 - --- 2022-09-15 Stefan Berger Handled Elsewhere
[v14,20/26] ima: Remove unused iints from the integrity_iint_cache ima: Namespace IMA with audit support in IMA-ns - - - --- 2022-09-15 Stefan Berger Handled Elsewhere
[v14,19/26] ima: Namespace audit status flags ima: Namespace IMA with audit support in IMA-ns - - - --- 2022-09-15 Stefan Berger Handled Elsewhere
[v14,18/26] integrity: Add optional callback function to integrity_inode_free() ima: Namespace IMA with audit support in IMA-ns - - - --- 2022-09-15 Stefan Berger Handled Elsewhere
[v14,17/26] integrity/ima: Define ns_status for storing namespaced iint data ima: Namespace IMA with audit support in IMA-ns - - - --- 2022-09-15 Stefan Berger Handled Elsewhere
[v14,16/26] ima: Add functions for creating and freeing of an ima_namespace ima: Namespace IMA with audit support in IMA-ns 2 1 - --- 2022-09-15 Stefan Berger Handled Elsewhere
[v14,15/26] ima: Implement ima_free_policy_rules() for freeing of an ima_namespace ima: Namespace IMA with audit support in IMA-ns - 2 - --- 2022-09-15 Stefan Berger Handled Elsewhere
[v14,14/26] ima: Implement hierarchical processing of file accesses ima: Namespace IMA with audit support in IMA-ns - 2 - --- 2022-09-15 Stefan Berger Handled Elsewhere
[v14,13/26] userns: Add pointer to ima_namespace to user_namespace ima: Namespace IMA with audit support in IMA-ns 1 1 - --- 2022-09-15 Stefan Berger Handled Elsewhere
[v14,12/26] ima: Only accept AUDIT rules for non-init_ima_ns namespaces for now ima: Namespace IMA with audit support in IMA-ns 1 1 - --- 2022-09-15 Stefan Berger Handled Elsewhere
[v14,11/26] ima: Define mac_admin_ns_capable() as a wrapper for ns_capable() ima: Namespace IMA with audit support in IMA-ns - - - --- 2022-09-15 Stefan Berger Handled Elsewhere
[v14,10/26] ima: Switch to lazy lsm policy updates for better performance ima: Namespace IMA with audit support in IMA-ns 1 - - --- 2022-09-15 Stefan Berger Handled Elsewhere
[v14,09/26] ima: Move ima_lsm_policy_notifier into ima_namespace ima: Namespace IMA with audit support in IMA-ns 1 1 - --- 2022-09-15 Stefan Berger Handled Elsewhere
[v14,08/26] ima: Move IMA securityfs files into ima_namespace or onto stack ima: Namespace IMA with audit support in IMA-ns 2 1 - --- 2022-09-15 Stefan Berger Handled Elsewhere
[v14,07/26] ima: Move some IMA policy and filesystem related variables into ima_namespace ima: Namespace IMA with audit support in IMA-ns 2 1 - --- 2022-09-15 Stefan Berger Handled Elsewhere
[v14,06/26] ima: Move measurement list related variables into ima_namespace ima: Namespace IMA with audit support in IMA-ns - 2 - --- 2022-09-15 Stefan Berger Handled Elsewhere
[v14,05/26] ima: Move ima_htable into ima_namespace ima: Namespace IMA with audit support in IMA-ns 1 2 - --- 2022-09-15 Stefan Berger Handled Elsewhere
[v14,04/26] ima: Move arch_policy_entry into ima_namespace ima: Namespace IMA with audit support in IMA-ns 1 2 - --- 2022-09-15 Stefan Berger Handled Elsewhere
[v14,03/26] ima: Define ima_namespace struct and start moving variables into it ima: Namespace IMA with audit support in IMA-ns 1 1 - --- 2022-09-15 Stefan Berger Handled Elsewhere
[v14,02/26] securityfs: Extend securityfs with namespacing support ima: Namespace IMA with audit support in IMA-ns 1 - - --- 2022-09-15 Stefan Berger Handled Elsewhere
[v14,01/26] securityfs: rework dentry creation ima: Namespace IMA with audit support in IMA-ns - 2 - --- 2022-09-15 Stefan Berger Handled Elsewhere
[RFC] LSM: Specify which LSM to display [RFC] LSM: Specify which LSM to display - - - --- 2022-09-14 Casey Schaufler pcmoore Superseded
apparmor: make __aa_path_perm() static apparmor: make __aa_path_perm() static 1 - - --- 2022-09-14 xiujianfeng Handled Elsewhere
[v2] KEYS: Remove orphan declarations from security/keys/internal.h [v2] KEYS: Remove orphan declarations from security/keys/internal.h - 1 - --- 2022-09-13 Gaosheng Cui Handled Elsewhere
[linux-next] smack: lsm: remove the unneeded result variable [linux-next] smack: lsm: remove the unneeded result variable - - - --- 2022-09-12 CGEL Handled Elsewhere
[RFC] LSM: lsm_self_attr system call to get security module attributes [RFC] LSM: lsm_self_attr system call to get security module attributes - - - --- 2022-09-10 Casey Schaufler pcmoore Superseded
[v17,12/12] selftests/bpf: Add tests for dynamic pointers parameters in kfuncs bpf: Add kfuncs for PKCS#7 signature verification 1 - - --- 2022-09-09 Roberto Sassu Handled Elsewhere
[v17,11/12] selftests/bpf: Add test for bpf_verify_pkcs7_signature() kfunc bpf: Add kfuncs for PKCS#7 signature verification - - - --- 2022-09-09 Roberto Sassu Handled Elsewhere
[v17,10/12] selftests/bpf: Add additional tests for bpf_lookup_*_key() bpf: Add kfuncs for PKCS#7 signature verification - - - --- 2022-09-09 Roberto Sassu Handled Elsewhere
[v17,09/12] selftests/bpf: Add verifier tests for bpf_lookup_*_key() and bpf_key_put() bpf: Add kfuncs for PKCS#7 signature verification 1 - - --- 2022-09-09 Roberto Sassu Handled Elsewhere
[v17,08/12] selftests/bpf: Compile kernel with everything as built-in bpf: Add kfuncs for PKCS#7 signature verification 2 - - --- 2022-09-09 Roberto Sassu Handled Elsewhere
[v17,07/12] bpf: Add bpf_verify_pkcs7_signature() kfunc bpf: Add kfuncs for PKCS#7 signature verification 2 - - --- 2022-09-09 Roberto Sassu Handled Elsewhere
[v17,06/12] bpf: Add bpf_lookup_*_key() and bpf_key_put() kfuncs bpf: Add kfuncs for PKCS#7 signature verification 2 - - --- 2022-09-09 Roberto Sassu Handled Elsewhere
[v17,05/12] KEYS: Move KEY_LOOKUP_ to include/linux/key.h and define KEY_LOOKUP_ALL bpf: Add kfuncs for PKCS#7 signature verification 1 - - --- 2022-09-09 Roberto Sassu Handled Elsewhere
[v17,04/12] bpf: Export bpf_dynptr_get_size() bpf: Add kfuncs for PKCS#7 signature verification 2 1 - --- 2022-09-09 Roberto Sassu Handled Elsewhere
[v17,03/12] btf: Allow dynamic pointer parameters in kfuncs bpf: Add kfuncs for PKCS#7 signature verification 1 - - --- 2022-09-09 Roberto Sassu Handled Elsewhere
[v17,02/12] bpf: Move dynptr type check to is_dynptr_type_expected() bpf: Add kfuncs for PKCS#7 signature verification 1 - - --- 2022-09-09 Roberto Sassu Handled Elsewhere
[v17,01/12] bpf: Allow kfuncs to be used in LSM programs bpf: Add kfuncs for PKCS#7 signature verification 1 - - --- 2022-09-09 Roberto Sassu Handled Elsewhere
[v1] selftests: Use optional USERCFLAGS and USERLDFLAGS [v1] selftests: Use optional USERCFLAGS and USERLDFLAGS - - - --- 2022-09-09 Mickaël Salaün Handled Elsewhere
[v1] selftests/landlock: Fix out-of-tree builds [v1] selftests/landlock: Fix out-of-tree builds - - - --- 2022-09-09 Mickaël Salaün Handled Elsewhere
security/keys: remove request_key_conswq and keyring_search_instkey() declarations security/keys: remove request_key_conswq and keyring_search_instkey() declarations - - - --- 2022-09-09 Gaosheng Cui Handled Elsewhere
[v4,2/2] ima: Handle -ESTALE returned by ima_filter_rule_match() ima: Handle -ESTALE returned by ima_filter_rule_match() - - - --- 2022-09-09 Guozihua (Scott) Handled Elsewhere
[v4,1/2] ima: Simplify ima_lsm_copy_rule ima: Handle -ESTALE returned by ima_filter_rule_match() - - - --- 2022-09-09 Guozihua (Scott) Handled Elsewhere
[net-next,v4,6/6] net: Add self tests for ULP operations, flow setup and crypto tests [net-next,v4,1/6] net: Documentation on QUIC kernel Tx crypto. - - - --- 2022-09-09 Adel Abouchaev Handled Elsewhere
[net-next,v4,5/6] net: Add flow counters and Tx processing error counter [net-next,v4,1/6] net: Documentation on QUIC kernel Tx crypto. - - - --- 2022-09-09 Adel Abouchaev Handled Elsewhere
[net-next,v4,4/6] net: Implement QUIC offload functions [net-next,v4,1/6] net: Documentation on QUIC kernel Tx crypto. - - - --- 2022-09-09 Adel Abouchaev Handled Elsewhere
[net-next,v4,3/6] net: Add UDP ULP operations, initialization and handling prototype functions. [net-next,v4,1/6] net: Documentation on QUIC kernel Tx crypto. - - - --- 2022-09-09 Adel Abouchaev Handled Elsewhere
[net-next,v4,2/6] net: Define QUIC specific constants, control and data plane structures [net-next,v4,1/6] net: Documentation on QUIC kernel Tx crypto. - - - --- 2022-09-09 Adel Abouchaev Handled Elsewhere
[net-next,v4,1/6] net: Documentation on QUIC kernel Tx crypto. [net-next,v4,1/6] net: Documentation on QUIC kernel Tx crypto. - 1 - --- 2022-09-09 Adel Abouchaev Handled Elsewhere
lockdown: ratelimit denial messages lockdown: ratelimit denial messages - - - --- 2022-09-08 Nathan Lynch pcmoore Accepted
[v6,5/5] landlock: Document Landlock's file truncation support landlock: truncate support - - - --- 2022-09-08 Günther Noack Handled Elsewhere
[v6,4/5] samples/landlock: Extend sample tool to support LANDLOCK_ACCESS_FS_TRUNCATE landlock: truncate support - - - --- 2022-09-08 Günther Noack Handled Elsewhere
[v6,3/5] selftests/landlock: Selftests for file truncation support landlock: truncate support - - - --- 2022-09-08 Günther Noack Handled Elsewhere
[v6,2/5] landlock: Support file truncation landlock: truncate support - - - --- 2022-09-08 Günther Noack Handled Elsewhere
[v6,1/5] security: create file_truncate hook from path_truncate hook landlock: truncate support 2 - - --- 2022-09-08 Günther Noack Handled Elsewhere
landlock: Remove unnecessary conditionals landlock: Remove unnecessary conditionals - - - --- 2022-09-08 Jingyu Wang Handled Elsewhere
[-next] smack: cleanup obsolete mount option flags [-next] smack: cleanup obsolete mount option flags - - - --- 2022-09-08 xiujianfeng Handled Elsewhere
dm: verity-loadpin: Only trust verity targets with enforcement dm: verity-loadpin: Only trust verity targets with enforcement - 1 - --- 2022-09-07 Matthias Kaehlcke Handled Elsewhere
[v17,12/12] selftests/bpf: Add tests for dynamic pointers parameters in kfuncs Untitled series #674913 1 - - --- 2022-09-07 Roberto Sassu Handled Elsewhere
security/keys: Remove inconsistent __user annotation security/keys: Remove inconsistent __user annotation 1 1 - --- 2022-09-07 Vincenzo Frascino pcmoore Handled Elsewhere
[RFC] generic_entry: Add stackleak support [RFC] generic_entry: Add stackleak support - - - --- 2022-09-07 Guo Ren Handled Elsewhere
LoadPin: Require file with verity root digests to have a header LoadPin: Require file with verity root digests to have a header - - - --- 2022-09-07 Matthias Kaehlcke Handled Elsewhere
[v5.19.y,3/3] Smack: Provide read control for io_uring_cmd Backport the io_uring/LSM CMD passthrough controls 1 - - --- 2022-09-06 Paul Moore pcmoore Handled Elsewhere
[v5.19.y,2/3] selinux: implement the security_uring_cmd() LSM hook Backport the io_uring/LSM CMD passthrough controls - - - --- 2022-09-06 Paul Moore pcmoore Handled Elsewhere
[v5.19.y,1/3] lsm,io_uring: add LSM hooks for the new uring_cmd file op Backport the io_uring/LSM CMD passthrough controls - - - --- 2022-09-06 Paul Moore pcmoore Handled Elsewhere
[v17,05/12] KEYS: Move KEY_LOOKUP_ to include/linux/key.h and define KEY_LOOKUP_ALL Untitled series #674474 1 - - --- 2022-09-06 Roberto Sassu Handled Elsewhere
[RFC,HBK:,8/8] dm-crypt: consumer-app setting the flag-is_hbk HW BOUND KEY as TRUSTED KEY - - - --- 2022-09-06 Pankaj Gupta Handled Elsewhere
[RFC,HBK:,7/8] caam alg: symmetric key ciphers are updated HW BOUND KEY as TRUSTED KEY - - - --- 2022-09-06 Pankaj Gupta Handled Elsewhere
[RFC,HBK:,6/8] KEYS: trusted: caam based black key HW BOUND KEY as TRUSTED KEY - - - --- 2022-09-06 Pankaj Gupta Handled Elsewhere
[RFC,HBK:,5/8] caam blob-gen: moving blob_priv to caam_drv_private HW BOUND KEY as TRUSTED KEY - - - --- 2022-09-06 Pankaj Gupta Handled Elsewhere
[RFC,HBK:,4/8] keys-trusted: re-factored caam based trusted key HW BOUND KEY as TRUSTED KEY - - - --- 2022-09-06 Pankaj Gupta Handled Elsewhere
[RFC,HBK:,3/8] sk_cipher: checking for hw bound operation HW BOUND KEY as TRUSTED KEY - - - --- 2022-09-06 Pankaj Gupta Handled Elsewhere
[RFC,HBK:,2/8] hw-bound-key: flag-is_hbk added to the tfm HW BOUND KEY as TRUSTED KEY - - - --- 2022-09-06 Pankaj Gupta Handled Elsewhere
[RFC,HBK:,1/8] keys-trusted: new cmd line option added HW BOUND KEY as TRUSTED KEY - - - --- 2022-09-06 Pankaj Gupta Handled Elsewhere
[1/1] keys/request_key_auth.c: Use strscpy instead of strlcpy [1/1] keys/request_key_auth.c: Use strscpy instead of strlcpy - 1 - --- 2022-09-05 Petr Vorel Handled Elsewhere
[v16,12/12] selftests/bpf: Add tests for dynamic pointers parameters in kfuncs bpf: Add kfuncs for PKCS#7 signature verification - - - --- 2022-09-05 Roberto Sassu Handled Elsewhere
[v16,11/12] selftests/bpf: Add test for bpf_verify_pkcs7_signature() kfunc bpf: Add kfuncs for PKCS#7 signature verification - - - --- 2022-09-05 Roberto Sassu Handled Elsewhere
[v16,10/12] selftests/bpf: Add additional tests for bpf_lookup_*_key() bpf: Add kfuncs for PKCS#7 signature verification - - - --- 2022-09-05 Roberto Sassu Handled Elsewhere
[v16,09/12] selftests/bpf: Add verifier tests for bpf_lookup_*_key() and bpf_key_put() bpf: Add kfuncs for PKCS#7 signature verification 1 - - --- 2022-09-05 Roberto Sassu Handled Elsewhere
[v16,08/12] selftests/bpf: Compile kernel with everything as built-in bpf: Add kfuncs for PKCS#7 signature verification 2 - - --- 2022-09-05 Roberto Sassu Handled Elsewhere
[v16,07/12] bpf: Add bpf_verify_pkcs7_signature() kfunc bpf: Add kfuncs for PKCS#7 signature verification 1 - - --- 2022-09-05 Roberto Sassu Handled Elsewhere
[v16,06/12] bpf: Add bpf_lookup_*_key() and bpf_key_put() kfuncs bpf: Add kfuncs for PKCS#7 signature verification 1 - - --- 2022-09-05 Roberto Sassu Handled Elsewhere
[v16,05/12] KEYS: Move KEY_LOOKUP_ to include/linux/key.h and define KEY_LOOKUP_ALL bpf: Add kfuncs for PKCS#7 signature verification 1 1 - --- 2022-09-05 Roberto Sassu Handled Elsewhere
[v16,04/12] bpf: Export bpf_dynptr_get_size() bpf: Add kfuncs for PKCS#7 signature verification 2 1 - --- 2022-09-05 Roberto Sassu Handled Elsewhere
[v16,03/12] btf: Allow dynamic pointer parameters in kfuncs bpf: Add kfuncs for PKCS#7 signature verification 1 - - --- 2022-09-05 Roberto Sassu Handled Elsewhere
[v16,02/12] bpf: Move dynptr type check to is_dynptr_type_expected() bpf: Add kfuncs for PKCS#7 signature verification 1 - - --- 2022-09-05 Roberto Sassu Handled Elsewhere
[v16,01/12] bpf: Allow kfuncs to be used in LSM programs bpf: Add kfuncs for PKCS#7 signature verification 1 - - --- 2022-09-05 Roberto Sassu Handled Elsewhere
[bpf-next] bpf: use bpf_capable() instead of CAP_SYS_ADMIN for blinding decision [bpf-next] bpf: use bpf_capable() instead of CAP_SYS_ADMIN for blinding decision - - - --- 2022-09-05 Yauheni Kaliuta Handled Elsewhere
[-next] security: Fix some kernel-doc comments [-next] security: Fix some kernel-doc comments - - - --- 2022-09-05 Yang Li Handled Elsewhere
[-next,4/4] integrity: Use DECLARE_FLEX_ARRAY() helper in integrity.h Use DECLARE_FLEX_ARRAY() helper for ima - - - --- 2022-09-05 Gaosheng Cui Handled Elsewhere
[-next,3/4] ima: Use DECLARE_FLEX_ARRAY() helper in ima_policy Use DECLARE_FLEX_ARRAY() helper for ima - - - --- 2022-09-05 Gaosheng Cui Handled Elsewhere
[-next,2/4] ima: Use DECLARE_FLEX_ARRAY() helper in ima_template_entry Use DECLARE_FLEX_ARRAY() helper for ima - - - --- 2022-09-05 Gaosheng Cui Handled Elsewhere
[-next,1/4] ima: Use DECLARE_FLEX_ARRAY() helper in ima_modsig Use DECLARE_FLEX_ARRAY() helper for ima - - - --- 2022-09-05 Gaosheng Cui Handled Elsewhere
[GIT,PULL] Landlock fix for v6.0 [GIT,PULL] Landlock fix for v6.0 - - - --- 2022-09-02 Mickaël Salaün Handled Elsewhere
« 1 2 ... 34 35 3640 41 »