Show patches with: State = Action Required       |   12081 patches
« 1 2 ... 44 45 46120 121 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
[RFC,9/9] sk_buff: access secmark via getter/setter sk_buff: optimize layout for GRO - - - --- 2021-07-21 Paolo Abeni New
[RFC,9/9] Smack: Brutalist io_uring support with debug Add LSM access controls and auditing to io_uring - - - --- 2021-05-21 Paul Moore New
[RFC,bpf-next,1/1] bpf: Add a BPF helper for getting the cgroup path of current task Implement getting cgroup path bpf helper - - - --- 2021-05-12 xufeng zhang New
[RFC,bpf-next,seccomp,01/12] seccomp: Move no_new_privs check to after prepare_filter eBPF seccomp filters - - - --- 2021-05-10 YiFei Zhu New
[RFC,bpf-next,seccomp,02/12] bpf, seccomp: Add eBPF filter capabilities eBPF seccomp filters - - - --- 2021-05-10 YiFei Zhu New
[RFC,bpf-next,seccomp,03/12] seccomp, ptrace: Add a mechanism to retrieve attached eBPF seccomp fil… eBPF seccomp filters - - - --- 2021-05-10 YiFei Zhu New
[RFC,bpf-next,seccomp,04/12] libbpf: recognize section "seccomp" eBPF seccomp filters - - - --- 2021-05-10 YiFei Zhu New
[RFC,bpf-next,seccomp,05/12] samples/bpf: Add eBPF seccomp sample programs eBPF seccomp filters - - - --- 2021-05-10 YiFei Zhu New
[RFC,bpf-next,seccomp,06/12] lsm: New hook seccomp_extended eBPF seccomp filters - - - --- 2021-05-10 YiFei Zhu New
[RFC,bpf-next,seccomp,07/12] bpf/verifier: allow restricting direct map access eBPF seccomp filters - - - --- 2021-05-10 YiFei Zhu New
[RFC,bpf-next,seccomp,08/12] seccomp-ebpf: restrict filter to almost cBPF if LSM request such eBPF seccomp filters - - - --- 2021-05-10 YiFei Zhu New
[RFC,bpf-next,seccomp,09/12] yama: (concept) restrict seccomp-eBPF with ptrace_scope eBPF seccomp filters - - - --- 2021-05-10 YiFei Zhu New
[RFC,bpf-next,seccomp,10/12] seccomp-ebpf: Add ability to read user memory eBPF seccomp filters - - - --- 2021-05-10 YiFei Zhu New
[RFC,bpf-next,seccomp,11/12] bpf/verifier: support NULL-able ptr to BTF ID as helper argument eBPF seccomp filters - - - --- 2021-05-10 YiFei Zhu New
[RFC,bpf-next,seccomp,12/12] seccomp-ebpf: support task storage from BPF-LSM, defaulting to group l… eBPF seccomp filters - - - --- 2021-05-10 YiFei Zhu New
[RFC,bpf-next] bpf: POC on local_storage charge and uncharge map_ops [RFC,bpf-next] bpf: POC on local_storage charge and uncharge map_ops - - - --- 2020-07-25 Martin KaFai Lau New
[RFC,DRAFT] Adds PUI: process unic identifier - - - --- 2017-01-10 José Bollo New
[RFC,ghak86,V1] audit: eliminate audit_enabled magic number comparison - - - --- 2018-06-05 Richard Guy Briggs New
[RFC,linux-next] evm: evm_hmac can be static - - - --- 2018-03-13 Fengguang Wu New
[RFC,PKS/Trusted,keys,1/2] vmalloc: Add vmalloc_pks() call trusted keys: Add PKS protection to trusted keys - - - --- 2020-10-09 Ira Weiny New
[RFC,PKS/Trusted,keys,2/2] keys/trusted: protect trusted keys using PKS trusted keys: Add PKS protection to trusted keys - - - --- 2020-10-09 Ira Weiny New
[RFC,tip/core/rcu,15/15] keyring: Remove now-redundant smp_read_barrier_depends() - - - --- 2017-10-10 Paul E. McKenney New
[RFC,v0.1] selinuxns: extend namespace support to security.selinux xattrs - - - --- 2017-10-30 James Morris New
[RFC,v0.2] selinuxns: extend namespace support to security.selinux xattrs - - - --- 2017-11-21 James Morris New
[RFC,v1,01/14] krsi: Add a skeleton and config options for the KRSI LSM Kernel Runtime Security Instrumentation - - - --- 2019-09-10 KP Singh New
[RFC,v1,02/14] krsi: Introduce types for KRSI eBPF Kernel Runtime Security Instrumentation - - - --- 2019-09-10 KP Singh New
[RFC,v1,03/14] bpf: krsi: sync BPF UAPI header with tools Kernel Runtime Security Instrumentation - - - --- 2019-09-10 KP Singh New
[RFC,v1,04/14] krsi: Add support in libbpf for BPF_PROG_TYPE_KRSI Kernel Runtime Security Instrumentation - - - --- 2019-09-10 KP Singh New
[RFC,v1,05/14] krsi: Initialize KRSI hooks and create files in securityfs Kernel Runtime Security Instrumentation - - - --- 2019-09-10 KP Singh New
[RFC,v1,06/14] krsi: Implement eBPF operations, attachment and execution Kernel Runtime Security Instrumentation - - - --- 2019-09-10 KP Singh New
[RFC,v1,07/14] krsi: Check for premissions on eBPF attachment Kernel Runtime Security Instrumentation - - - --- 2019-09-10 KP Singh New
[RFC,v1,08/14] krsi: Show attached program names in hook read handler. Kernel Runtime Security Instrumentation - - - --- 2019-09-10 KP Singh New
[RFC,v1,09/14] krsi: Add a helper function for bpf_perf_event_output Kernel Runtime Security Instrumentation - - - --- 2019-09-10 KP Singh New
[RFC,v1,1/1] LSM ptags: Add tagging of processes - - - --- 2016-09-29 José Bollo New
[RFC,v1,1/2] capability: Add cap_strings. Add capabilities file to sysfs - - - --- 2021-12-27 Francis Laniel New
[RFC,v1,1/3] LSM/x86/sgx: Add SGX specific LSM hooks security/x86/sgx: SGX specific LSM hooks - - - --- 2019-06-10 Xing, Cedric New
[RFC,v1,1/4] keys: introduce key_extract_material helper keys: introduce key_extract_material helper - - - --- 2021-07-22 Ahmad Fatoum New
[RFC,v1,1/5] fs: Add support for an O_MAYEXEC flag on sys_open() Add support for O_MAYEXEC - 1 - --- 2018-12-12 Mickaël Salaün New
[RFC,v1,10/14] krsi: Handle attachment of the same program Kernel Runtime Security Instrumentation - - - --- 2019-09-10 KP Singh New
[RFC,v1,11/14] krsi: Pin argument pages in bprm_check_security hook Kernel Runtime Security Instrumentation - - - --- 2019-09-10 KP Singh New
[RFC,v1,12/14] krsi: Add an eBPF helper function to get the value of an env variable Kernel Runtime Security Instrumentation - - - --- 2019-09-10 KP Singh New
[RFC,v1,13/14] krsi: Provide an example to read and log environment variables Kernel Runtime Security Instrumentation - - - --- 2019-09-10 KP Singh New
[RFC,v1,14/14] krsi: Pin arg pages only when needed Kernel Runtime Security Instrumentation - - - --- 2019-09-10 KP Singh New
[RFC,v1,2/2] kernel/ksysfs.c: Add capabilities attribute. Add capabilities file to sysfs - - - --- 2021-12-27 Francis Laniel New
[RFC,v1,2/3] LSM/x86/sgx: Implement SGX specific hooks in SELinux security/x86/sgx: SGX specific LSM hooks - - - --- 2019-06-10 Xing, Cedric New
[RFC,v1,2/4] dm: crypt: use new key_extract_material helper keys: introduce key_extract_material helper - - - --- 2021-07-22 Ahmad Fatoum New
[RFC,v1,2/5] fs: Add a MAY_EXECMOUNT flag to infer the noexec mount propertie Add support for O_MAYEXEC - 2 - --- 2018-12-12 Mickaël Salaün New
[RFC,v1,3/3] LSM/x86/sgx: Call new LSM hooks from SGX subsystem security/x86/sgx: SGX specific LSM hooks - - - --- 2019-06-10 Xing, Cedric New
[RFC,v1,3/4] ubifs: auth: remove never hit key type error check keys: introduce key_extract_material helper - - - --- 2021-07-22 Ahmad Fatoum New
[RFC,v1,3/5] Yama: Enforces noexec mounts or file executability through O_MAYEXEC Add support for O_MAYEXEC - 2 - --- 2018-12-12 Mickaël Salaün New
[RFC,v1,4/4] ubifs: auth: consult encrypted and trusted keys if no logon key was found keys: introduce key_extract_material helper - - - --- 2021-07-22 Ahmad Fatoum New
[RFC,v1,4/5] selftest/yama: Add tests for O_MAYEXEC enforcing Add support for O_MAYEXEC - - - --- 2018-12-12 Mickaël Salaün New
[RFC,v1,5/5] doc: Add documentation for Yama's open_mayexec_enforce Add support for O_MAYEXEC - 2 - --- 2018-12-12 Mickaël Salaün New
[RFC,v1] efivarfs: define integrity_read method - - - --- 2017-07-06 Mimi Zohar New
[RFC,v1] fscrypt: support encrypted and trusted keys [RFC,v1] fscrypt: support encrypted and trusted keys - - - --- 2021-07-27 Ahmad Fatoum New
[RFC,v1] fw_lockdown: new micro LSM module to prevent loading unsigned firmware - - - --- 2017-11-10 Mimi Zohar New
[RFC,v1] ima: verify mprotect change is consistent with mmap policy [RFC,v1] ima: verify mprotect change is consistent with mmap policy - 1 - --- 2020-05-05 Mimi Zohar New
[RFC,v1] LSM: Remove double path_rename hook calls for RENAME_EXCHANGE [RFC,v1] LSM: Remove double path_rename hook calls for RENAME_EXCHANGE 2 - - --- 2022-02-22 Mickaël Salaün New
[RFC,v14,01/10] landlock: Add object and rule management Landlock LSM - - - --- 2020-02-24 Mickaël Salaün New
[RFC,v14,02/10] landlock: Add ruleset and domain management Landlock LSM - - - --- 2020-02-24 Mickaël Salaün New
[RFC,v14,03/10] landlock: Set up the security framework and manage credentials Landlock LSM - - - --- 2020-02-24 Mickaël Salaün New
[RFC,v14,04/10] landlock: Add ptrace restrictions Landlock LSM - - - --- 2020-02-24 Mickaël Salaün New
[RFC,v14,05/10] fs,landlock: Support filesystem access-control Landlock LSM - - - --- 2020-02-24 Mickaël Salaün New
[RFC,v14,06/10] landlock: Add syscall implementation Landlock LSM - - - --- 2020-02-24 Mickaël Salaün New
[RFC,v14,07/10] arch: Wire up landlock() syscall Landlock LSM - - - --- 2020-02-24 Mickaël Salaün New
[RFC,v14,08/10] selftests/landlock: Add initial tests Landlock LSM - 1 - --- 2020-02-24 Mickaël Salaün New
[RFC,v14,09/10] samples/landlock: Add a sandbox manager example Landlock LSM - - - --- 2020-02-24 Mickaël Salaün New
[RFC,v14,10/10] landlock: Add user and kernel documentation Landlock LSM - 1 - --- 2020-02-24 Mickaël Salaün New
[RFC,v2,01/10] landlock: Add Kconfig - - - --- 2016-08-25 Mickaël Salaün New
[RFC,v2,01/12] diglim: Overview integrity: Introduce DIGLIM - - - --- 2021-07-26 Roberto Sassu New
[RFC,v2,01/12] integrity: Introduce a Linux keyring for the Machine Owner Key (MOK) Enroll kernel keys thru MOK - - - --- 2021-07-26 Eric Snowberg New
[RFC,v2,01/12] landlock: Support socket access-control Socket type control for Landlock - - - --- 2024-05-24 Mikhail Ivanov New
[RFC,v2,01/12] scripts: add ipe tooling to generate boot policy Integrity Policy Enforcement LSM (IPE) - - - --- 2020-04-06 Deven Bowers New
[RFC,v2,01/13] x86/mktme: Document the MKTME APIs Multi-Key Total Memory Encryption API (MKTME) - - - --- 2018-12-04 Alison Schofield New
[RFC,v2,01/19] ima: Add IMA namespace support ima: Namespace IMA with audit support in IMA-ns - - - --- 2021-12-03 Stefan Berger New
[RFC,v2,02/10] bpf: Move u64_to_ptr() to BPF headers and inline it - - - --- 2016-08-25 Mickaël Salaün New
[RFC,v2,02/12] diglim: Basic definitions integrity: Introduce DIGLIM - - - --- 2021-07-26 Roberto Sassu New
[RFC,v2,02/12] KEYS: CA link restriction Enroll kernel keys thru MOK - - - --- 2021-07-26 Eric Snowberg New
[RFC,v2,02/12] landlock: Add hook on socket creation Socket type control for Landlock - - - --- 2024-05-24 Mikhail Ivanov New
[RFC,v2,02/12] security: add ipe lsm evaluation loop and audit system Integrity Policy Enforcement LSM (IPE) - - - --- 2020-04-06 Deven Bowers New
[RFC,v2,02/13] mm: Generalize the mprotect implementation to support extensions Multi-Key Total Memory Encryption API (MKTME) - - - --- 2018-12-04 Alison Schofield New
[RFC,v2,02/19] ima: Define ns_status for storing namespaced iint data ima: Namespace IMA with audit support in IMA-ns - - - --- 2021-12-03 Stefan Berger New
[RFC,v2,03/10] bpf,landlock: Add a new arraymap type to deal with (Landlock) handles - - - --- 2016-08-25 Mickaël Salaün New
[RFC,v2,03/12] diglim: Objects integrity: Introduce DIGLIM - - - --- 2021-07-26 Roberto Sassu New
[RFC,v2,03/12] integrity: Trust MOK keys if MokListTrustedRT found Enroll kernel keys thru MOK - - - --- 2021-07-26 Eric Snowberg New
[RFC,v2,03/12] security: add ipe lsm policy parser and policy loading Integrity Policy Enforcement LSM (IPE) - - - --- 2020-04-06 Deven Bowers New
[RFC,v2,03/12] selftests/landlock: Add protocol.create to socket tests Socket type control for Landlock - - - --- 2024-05-24 Mikhail Ivanov New
[RFC,v2,03/13] syscall/x86: Wire up a new system call for memory encryption keys Multi-Key Total Memory Encryption API (MKTME) - - - --- 2018-12-04 Alison Schofield New
[RFC,v2,03/19] ima: Namespace audit status flags ima: Namespace IMA with audit support in IMA-ns - - - --- 2021-12-03 Stefan Berger New
[RFC,v2,04/10] seccomp: Split put_seccomp_filter() with put_seccomp() - - - --- 2016-08-25 Mickaël Salaün New
[RFC,v2,04/12] diglim: Methods integrity: Introduce DIGLIM - - - --- 2021-07-26 Roberto Sassu New
[RFC,v2,04/12] integrity: add add_to_mok_keyring Enroll kernel keys thru MOK - - - --- 2021-07-26 Eric Snowberg New
[RFC,v2,04/12] ipe: add property for trust of boot volume Integrity Policy Enforcement LSM (IPE) - - - --- 2020-04-06 Deven Bowers New
[RFC,v2,04/12] selftests/landlock: Add protocol.socket_access_rights to socket tests Socket type control for Landlock - 1 - --- 2024-05-24 Mikhail Ivanov New
[RFC,v2,04/13] x86/mm: Add helper functions for MKTME memory encryption keys Multi-Key Total Memory Encryption API (MKTME) - - - --- 2018-12-04 Alison Schofield New
[RFC,v2,04/19] ima: Move delayed work queue and variables into ima_namespace ima: Namespace IMA with audit support in IMA-ns - - - --- 2021-12-03 Stefan Berger New
[RFC,v2,05/10] seccomp: Handle Landlock - - - --- 2016-08-25 Mickaël Salaün New
[RFC,v2,05/12] diglim: Parser integrity: Introduce DIGLIM - - - --- 2021-07-26 Roberto Sassu New
[RFC,v2,05/12] fs: add security blob and hooks for block_device Integrity Policy Enforcement LSM (IPE) - - - --- 2020-04-06 Deven Bowers New
[RFC,v2,05/12] integrity: restrict INTEGRITY_KEYRING_MOK to restrict_link_by_system_trusted_or_ca Enroll kernel keys thru MOK - - - --- 2021-07-26 Eric Snowberg New
« 1 2 ... 44 45 46120 121 »