Show patches with: Submitter = Roberto Sassu       |    Archived = No       |   564 patches
« 1 2 ... 3 4 5 6 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
[v4,3/3] security: Remove integrity from the LSM list in Kconfig security: Always enable integrity LSM 1 - - --- 2023-03-10 Roberto Sassu pcmoore Accepted
[v4,2/3] Revert "integrity: double check iint_cache was initialized" security: Always enable integrity LSM 1 - - --- 2023-03-10 Roberto Sassu pcmoore Accepted
[v4,1/3] security: Introduce LSM_ORDER_LAST and set it for the integrity LSM security: Always enable integrity LSM 1 - - --- 2023-03-10 Roberto Sassu pcmoore Accepted
[v3,3/3] security: Remove integrity from the LSM list in Kconfig security: Always enable integrity LSM - - - --- 2023-03-09 Roberto Sassu pcmoore Changes Requested
[v3,2/3] Revert "integrity: double check iint_cache was initialized" security: Always enable integrity LSM - - - --- 2023-03-09 Roberto Sassu pcmoore Changes Requested
[v3,1/3] security: Introduce LSM_ORDER_LAST and set it for the integrity LSM security: Always enable integrity LSM - - - --- 2023-03-09 Roberto Sassu pcmoore Changes Requested
Revert "integrity: double check iint_cache was initialized" Revert "integrity: double check iint_cache was initialized" - - - --- 2023-03-08 Roberto Sassu Handled Elsewhere
[v2] security: Introduce LSM_ORDER_LAST and set it for the integrity LSM [v2] security: Introduce LSM_ORDER_LAST and set it for the integrity LSM - - - --- 2023-03-08 Roberto Sassu pcmoore Superseded
evm: Complete description of evm_inode_setattr() evm: Complete description of evm_inode_setattr() - 1 - --- 2023-03-06 Roberto Sassu Handled Elsewhere
[ima-evm-utils,v5] Add tests for MMAP_CHECK and MMAP_CHECK_REQPROT hooks [ima-evm-utils,v5] Add tests for MMAP_CHECK and MMAP_CHECK_REQPROT hooks - - - --- 2023-02-03 Roberto Sassu Handled Elsewhere
[ima-evm-utils,v4] Add tests for MMAP_CHECK and MMAP_CHECK_REQPROT hooks [ima-evm-utils,v4] Add tests for MMAP_CHECK and MMAP_CHECK_REQPROT hooks - - - --- 2023-02-02 Roberto Sassu Handled Elsewhere
[ima-evm-utils,v3] Add tests for MMAP_CHECK and MMAP_CHECK_REQPROT hooks [ima-evm-utils,v3] Add tests for MMAP_CHECK and MMAP_CHECK_REQPROT hooks - - - --- 2023-02-01 Roberto Sassu Handled Elsewhere
[ima-evm-utils,v2] Add tests for MMAP_CHECK and MMAP_CHECK_REQPROT hooks [ima-evm-utils,v2] Add tests for MMAP_CHECK and MMAP_CHECK_REQPROT hooks - 1 - --- 2023-01-31 Roberto Sassu Handled Elsewhere
[v4,2/2] ima: Introduce MMAP_CHECK_REQPROT hook [v4,1/2] ima: Align ima_file_mmap() parameters with mmap_file LSM hook - - - --- 2023-01-31 Roberto Sassu pcmoore Handled Elsewhere
[v4,1/2] ima: Align ima_file_mmap() parameters with mmap_file LSM hook [v4,1/2] ima: Align ima_file_mmap() parameters with mmap_file LSM hook - 1 - --- 2023-01-31 Roberto Sassu pcmoore Handled Elsewhere
[ima-evm-utils] Add tests for MMAP_CHECK and MMAP_CHECK_REQPROT hooks [ima-evm-utils] Add tests for MMAP_CHECK and MMAP_CHECK_REQPROT hooks - - - --- 2023-01-26 Roberto Sassu Handled Elsewhere
[v3,2/2] ima: Introduce MMAP_CHECK_REQPROT hook [v3,1/2] ima: Align ima_file_mmap() parameters with mmap_file LSM hook - - - --- 2023-01-26 Roberto Sassu Handled Elsewhere
[v3,1/2] ima: Align ima_file_mmap() parameters with mmap_file LSM hook [v3,1/2] ima: Align ima_file_mmap() parameters with mmap_file LSM hook - 1 - --- 2023-01-26 Roberto Sassu Handled Elsewhere
[v5,2/2] KEYS: asymmetric: Copy sig and digest in public_key_verify_signature() KEYS: asymmetric: Copy sig and digest in public_key_verify_signature() - 1 1 --- 2022-12-27 Roberto Sassu Handled Elsewhere
[v5,1/2] lib/mpi: Fix buffer overrun when SG is too long KEYS: asymmetric: Copy sig and digest in public_key_verify_signature() - 1 - --- 2022-12-27 Roberto Sassu Handled Elsewhere
[v4,2/2] KEYS: asymmetric: Copy sig and digest in public_key_verify_signature() [v4,1/2] lib/mpi: Fix buffer overrun when SG is too long - - - --- 2022-12-27 Roberto Sassu Handled Elsewhere
[v4,1/2] lib/mpi: Fix buffer overrun when SG is too long [v4,1/2] lib/mpi: Fix buffer overrun when SG is too long - - - --- 2022-12-27 Roberto Sassu Handled Elsewhere
[v2] security: Restore passing final prot to ima_file_mmap() [v2] security: Restore passing final prot to ima_file_mmap() - - - --- 2022-12-21 Roberto Sassu pcmoore Handled Elsewhere
security: Restore passing final prot to ima_file_mmap() security: Restore passing final prot to ima_file_mmap() - - - --- 2022-12-21 Roberto Sassu Superseded
[v3,2/2] KEYS: asymmetric: Copy sig and digest in public_key_verify_signature() [v3,1/2] lib/mpi: Fix buffer overrun when SG is too long - - - --- 2022-12-21 Roberto Sassu Handled Elsewhere
[v3,1/2] lib/mpi: Fix buffer overrun when SG is too long [v3,1/2] lib/mpi: Fix buffer overrun when SG is too long - - - --- 2022-12-21 Roberto Sassu Handled Elsewhere
[v2] KEYS: asymmetric: Copy sig and digest in public_key_verify_signature() [v2] KEYS: asymmetric: Copy sig and digest in public_key_verify_signature() - - - --- 2022-12-09 Roberto Sassu Handled Elsewhere
[2/2] doc: Fix fs_context_parse_param description in mount_api.rst [1/2] lsm: Fix description of fs_context_parse_param - - - --- 2022-12-09 Roberto Sassu pcmoore Under Review
[1/2] lsm: Fix description of fs_context_parse_param [1/2] lsm: Fix description of fs_context_parse_param - - - --- 2022-12-09 Roberto Sassu pcmoore Accepted
KEYS: asymmetric: Make a copy of sig and digest in vmalloced stack KEYS: asymmetric: Make a copy of sig and digest in vmalloced stack - - - --- 2022-12-08 Roberto Sassu Handled Elsewhere
[RFC,v2,7/7] selftests/bpf: Change return value in test_libbpf_get_fd_by_id_opts.c bpf-lsm: Check return values of security modules - - - --- 2022-12-07 Roberto Sassu pcmoore Changes Requested
[RFC,v2,6/7] selftests/bpf: Prevent positive ret values in test_lsm and verify_pkcs7_sig bpf-lsm: Check return values of security modules - - - --- 2022-12-07 Roberto Sassu pcmoore Changes Requested
[RFC,v2,5/7] selftests/bpf: Check if return values of LSM programs are allowed bpf-lsm: Check return values of security modules - - - --- 2022-12-07 Roberto Sassu pcmoore Changes Requested
[RFC,v2,4/7] bpf-lsm: Enforce return value limitations on security modules bpf-lsm: Check return values of security modules - - - --- 2022-12-07 Roberto Sassu pcmoore Changes Requested
[RFC,v2,3/7] lsm: Redefine LSM_HOOK() macro to add return value flags as argument bpf-lsm: Check return values of security modules - - - --- 2022-12-07 Roberto Sassu pcmoore Changes Requested
[RFC,v2,2/7] bpf: Mark ALU32 operations in bpf_reg_state structure bpf-lsm: Check return values of security modules - - - --- 2022-12-07 Roberto Sassu pcmoore Changes Requested
[RFC,v2,1/7] bpf: Remove superfluous btf_id_set_contains() declaration bpf-lsm: Check return values of security modules - - - --- 2022-12-07 Roberto Sassu pcmoore Changes Requested
public_key: Add a comment to public_key_signature struct definition public_key: Add a comment to public_key_signature struct definition - 1 - --- 2022-12-07 Roberto Sassu pcmoore Superseded
[v7,6/6] evm: Support multiple LSMs providing an xattr evm: Do HMAC of multiple per LSM xattrs for new inodes - 2 - --- 2022-12-01 Roberto Sassu pcmoore Superseded
[v7,5/6] evm: Align evm_inode_init_security() definition with LSM infrastructure evm: Do HMAC of multiple per LSM xattrs for new inodes - 2 - --- 2022-12-01 Roberto Sassu pcmoore Superseded
[v7,4/6] security: Allow all LSMs to provide xattrs for inode_init_security hook evm: Do HMAC of multiple per LSM xattrs for new inodes - 2 - --- 2022-12-01 Roberto Sassu pcmoore Superseded
[v7,3/6] security: Remove security_old_inode_init_security() evm: Do HMAC of multiple per LSM xattrs for new inodes - 2 - --- 2022-12-01 Roberto Sassu pcmoore Superseded
[v7,2/6] ocfs2: Switch to security_inode_init_security() evm: Do HMAC of multiple per LSM xattrs for new inodes 1 1 - --- 2022-12-01 Roberto Sassu pcmoore Superseded
[v7,1/6] reiserfs: Switch to security_inode_init_security() evm: Do HMAC of multiple per LSM xattrs for new inodes - 2 - --- 2022-12-01 Roberto Sassu pcmoore Superseded
[v2,2/2] ima: Alloc ima_max_digest_data in xattr_verify() if CONFIG_VMAP_STACK=y ima/evm: Ensure digest to verify is in linear mapping area - - - --- 2022-12-01 Roberto Sassu Handled Elsewhere
[v2,1/2] evm: Alloc evm_digest in evm_verify_hmac() if CONFIG_VMAP_STACK=y ima/evm: Ensure digest to verify is in linear mapping area - - - --- 2022-12-01 Roberto Sassu Handled Elsewhere
[v2,2/2] lsm: Add/fix return values in lsm_hooks.h and fix formatting lsm: Improve LSM hooks documentation - - - --- 2022-11-28 Roberto Sassu Accepted
[v2,1/2] lsm: Clarify documentation of vm_enough_memory hook lsm: Improve LSM hooks documentation - - - --- 2022-11-28 Roberto Sassu pcmoore Accepted
[v6,6/6] evm: Support multiple LSMs providing an xattr evm: Do HMAC of multiple per LSM xattrs for new inodes - - - --- 2022-11-23 Roberto Sassu pcmoore Superseded
[v6,5/6] evm: Align evm_inode_init_security() definition with LSM infrastructure evm: Do HMAC of multiple per LSM xattrs for new inodes - - - --- 2022-11-23 Roberto Sassu pcmoore Superseded
[v6,4/6] security: Allow all LSMs to provide xattrs for inode_init_security hook evm: Do HMAC of multiple per LSM xattrs for new inodes - - - --- 2022-11-23 Roberto Sassu pcmoore Superseded
[v6,3/6] security: Remove security_old_inode_init_security() evm: Do HMAC of multiple per LSM xattrs for new inodes - - - --- 2022-11-23 Roberto Sassu pcmoore Superseded
[v6,2/6] ocfs2: Switch to security_inode_init_security() evm: Do HMAC of multiple per LSM xattrs for new inodes - - - --- 2022-11-23 Roberto Sassu pcmoore Superseded
[v6,1/6] reiserfs: Switch to security_inode_init_security() evm: Do HMAC of multiple per LSM xattrs for new inodes - - - --- 2022-11-23 Roberto Sassu pcmoore Superseded
[v5,6/6] evm: Support multiple LSMs providing an xattr evm: Prepare for moving to the LSM infrastructure - - - --- 2022-11-23 Roberto Sassu pcmoore Superseded
[v5,5/6] evm: Align evm_inode_init_security() definition with LSM infrastructure evm: Prepare for moving to the LSM infrastructure - - - --- 2022-11-23 Roberto Sassu pcmoore Superseded
[v5,4/6] security: Allow all LSMs to provide xattrs for inode_init_security hook evm: Prepare for moving to the LSM infrastructure - - - --- 2022-11-23 Roberto Sassu pcmoore Superseded
[v5,3/6] security: Remove security_old_inode_init_security() evm: Prepare for moving to the LSM infrastructure - - - --- 2022-11-23 Roberto Sassu pcmoore Superseded
[v5,2/6] ocfs2: Switch to security_inode_init_security() evm: Prepare for moving to the LSM infrastructure - - - --- 2022-11-23 Roberto Sassu pcmoore Superseded
[v5,1/6] reiserfs: Switch to security_inode_init_security() evm: Prepare for moving to the LSM infrastructure - - - --- 2022-11-23 Roberto Sassu pcmoore Superseded
[PoC] bpf: Call return value check function in the JITed code [PoC] bpf: Call return value check function in the JITed code - - - --- 2022-11-16 Roberto Sassu pcmoore Handled Elsewhere
[RFC,4/4] security: Enforce limitations on return values from LSMs security: Ensure LSMs return expected values - - - --- 2022-11-15 Roberto Sassu pcmoore Rejected
[RFC,3/4] lsm: Redefine LSM_HOOK() macro to add return value flags as argument security: Ensure LSMs return expected values - - - --- 2022-11-15 Roberto Sassu pcmoore Changes Requested
[RFC,2/4] lsm: Add missing return values doc in lsm_hooks.h and fix formatting security: Ensure LSMs return expected values - - - --- 2022-11-15 Roberto Sassu pcmoore Changes Requested
[RFC,1/4] lsm: Clarify documentation of vm_enough_memory hook security: Ensure LSMs return expected values - 1 - --- 2022-11-15 Roberto Sassu pcmoore Changes Requested
[v4,5/5] evm: Support multiple LSMs providing an xattr evm: Prepare for moving to the LSM infrastructure - - - --- 2022-11-10 Roberto Sassu pcmoore Superseded
[v4,4/5] evm: Align evm_inode_init_security() definition with LSM infrastructure evm: Prepare for moving to the LSM infrastructure - - - --- 2022-11-10 Roberto Sassu pcmoore Superseded
[v4,3/5] security: Allow all LSMs to provide xattrs for inode_init_security hook evm: Prepare for moving to the LSM infrastructure - - - --- 2022-11-10 Roberto Sassu pcmoore Superseded
[v4,2/5] security: Rewrite security_old_inode_init_security() evm: Prepare for moving to the LSM infrastructure - - - --- 2022-11-10 Roberto Sassu pcmoore Superseded
[v4,1/5] reiserfs: Add missing calls to reiserfs_security_free() evm: Prepare for moving to the LSM infrastructure - 1 - --- 2022-11-10 Roberto Sassu pcmoore Accepted
ima: Make a copy of sig and digest in asymmetric_verify() ima: Make a copy of sig and digest in asymmetric_verify() - - - --- 2022-11-04 Roberto Sassu Handled Elsewhere
ima: Fix memory leak in __ima_inode_hash() ima: Fix memory leak in __ima_inode_hash() - 1 - --- 2022-11-02 Roberto Sassu Handled Elsewhere
[RESEND,RFC,3/3] selftests/bpf: Check if return values of LSM programs are allowed [RESEND,RFC,1/3] lsm: Clarify documentation of vm_enough_memory hook - - - --- 2022-10-28 Roberto Sassu pcmoore Superseded
[RESEND,RFC,2/3] bpf-lsm: Limit values that can be returned by security modules [RESEND,RFC,1/3] lsm: Clarify documentation of vm_enough_memory hook - - - --- 2022-10-28 Roberto Sassu pcmoore Superseded
[RESEND,RFC,1/3] lsm: Clarify documentation of vm_enough_memory hook [RESEND,RFC,1/3] lsm: Clarify documentation of vm_enough_memory hook - 1 - --- 2022-10-28 Roberto Sassu pcmoore Superseded
[RFC,3/3] selftests/bpf: Check if return values of LSM programs are allowed [RFC,1/3] lsm: Clarify documentation of vm_enough_memory hook - - - --- 2022-10-28 Roberto Sassu Superseded
[RFC,2/3] bpf-lsm: Limit values that can be returned by security modules [RFC,1/3] lsm: Clarify documentation of vm_enough_memory hook - - - --- 2022-10-28 Roberto Sassu Superseded
[RFC,1/3] lsm: Clarify documentation of vm_enough_memory hook [RFC,1/3] lsm: Clarify documentation of vm_enough_memory hook - - - --- 2022-10-28 Roberto Sassu Superseded
[RFC] bpf: Check xattr name/value pair from bpf_lsm_inode_init_security() [RFC] bpf: Check xattr name/value pair from bpf_lsm_inode_init_security() - - - --- 2022-10-21 Roberto Sassu pcmoore Handled Elsewhere
[v18,13/13] selftests/bpf: Add tests for dynamic pointers parameters in kfuncs bpf: Add kfuncs for PKCS#7 signature verification 1 - - --- 2022-09-20 Roberto Sassu Handled Elsewhere
[v18,12/13] selftests/bpf: Add test for bpf_verify_pkcs7_signature() kfunc bpf: Add kfuncs for PKCS#7 signature verification - - - --- 2022-09-20 Roberto Sassu Handled Elsewhere
[v18,11/13] selftests/bpf: Add additional tests for bpf_lookup_*_key() bpf: Add kfuncs for PKCS#7 signature verification - - - --- 2022-09-20 Roberto Sassu Handled Elsewhere
[v18,10/13] selftests/bpf: Add verifier tests for bpf_lookup_*_key() and bpf_key_put() bpf: Add kfuncs for PKCS#7 signature verification 1 - - --- 2022-09-20 Roberto Sassu Handled Elsewhere
[v18,09/13] selftests/bpf: Compile kernel with everything as built-in bpf: Add kfuncs for PKCS#7 signature verification 2 - - --- 2022-09-20 Roberto Sassu Handled Elsewhere
[v18,08/13] bpf: Add bpf_verify_pkcs7_signature() kfunc bpf: Add kfuncs for PKCS#7 signature verification 2 - - --- 2022-09-20 Roberto Sassu Handled Elsewhere
[v18,07/13] bpf: Add bpf_lookup_*_key() and bpf_key_put() kfuncs bpf: Add kfuncs for PKCS#7 signature verification 2 - - --- 2022-09-20 Roberto Sassu Handled Elsewhere
[v18,06/13] KEYS: Move KEY_LOOKUP_ to include/linux/key.h and define KEY_LOOKUP_ALL bpf: Add kfuncs for PKCS#7 signature verification 1 - - --- 2022-09-20 Roberto Sassu Handled Elsewhere
[v18,05/13] bpf: Export bpf_dynptr_get_size() bpf: Add kfuncs for PKCS#7 signature verification 2 1 - --- 2022-09-20 Roberto Sassu Handled Elsewhere
[v18,04/13] btf: Allow dynamic pointer parameters in kfuncs bpf: Add kfuncs for PKCS#7 signature verification 1 - - --- 2022-09-20 Roberto Sassu Handled Elsewhere
[v18,03/13] bpf: Move dynptr type check to is_dynptr_type_expected() bpf: Add kfuncs for PKCS#7 signature verification 1 - - --- 2022-09-20 Roberto Sassu Handled Elsewhere
[v18,02/13] btf: Export bpf_dynptr definition bpf: Add kfuncs for PKCS#7 signature verification 1 - 1 --- 2022-09-20 Roberto Sassu Handled Elsewhere
[v18,01/13] bpf: Allow kfuncs to be used in LSM programs bpf: Add kfuncs for PKCS#7 signature verification 1 - - --- 2022-09-20 Roberto Sassu Handled Elsewhere
[v18,02/13] btf: Export bpf_dynptr definition Untitled series #678236 1 - - --- 2022-09-19 Roberto Sassu Handled Elsewhere
[v17,12/12] selftests/bpf: Add tests for dynamic pointers parameters in kfuncs bpf: Add kfuncs for PKCS#7 signature verification 1 - - --- 2022-09-09 Roberto Sassu Handled Elsewhere
[v17,11/12] selftests/bpf: Add test for bpf_verify_pkcs7_signature() kfunc bpf: Add kfuncs for PKCS#7 signature verification - - - --- 2022-09-09 Roberto Sassu Handled Elsewhere
[v17,10/12] selftests/bpf: Add additional tests for bpf_lookup_*_key() bpf: Add kfuncs for PKCS#7 signature verification - - - --- 2022-09-09 Roberto Sassu Handled Elsewhere
[v17,09/12] selftests/bpf: Add verifier tests for bpf_lookup_*_key() and bpf_key_put() bpf: Add kfuncs for PKCS#7 signature verification 1 - - --- 2022-09-09 Roberto Sassu Handled Elsewhere
[v17,08/12] selftests/bpf: Compile kernel with everything as built-in bpf: Add kfuncs for PKCS#7 signature verification 2 - - --- 2022-09-09 Roberto Sassu Handled Elsewhere
[v17,07/12] bpf: Add bpf_verify_pkcs7_signature() kfunc bpf: Add kfuncs for PKCS#7 signature verification 2 - - --- 2022-09-09 Roberto Sassu Handled Elsewhere
[v17,06/12] bpf: Add bpf_lookup_*_key() and bpf_key_put() kfuncs bpf: Add kfuncs for PKCS#7 signature verification 2 - - --- 2022-09-09 Roberto Sassu Handled Elsewhere
« 1 2 ... 3 4 5 6 »