Toggle navigation
Patchwork
Security modules development
Patches
Bundles
About this project
Login
Register
Mail settings
Show patches with
: State =
Action Required
| 12081 patches
Series
Submitter
State
any
Action Required
New
Under Review
Accepted
Rejected
RFC
Not Applicable
Changes Requested
Awaiting Upstream
Superseded
Deferred
Mainlined
Queued
Needs ACK
Handled Elsewhere
In Next
Search
Archived
No
Yes
Both
Delegate
------
Nobody
holtmann
holtmann
holtmann
agk
mchehab
mchehab
gregkh
gregkh
mtosatti
lethal
lethal
avi
asi123
andmike
cvaroqui
nomura
jbrassow
dtor
kueda
bmarzins
tmlind
jmberg
jmberg
mcgrof
lenb
lenb
kyle
felipebalbi
varenet
helge
helge
khilman
khilman
khilman
khilman
jwoithe
mlin
Zhang Rui
Zhang Rui
iksaif
cjackiewicz
hmh
jbarnes
jbarnes
jbarnes
willy
snitzer
iwamatsu
dougsland
mjg59
rafael
rafael
rafael
ericvh@gmail.com
ykzhao
venkip
sandeen
pwsan
lucho@ionkov.net
rminnich
anholt
aystarik
roland
shefty
mason
glikely
krh
djbw
djbw
djbw
cmarinas
doyu
jrn
sage
tomba
mmarek
cjb
trondmy
jikos
bcousson
jic23
olof
olof
olof
nsekhar
weiny2
horms
horms
bwidawsk
bwidawsk
shemminger
eulfhan
josef
josef
josef
dianders
jpan9
hal
kdave
bleung
evalenti
jlbec
bhelgaas
vkoul
vkoul
szlin
davejiang
markgross
tagr
tiwai
vireshk
mmind
dledford
geert
geert
herbert
herbert
kvalo
kvalo
kvalo
bentiss
arend
rzwisler
stellarhopper
stellarhopper
jejb
matthias_bgg
dvhart
axboe
axboe
pcmoore
pcmoore
pcmoore
mkp
mkp
stefan_schmidt
leon
lucvoo
jsakkine
jsakkine
jsakkine
bamse
bamse
demarchi
krzk
groeck
groeck
sboyd
sboyd
mturquette
mturquette
0andriy
carlocaione
luca
dgc
kbingham
derosier
narmstrong
narmstrong
atull
tytso
tytso
djwong
bvanassche
omos
jpirko
jpirko
GustavoARSilva
pkshih
patersonc
brauner
shuahkh
shuahkh
shuahkh
palmer
palmer
jgg
Kishon
idosch
labbott
jsimmons
broonie
broonie
broonie
mricon
mricon
mricon
kees
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
arnd
linusw
perfinion
bbrezillon
bachradsusi
rostedt
rostedt
kholk
nbd
ebiggers
ebiggers
pavelm
sds
m0reeze
ganis
jwcart2
matttbe
andmur01
lorpie01
chanwoochoi
dlezcano
jhedberg
vudentz
robertfoss
bgix
tedd_an
tsbogend
wens
wcrobert
robher
kstewart
kwilczynski
hansg
bpf
netdev
dsa
ethtool
netdrv
martineau
abelloni
trix
pabeni
mani_sadhasivam
liusong6
mjp
tohojo
pmalani
prestwoj
prestwoj
dhowells
tzungbi
conchuod
paulmck
jes
mtkaczyk
colyli
pateldipen1984
iweiny
iweiny
bjorn
mhiramat
JanKiszka
jaegeuk
mraynal
aring
konradybcio
ij
Hailan
jstitt007
denkenz
denkenz
mkorenbl
jjohnson
frank_li
geliang
mdraidci
Apply
«
1
2
...
44
45
46
…
120
121
»
Patch
Series
A/R/T
S/W/F
Date
Submitter
Delegate
State
[RFC,9/9] sk_buff: access secmark via getter/setter
sk_buff: optimize layout for GRO
- - -
-
-
-
2021-07-21
Paolo Abeni
New
[RFC,9/9] Smack: Brutalist io_uring support with debug
Add LSM access controls and auditing to io_uring
- - -
-
-
-
2021-05-21
Paul Moore
New
[RFC,bpf-next,1/1] bpf: Add a BPF helper for getting the cgroup path of current task
Implement getting cgroup path bpf helper
- - -
-
-
-
2021-05-12
xufeng zhang
New
[RFC,bpf-next,seccomp,01/12] seccomp: Move no_new_privs check to after prepare_filter
eBPF seccomp filters
- - -
-
-
-
2021-05-10
YiFei Zhu
New
[RFC,bpf-next,seccomp,02/12] bpf, seccomp: Add eBPF filter capabilities
eBPF seccomp filters
- - -
-
-
-
2021-05-10
YiFei Zhu
New
[RFC,bpf-next,seccomp,03/12] seccomp, ptrace: Add a mechanism to retrieve attached eBPF seccomp fil…
eBPF seccomp filters
- - -
-
-
-
2021-05-10
YiFei Zhu
New
[RFC,bpf-next,seccomp,04/12] libbpf: recognize section "seccomp"
eBPF seccomp filters
- - -
-
-
-
2021-05-10
YiFei Zhu
New
[RFC,bpf-next,seccomp,05/12] samples/bpf: Add eBPF seccomp sample programs
eBPF seccomp filters
- - -
-
-
-
2021-05-10
YiFei Zhu
New
[RFC,bpf-next,seccomp,06/12] lsm: New hook seccomp_extended
eBPF seccomp filters
- - -
-
-
-
2021-05-10
YiFei Zhu
New
[RFC,bpf-next,seccomp,07/12] bpf/verifier: allow restricting direct map access
eBPF seccomp filters
- - -
-
-
-
2021-05-10
YiFei Zhu
New
[RFC,bpf-next,seccomp,08/12] seccomp-ebpf: restrict filter to almost cBPF if LSM request such
eBPF seccomp filters
- - -
-
-
-
2021-05-10
YiFei Zhu
New
[RFC,bpf-next,seccomp,09/12] yama: (concept) restrict seccomp-eBPF with ptrace_scope
eBPF seccomp filters
- - -
-
-
-
2021-05-10
YiFei Zhu
New
[RFC,bpf-next,seccomp,10/12] seccomp-ebpf: Add ability to read user memory
eBPF seccomp filters
- - -
-
-
-
2021-05-10
YiFei Zhu
New
[RFC,bpf-next,seccomp,11/12] bpf/verifier: support NULL-able ptr to BTF ID as helper argument
eBPF seccomp filters
- - -
-
-
-
2021-05-10
YiFei Zhu
New
[RFC,bpf-next,seccomp,12/12] seccomp-ebpf: support task storage from BPF-LSM, defaulting to group l…
eBPF seccomp filters
- - -
-
-
-
2021-05-10
YiFei Zhu
New
[RFC,bpf-next] bpf: POC on local_storage charge and uncharge map_ops
[RFC,bpf-next] bpf: POC on local_storage charge and uncharge map_ops
- - -
-
-
-
2020-07-25
Martin KaFai Lau
New
[RFC,DRAFT] Adds PUI: process unic identifier
- - -
-
-
-
2017-01-10
José Bollo
New
[RFC,ghak86,V1] audit: eliminate audit_enabled magic number comparison
- - -
-
-
-
2018-06-05
Richard Guy Briggs
New
[RFC,linux-next] evm: evm_hmac can be static
- - -
-
-
-
2018-03-13
Fengguang Wu
New
[RFC,PKS/Trusted,keys,1/2] vmalloc: Add vmalloc_pks() call
trusted keys: Add PKS protection to trusted keys
- - -
-
-
-
2020-10-09
Ira Weiny
New
[RFC,PKS/Trusted,keys,2/2] keys/trusted: protect trusted keys using PKS
trusted keys: Add PKS protection to trusted keys
- - -
-
-
-
2020-10-09
Ira Weiny
New
[RFC,tip/core/rcu,15/15] keyring: Remove now-redundant smp_read_barrier_depends()
- - -
-
-
-
2017-10-10
Paul E. McKenney
New
[RFC,v0.1] selinuxns: extend namespace support to security.selinux xattrs
- - -
-
-
-
2017-10-30
James Morris
New
[RFC,v0.2] selinuxns: extend namespace support to security.selinux xattrs
- - -
-
-
-
2017-11-21
James Morris
New
[RFC,v1,01/14] krsi: Add a skeleton and config options for the KRSI LSM
Kernel Runtime Security Instrumentation
- - -
-
-
-
2019-09-10
KP Singh
New
[RFC,v1,02/14] krsi: Introduce types for KRSI eBPF
Kernel Runtime Security Instrumentation
- - -
-
-
-
2019-09-10
KP Singh
New
[RFC,v1,03/14] bpf: krsi: sync BPF UAPI header with tools
Kernel Runtime Security Instrumentation
- - -
-
-
-
2019-09-10
KP Singh
New
[RFC,v1,04/14] krsi: Add support in libbpf for BPF_PROG_TYPE_KRSI
Kernel Runtime Security Instrumentation
- - -
-
-
-
2019-09-10
KP Singh
New
[RFC,v1,05/14] krsi: Initialize KRSI hooks and create files in securityfs
Kernel Runtime Security Instrumentation
- - -
-
-
-
2019-09-10
KP Singh
New
[RFC,v1,06/14] krsi: Implement eBPF operations, attachment and execution
Kernel Runtime Security Instrumentation
- - -
-
-
-
2019-09-10
KP Singh
New
[RFC,v1,07/14] krsi: Check for premissions on eBPF attachment
Kernel Runtime Security Instrumentation
- - -
-
-
-
2019-09-10
KP Singh
New
[RFC,v1,08/14] krsi: Show attached program names in hook read handler.
Kernel Runtime Security Instrumentation
- - -
-
-
-
2019-09-10
KP Singh
New
[RFC,v1,09/14] krsi: Add a helper function for bpf_perf_event_output
Kernel Runtime Security Instrumentation
- - -
-
-
-
2019-09-10
KP Singh
New
[RFC,v1,1/1] LSM ptags: Add tagging of processes
- - -
-
-
-
2016-09-29
José Bollo
New
[RFC,v1,1/2] capability: Add cap_strings.
Add capabilities file to sysfs
- - -
-
-
-
2021-12-27
Francis Laniel
New
[RFC,v1,1/3] LSM/x86/sgx: Add SGX specific LSM hooks
security/x86/sgx: SGX specific LSM hooks
- - -
-
-
-
2019-06-10
Xing, Cedric
New
[RFC,v1,1/4] keys: introduce key_extract_material helper
keys: introduce key_extract_material helper
- - -
-
-
-
2021-07-22
Ahmad Fatoum
New
[RFC,v1,1/5] fs: Add support for an O_MAYEXEC flag on sys_open()
Add support for O_MAYEXEC
- 1 -
-
-
-
2018-12-12
Mickaël Salaün
New
[RFC,v1,10/14] krsi: Handle attachment of the same program
Kernel Runtime Security Instrumentation
- - -
-
-
-
2019-09-10
KP Singh
New
[RFC,v1,11/14] krsi: Pin argument pages in bprm_check_security hook
Kernel Runtime Security Instrumentation
- - -
-
-
-
2019-09-10
KP Singh
New
[RFC,v1,12/14] krsi: Add an eBPF helper function to get the value of an env variable
Kernel Runtime Security Instrumentation
- - -
-
-
-
2019-09-10
KP Singh
New
[RFC,v1,13/14] krsi: Provide an example to read and log environment variables
Kernel Runtime Security Instrumentation
- - -
-
-
-
2019-09-10
KP Singh
New
[RFC,v1,14/14] krsi: Pin arg pages only when needed
Kernel Runtime Security Instrumentation
- - -
-
-
-
2019-09-10
KP Singh
New
[RFC,v1,2/2] kernel/ksysfs.c: Add capabilities attribute.
Add capabilities file to sysfs
- - -
-
-
-
2021-12-27
Francis Laniel
New
[RFC,v1,2/3] LSM/x86/sgx: Implement SGX specific hooks in SELinux
security/x86/sgx: SGX specific LSM hooks
- - -
-
-
-
2019-06-10
Xing, Cedric
New
[RFC,v1,2/4] dm: crypt: use new key_extract_material helper
keys: introduce key_extract_material helper
- - -
-
-
-
2021-07-22
Ahmad Fatoum
New
[RFC,v1,2/5] fs: Add a MAY_EXECMOUNT flag to infer the noexec mount propertie
Add support for O_MAYEXEC
- 2 -
-
-
-
2018-12-12
Mickaël Salaün
New
[RFC,v1,3/3] LSM/x86/sgx: Call new LSM hooks from SGX subsystem
security/x86/sgx: SGX specific LSM hooks
- - -
-
-
-
2019-06-10
Xing, Cedric
New
[RFC,v1,3/4] ubifs: auth: remove never hit key type error check
keys: introduce key_extract_material helper
- - -
-
-
-
2021-07-22
Ahmad Fatoum
New
[RFC,v1,3/5] Yama: Enforces noexec mounts or file executability through O_MAYEXEC
Add support for O_MAYEXEC
- 2 -
-
-
-
2018-12-12
Mickaël Salaün
New
[RFC,v1,4/4] ubifs: auth: consult encrypted and trusted keys if no logon key was found
keys: introduce key_extract_material helper
- - -
-
-
-
2021-07-22
Ahmad Fatoum
New
[RFC,v1,4/5] selftest/yama: Add tests for O_MAYEXEC enforcing
Add support for O_MAYEXEC
- - -
-
-
-
2018-12-12
Mickaël Salaün
New
[RFC,v1,5/5] doc: Add documentation for Yama's open_mayexec_enforce
Add support for O_MAYEXEC
- 2 -
-
-
-
2018-12-12
Mickaël Salaün
New
[RFC,v1] efivarfs: define integrity_read method
- - -
-
-
-
2017-07-06
Mimi Zohar
New
[RFC,v1] fscrypt: support encrypted and trusted keys
[RFC,v1] fscrypt: support encrypted and trusted keys
- - -
-
-
-
2021-07-27
Ahmad Fatoum
New
[RFC,v1] fw_lockdown: new micro LSM module to prevent loading unsigned firmware
- - -
-
-
-
2017-11-10
Mimi Zohar
New
[RFC,v1] ima: verify mprotect change is consistent with mmap policy
[RFC,v1] ima: verify mprotect change is consistent with mmap policy
- 1 -
-
-
-
2020-05-05
Mimi Zohar
New
[RFC,v1] LSM: Remove double path_rename hook calls for RENAME_EXCHANGE
[RFC,v1] LSM: Remove double path_rename hook calls for RENAME_EXCHANGE
2 - -
-
-
-
2022-02-22
Mickaël Salaün
New
[RFC,v14,01/10] landlock: Add object and rule management
Landlock LSM
- - -
-
-
-
2020-02-24
Mickaël Salaün
New
[RFC,v14,02/10] landlock: Add ruleset and domain management
Landlock LSM
- - -
-
-
-
2020-02-24
Mickaël Salaün
New
[RFC,v14,03/10] landlock: Set up the security framework and manage credentials
Landlock LSM
- - -
-
-
-
2020-02-24
Mickaël Salaün
New
[RFC,v14,04/10] landlock: Add ptrace restrictions
Landlock LSM
- - -
-
-
-
2020-02-24
Mickaël Salaün
New
[RFC,v14,05/10] fs,landlock: Support filesystem access-control
Landlock LSM
- - -
-
-
-
2020-02-24
Mickaël Salaün
New
[RFC,v14,06/10] landlock: Add syscall implementation
Landlock LSM
- - -
-
-
-
2020-02-24
Mickaël Salaün
New
[RFC,v14,07/10] arch: Wire up landlock() syscall
Landlock LSM
- - -
-
-
-
2020-02-24
Mickaël Salaün
New
[RFC,v14,08/10] selftests/landlock: Add initial tests
Landlock LSM
- 1 -
-
-
-
2020-02-24
Mickaël Salaün
New
[RFC,v14,09/10] samples/landlock: Add a sandbox manager example
Landlock LSM
- - -
-
-
-
2020-02-24
Mickaël Salaün
New
[RFC,v14,10/10] landlock: Add user and kernel documentation
Landlock LSM
- 1 -
-
-
-
2020-02-24
Mickaël Salaün
New
[RFC,v2,01/10] landlock: Add Kconfig
- - -
-
-
-
2016-08-25
Mickaël Salaün
New
[RFC,v2,01/12] diglim: Overview
integrity: Introduce DIGLIM
- - -
-
-
-
2021-07-26
Roberto Sassu
New
[RFC,v2,01/12] integrity: Introduce a Linux keyring for the Machine Owner Key (MOK)
Enroll kernel keys thru MOK
- - -
-
-
-
2021-07-26
Eric Snowberg
New
[RFC,v2,01/12] landlock: Support socket access-control
Socket type control for Landlock
- - -
-
-
-
2024-05-24
Mikhail Ivanov
New
[RFC,v2,01/12] scripts: add ipe tooling to generate boot policy
Integrity Policy Enforcement LSM (IPE)
- - -
-
-
-
2020-04-06
Deven Bowers
New
[RFC,v2,01/13] x86/mktme: Document the MKTME APIs
Multi-Key Total Memory Encryption API (MKTME)
- - -
-
-
-
2018-12-04
Alison Schofield
New
[RFC,v2,01/19] ima: Add IMA namespace support
ima: Namespace IMA with audit support in IMA-ns
- - -
-
-
-
2021-12-03
Stefan Berger
New
[RFC,v2,02/10] bpf: Move u64_to_ptr() to BPF headers and inline it
- - -
-
-
-
2016-08-25
Mickaël Salaün
New
[RFC,v2,02/12] diglim: Basic definitions
integrity: Introduce DIGLIM
- - -
-
-
-
2021-07-26
Roberto Sassu
New
[RFC,v2,02/12] KEYS: CA link restriction
Enroll kernel keys thru MOK
- - -
-
-
-
2021-07-26
Eric Snowberg
New
[RFC,v2,02/12] landlock: Add hook on socket creation
Socket type control for Landlock
- - -
-
-
-
2024-05-24
Mikhail Ivanov
New
[RFC,v2,02/12] security: add ipe lsm evaluation loop and audit system
Integrity Policy Enforcement LSM (IPE)
- - -
-
-
-
2020-04-06
Deven Bowers
New
[RFC,v2,02/13] mm: Generalize the mprotect implementation to support extensions
Multi-Key Total Memory Encryption API (MKTME)
- - -
-
-
-
2018-12-04
Alison Schofield
New
[RFC,v2,02/19] ima: Define ns_status for storing namespaced iint data
ima: Namespace IMA with audit support in IMA-ns
- - -
-
-
-
2021-12-03
Stefan Berger
New
[RFC,v2,03/10] bpf,landlock: Add a new arraymap type to deal with (Landlock) handles
- - -
-
-
-
2016-08-25
Mickaël Salaün
New
[RFC,v2,03/12] diglim: Objects
integrity: Introduce DIGLIM
- - -
-
-
-
2021-07-26
Roberto Sassu
New
[RFC,v2,03/12] integrity: Trust MOK keys if MokListTrustedRT found
Enroll kernel keys thru MOK
- - -
-
-
-
2021-07-26
Eric Snowberg
New
[RFC,v2,03/12] security: add ipe lsm policy parser and policy loading
Integrity Policy Enforcement LSM (IPE)
- - -
-
-
-
2020-04-06
Deven Bowers
New
[RFC,v2,03/12] selftests/landlock: Add protocol.create to socket tests
Socket type control for Landlock
- - -
-
-
-
2024-05-24
Mikhail Ivanov
New
[RFC,v2,03/13] syscall/x86: Wire up a new system call for memory encryption keys
Multi-Key Total Memory Encryption API (MKTME)
- - -
-
-
-
2018-12-04
Alison Schofield
New
[RFC,v2,03/19] ima: Namespace audit status flags
ima: Namespace IMA with audit support in IMA-ns
- - -
-
-
-
2021-12-03
Stefan Berger
New
[RFC,v2,04/10] seccomp: Split put_seccomp_filter() with put_seccomp()
- - -
-
-
-
2016-08-25
Mickaël Salaün
New
[RFC,v2,04/12] diglim: Methods
integrity: Introduce DIGLIM
- - -
-
-
-
2021-07-26
Roberto Sassu
New
[RFC,v2,04/12] integrity: add add_to_mok_keyring
Enroll kernel keys thru MOK
- - -
-
-
-
2021-07-26
Eric Snowberg
New
[RFC,v2,04/12] ipe: add property for trust of boot volume
Integrity Policy Enforcement LSM (IPE)
- - -
-
-
-
2020-04-06
Deven Bowers
New
[RFC,v2,04/12] selftests/landlock: Add protocol.socket_access_rights to socket tests
Socket type control for Landlock
- 1 -
-
-
-
2024-05-24
Mikhail Ivanov
New
[RFC,v2,04/13] x86/mm: Add helper functions for MKTME memory encryption keys
Multi-Key Total Memory Encryption API (MKTME)
- - -
-
-
-
2018-12-04
Alison Schofield
New
[RFC,v2,04/19] ima: Move delayed work queue and variables into ima_namespace
ima: Namespace IMA with audit support in IMA-ns
- - -
-
-
-
2021-12-03
Stefan Berger
New
[RFC,v2,05/10] seccomp: Handle Landlock
- - -
-
-
-
2016-08-25
Mickaël Salaün
New
[RFC,v2,05/12] diglim: Parser
integrity: Introduce DIGLIM
- - -
-
-
-
2021-07-26
Roberto Sassu
New
[RFC,v2,05/12] fs: add security blob and hooks for block_device
Integrity Policy Enforcement LSM (IPE)
- - -
-
-
-
2020-04-06
Deven Bowers
New
[RFC,v2,05/12] integrity: restrict INTEGRITY_KEYRING_MOK to restrict_link_by_system_trusted_or_ca
Enroll kernel keys thru MOK
- - -
-
-
-
2021-07-26
Eric Snowberg
New
«
1
2
...
44
45
46
…
120
121
»