Show patches with: none      |   13517 patches
« 1 2 3 4135 136 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
[v11,4/4] evm: Support multiple LSMs providing an xattr evm: Do HMAC of multiple per LSM xattrs for new inodes - 1 - --- 2023-06-03 Roberto Sassu pcmoore New
[v11,3/4] evm: Align evm_inode_init_security() definition with LSM infrastructure evm: Do HMAC of multiple per LSM xattrs for new inodes - - - --- 2023-06-03 Roberto Sassu pcmoore New
[v11,2/4] smack: Set the SMACK64TRANSMUTE xattr in smack_inode_init_security() evm: Do HMAC of multiple per LSM xattrs for new inodes - - - --- 2023-06-03 Roberto Sassu pcmoore New
[v11,1/4] security: Allow all LSMs to provide xattrs for inode_init_security hook evm: Do HMAC of multiple per LSM xattrs for new inodes - - - --- 2023-06-03 Roberto Sassu pcmoore New
[RESEND,bpf-next,18/18] selftests/bpf: add BPF token-enabled BPF_PROG_LOAD tests BPF token - - - --- 2023-06-02 Andrii Nakryiko pcmoore New
[RESEND,bpf-next,17/18] libbpf: add BPF token support to bpf_prog_load() API BPF token - - - --- 2023-06-02 Andrii Nakryiko pcmoore New
[RESEND,bpf-next,16/18] bpf: consistenly use BPF token throughout BPF verifier logic BPF token - - - --- 2023-06-02 Andrii Nakryiko pcmoore New
[RESEND,bpf-next,15/18] bpf: take into account BPF token when fetching helper protos BPF token - - - --- 2023-06-02 Andrii Nakryiko pcmoore New
[RESEND,bpf-next,14/18] bpf: add BPF token support to BPF_PROG_LOAD command BPF token - - - --- 2023-06-02 Andrii Nakryiko pcmoore New
[RESEND,bpf-next,13/18] bpf: keep BPF_PROG_LOAD permission checks clear of validations BPF token - - - --- 2023-06-02 Andrii Nakryiko pcmoore New
[RESEND,bpf-next,12/18] selftests/bpf: add BPF token-enabled BPF_BTF_LOAD selftest BPF token - - - --- 2023-06-02 Andrii Nakryiko pcmoore New
[RESEND,bpf-next,11/18] libbpf: add BPF token support to bpf_btf_load() API BPF token - - - --- 2023-06-02 Andrii Nakryiko pcmoore New
[RESEND,bpf-next,10/18] bpf: add BPF token support to BPF_BTF_LOAD command BPF token - - - --- 2023-06-02 Andrii Nakryiko pcmoore New
[RESEND,bpf-next,09/18] selftests/bpf: add BPF token-enabled test for BPF_MAP_CREATE command BPF token - - - --- 2023-06-02 Andrii Nakryiko pcmoore New
[RESEND,bpf-next,08/18] libbpf: add BPF token support to bpf_map_create() API BPF token - - - --- 2023-06-02 Andrii Nakryiko pcmoore New
[RESEND,bpf-next,07/18] bpf: add BPF token support to BPF_MAP_CREATE command BPF token - - - --- 2023-06-02 Andrii Nakryiko pcmoore New
[RESEND,bpf-next,06/18] bpf: centralize permissions checks for all BPF map types BPF token - - - --- 2023-06-02 Andrii Nakryiko pcmoore New
[RESEND,bpf-next,05/18] bpf: inline map creation logic in map_create() function BPF token - - - --- 2023-06-02 Andrii Nakryiko pcmoore New
[RESEND,bpf-next,04/18] bpf: move unprivileged checks into map_create() and bpf_prog_load() BPF token - - - --- 2023-06-02 Andrii Nakryiko pcmoore New
[RESEND,bpf-next,03/18] selftests/bpf: add BPF_TOKEN_CREATE test BPF token - - - --- 2023-06-02 Andrii Nakryiko pcmoore New
[RESEND,bpf-next,02/18] libbpf: add bpf_token_create() API BPF token - - - --- 2023-06-02 Andrii Nakryiko pcmoore New
[RESEND,bpf-next,01/18] bpf: introduce BPF token object BPF token - - - --- 2023-06-02 Andrii Nakryiko pcmoore New
[v2] lsm: adds process attribute getter for Landlock [v2] lsm: adds process attribute getter for Landlock - - - --- 2023-05-18 Shervin Oloumi pcmoore New
[2/2] block: use block_admin_capable() for Persistent Reservations capability: Introduce CAP_BLOCK_ADMIN - - - --- 2023-05-11 Tianjia Zhang pcmoore New
[1/2] capability: Introduce CAP_BLOCK_ADMIN capability: Introduce CAP_BLOCK_ADMIN - - - --- 2023-05-11 Tianjia Zhang pcmoore New
[-next,2/2] lsm: Change inode_setattr hook to take struct path argument lsm: Change inode_setattr() to take struct - - - --- 2023-05-05 xiujianfeng pcmoore New
[-next,1/2] fs: Change notify_change() to take struct path argument lsm: Change inode_setattr() to take struct 1 - - --- 2023-05-05 xiujianfeng pcmoore New
[v10,11/11] LSM: selftests for Linux Security Module syscalls [v10,01/11] LSM: Identify modules by more than name - - - --- 2023-04-28 Casey Schaufler pcmoore New
[v10,10/11] SELinux: Add selfattr hooks [v10,01/11] LSM: Identify modules by more than name - - - --- 2023-04-28 Casey Schaufler pcmoore New
[v10,09/11] AppArmor: Add selfattr hooks [v10,01/11] LSM: Identify modules by more than name - - - --- 2023-04-28 Casey Schaufler pcmoore New
[v10,08/11] Smack: implement setselfattr and getselfattr hooks [v10,01/11] LSM: Identify modules by more than name - - - --- 2023-04-28 Casey Schaufler pcmoore New
[v10,07/11] LSM: Helpers for attribute names and filling lsm_ctx [v10,01/11] LSM: Identify modules by more than name - - - --- 2023-04-28 Casey Schaufler pcmoore New
[v10,06/11] LSM: wireup Linux Security Module syscalls [v10,01/11] LSM: Identify modules by more than name 2 1 - --- 2023-04-28 Casey Schaufler pcmoore New
[v10,05/11] LSM: Create lsm_list_modules system call [v10,01/11] LSM: Identify modules by more than name - 1 - --- 2023-04-28 Casey Schaufler pcmoore New
[v10,04/11] LSM: syscalls for current process attributes [v10,01/11] LSM: Identify modules by more than name - 1 - --- 2023-04-28 Casey Schaufler pcmoore New
[v10,03/11] proc: Use lsmids instead of lsm names for attrs [v10,01/11] LSM: Identify modules by more than name - 1 - --- 2023-04-28 Casey Schaufler pcmoore New
[v10,02/11] LSM: Maintain a table of LSM attribute data [v10,01/11] LSM: Identify modules by more than name - 1 - --- 2023-04-28 Casey Schaufler pcmoore New
[v10,01/11] LSM: Identify modules by more than name [v10,01/11] LSM: Identify modules by more than name - 1 - --- 2023-04-28 Casey Schaufler pcmoore New
[v10,4/4] evm: Support multiple LSMs providing an xattr evm: Do HMAC of multiple per LSM xattrs for new inodes - 1 - --- 2023-03-31 Roberto Sassu pcmoore New
[v10,3/4] evm: Align evm_inode_init_security() definition with LSM infrastructure evm: Do HMAC of multiple per LSM xattrs for new inodes - - - --- 2023-03-31 Roberto Sassu pcmoore New
[v10,2/4] security: Allow all LSMs to provide xattrs for inode_init_security hook evm: Do HMAC of multiple per LSM xattrs for new inodes - - - --- 2023-03-31 Roberto Sassu pcmoore New
[28/28] integrity: Switch from rbtree to LSM-managed blob for integrity_iint_cache security: Move IMA and EVM to the LSM infrastructure - - - --- 2023-03-03 Roberto Sassu pcmoore New
[27/28] integrity: Move integrity functions to the LSM infrastructure security: Move IMA and EVM to the LSM infrastructure - - - --- 2023-03-03 Roberto Sassu pcmoore New
[26/28] evm: Move to LSM infrastructure security: Move IMA and EVM to the LSM infrastructure - - - --- 2023-03-03 Roberto Sassu pcmoore New
[25/28] ima: Move IMA-Appraisal to LSM infrastructure security: Move IMA and EVM to the LSM infrastructure - - - --- 2023-03-03 Roberto Sassu pcmoore New
[24/28] ima: Move to LSM infrastructure security: Move IMA and EVM to the LSM infrastructure - - - --- 2023-03-03 Roberto Sassu pcmoore New
[23/28] security: Introduce LSM_ORDER_LAST security: Move IMA and EVM to the LSM infrastructure - - - --- 2023-03-03 Roberto Sassu pcmoore New
[22/28] security: Introduce key_post_create_or_update hook security: Move IMA and EVM to the LSM infrastructure - 1 - --- 2023-03-03 Roberto Sassu pcmoore New
[21/28] security: Introduce inode_post_remove_acl hook security: Move IMA and EVM to the LSM infrastructure - - - --- 2023-03-03 Roberto Sassu pcmoore New
[20/28] security: Introduce inode_post_set_acl hook security: Move IMA and EVM to the LSM infrastructure - 1 - --- 2023-03-03 Roberto Sassu pcmoore New
[19/28] security: Introduce inode_post_create_tmpfile hook security: Move IMA and EVM to the LSM infrastructure - 1 - --- 2023-03-03 Roberto Sassu pcmoore New
[18/28] security: Introduce path_post_mknod hook security: Move IMA and EVM to the LSM infrastructure - 1 - --- 2023-03-03 Roberto Sassu pcmoore New
[17/28] security: Introduce file_pre_free_security hook security: Move IMA and EVM to the LSM infrastructure - 1 - --- 2023-03-03 Roberto Sassu pcmoore New
[16/28] security: Introduce file_post_open hook security: Move IMA and EVM to the LSM infrastructure - 1 - --- 2023-03-03 Roberto Sassu pcmoore New
[15/28] security: Introduce inode_post_removexattr hook security: Move IMA and EVM to the LSM infrastructure - 1 - --- 2023-03-03 Roberto Sassu pcmoore New
[14/28] security: Introduce inode_post_setattr hook security: Move IMA and EVM to the LSM infrastructure - 2 - --- 2023-03-03 Roberto Sassu pcmoore New
[13/28] security: Align inode_setattr hook definition with EVM security: Move IMA and EVM to the LSM infrastructure 1 1 - --- 2023-03-03 Roberto Sassu pcmoore New
[12/28] fs: Fix description of vfs_tmpfile() security: Move IMA and EVM to the LSM infrastructure 1 - - --- 2023-03-03 Roberto Sassu pcmoore New
[11/28] evm: Complete description of evm_inode_setattr() security: Move IMA and EVM to the LSM infrastructure - 1 - --- 2023-03-03 Roberto Sassu pcmoore New
[10/28] evm: Align evm_inode_post_setxattr() definition with LSM infrastructure security: Move IMA and EVM to the LSM infrastructure - 1 - --- 2023-03-03 Roberto Sassu pcmoore New
[09/28] evm: Align evm_inode_setxattr() definition with LSM infrastructure security: Move IMA and EVM to the LSM infrastructure - 1 - --- 2023-03-03 Roberto Sassu pcmoore New
[08/28] evm: Align evm_inode_post_setattr() definition with LSM infrastructure security: Move IMA and EVM to the LSM infrastructure - 1 - --- 2023-03-03 Roberto Sassu pcmoore New
[07/28] ima: Align ima_post_read_file() definition with LSM infrastructure security: Move IMA and EVM to the LSM infrastructure - 1 - --- 2023-03-03 Roberto Sassu pcmoore New
[06/28] ima: Align ima_inode_removexattr() definition with LSM infrastructure security: Move IMA and EVM to the LSM infrastructure - 1 - --- 2023-03-03 Roberto Sassu pcmoore New
[05/28] ima: Align ima_inode_setxattr() definition with LSM infrastructure security: Move IMA and EVM to the LSM infrastructure - 1 - --- 2023-03-03 Roberto Sassu pcmoore New
[04/28] ima: Align ima_file_mprotect() definition with LSM infrastructure security: Move IMA and EVM to the LSM infrastructure - 1 - --- 2023-03-03 Roberto Sassu pcmoore New
[03/28] ima: Align ima_post_create_tmpfile() definition with LSM infrastructure security: Move IMA and EVM to the LSM infrastructure - 1 - --- 2023-03-03 Roberto Sassu pcmoore New
[02/28] ima: Align ima_post_path_mknod() definition with LSM infrastructure security: Move IMA and EVM to the LSM infrastructure - 1 - --- 2023-03-03 Roberto Sassu pcmoore New
[01/28] ima: Align ima_inode_post_setattr() definition with LSM infrastructure security: Move IMA and EVM to the LSM infrastructure - 1 - --- 2023-03-03 Roberto Sassu pcmoore New
[v5] vfs, security: Fix automount superblock LSM init problem, preventing NFS sb sharing [v5] vfs, security: Fix automount superblock LSM init problem, preventing NFS sb sharing 2 1 1 --- 2022-11-10 David Howells pcmoore New
[v3,1/8] capability: add any wrapper to test for multiple caps with exactly one audit message [v3,1/8] capability: add any wrapper to test for multiple caps with exactly one audit message - 1 - --- 2022-06-15 Christian Göttsche pcmoore New
[v3,8/8] net: use new capable_any functionality [v3,1/8] capability: add any wrapper to test for multiple caps with exactly one audit message - - - --- 2022-06-15 Christian Göttsche pcmoore New
[v3,7/8] bpf: use new capable_any functionality [v3,1/8] capability: add any wrapper to test for multiple caps with exactly one audit message - - - --- 2022-06-15 Christian Göttsche pcmoore New
[v3,6/8] kernel: use new capable_any functionality [v3,1/8] capability: add any wrapper to test for multiple caps with exactly one audit message - - - --- 2022-06-15 Christian Göttsche pcmoore New
[v3,5/8] fs: use new capable_any functionality [v3,1/8] capability: add any wrapper to test for multiple caps with exactly one audit message - - - --- 2022-06-15 Christian Göttsche pcmoore New
[v3,4/8] drivers: use new capable_any functionality [v3,1/8] capability: add any wrapper to test for multiple caps with exactly one audit message - 1 - --- 2022-06-15 Christian Göttsche pcmoore New
[v3,3/8] block: use new capable_any functionality [v3,1/8] capability: add any wrapper to test for multiple caps with exactly one audit message - 1 - --- 2022-06-15 Christian Göttsche pcmoore New
[v3,2/8] capability: use new capable_any functionality [v3,1/8] capability: add any wrapper to test for multiple caps with exactly one audit message - - - --- 2022-06-15 Christian Göttsche pcmoore New
[v10,6/7] doc: trusted-encrypted: describe new CAAM trust source KEYS: trusted: Introduce support for NXP CAAM-based trusted keys - 2 - --- 2022-05-13 Ahmad Fatoum New
[v10,5/7] KEYS: trusted: Introduce support for NXP CAAM-based trusted keys KEYS: trusted: Introduce support for NXP CAAM-based trusted keys - 3 5 --- 2022-05-13 Ahmad Fatoum New
[v10,4/7] crypto: caam - add in-kernel interface for blob generator KEYS: trusted: Introduce support for NXP CAAM-based trusted keys - 2 5 --- 2022-05-13 Ahmad Fatoum New
[v10,3/7] crypto: caam - determine whether CAAM supports blob encap/decap KEYS: trusted: Introduce support for NXP CAAM-based trusted keys - 1 1 --- 2022-05-13 Ahmad Fatoum New
[v10,2/7] KEYS: trusted: allow use of kernel RNG for key material KEYS: trusted: Introduce support for NXP CAAM-based trusted keys 2 3 3 --- 2022-05-13 Ahmad Fatoum New
[v10,1/7] KEYS: trusted: allow use of TEE as backend without TCG_TPM support KEYS: trusted: Introduce support for NXP CAAM-based trusted keys - 3 5 --- 2022-05-13 Ahmad Fatoum New
[v2] landlock: Explain how to support Landlock [v2] landlock: Explain how to support Landlock - 1 - --- 2022-05-13 Mickaël Salaün New
[v4] x86/kexec: Carry forward IMA measurement log on kexec [v4] x86/kexec: Carry forward IMA measurement log on kexec - 1 - --- 2022-05-12 Jonathan McDowell New
[v1] landlock: Explain how to support Landlock [v1] landlock: Explain how to support Landlock - - - --- 2022-05-12 Mickaël Salaün New
[-next] apparmor: Fix aa_str_perms() kernel-doc comment [-next] apparmor: Fix aa_str_perms() kernel-doc comment 1 - - --- 2022-05-12 Yang Li New
[v8,4/4] kexec, KEYS, s390: Make use of built-in and secondary keyring for signature verification Untitled series #640875 2 1 - --- 2022-05-12 Coiby Xu New
[v8,3/4] arm64: kexec_file: use more system keyrings to verify kernel image signature Untitled series #640875 2 - - --- 2022-05-12 Coiby Xu New
[v8,2/4] kexec, KEYS: make the code in bzImage64_verify_sig generic Untitled series #640875 1 1 - --- 2022-05-12 Coiby Xu New
loadpin: stop using bdevname loadpin: stop using bdevname - - - --- 2022-05-12 Christoph Hellwig New
[v7,4/4] kexec, KEYS, s390: Make use of built-in and secondary keyring for signature verification Untitled series #640797 1 1 - --- 2022-05-12 Coiby Xu New
[v7,3/4] arm64: kexec_file: use more system keyrings to verify kernel image signature Untitled series #640797 2 - - --- 2022-05-12 Coiby Xu New
[v7,2/4] kexec, KEYS: make the code in bzImage64_verify_sig generic Untitled series #640797 1 1 - --- 2022-05-12 Coiby Xu New
[v3] x86/kexec: Carry forward IMA measurement log on kexec [v3] x86/kexec: Carry forward IMA measurement log on kexec - - - --- 2022-05-11 Jonathan McDowell New
[v2] big_keys: Use struct for internal payload [v2] big_keys: Use struct for internal payload - - - --- 2022-05-10 Kees Cook New
big_keys: Use struct for internal payload big_keys: Use struct for internal payload - - - --- 2022-05-08 Kees Cook New
[v3,12/12] landlock: Add design choices documentation for filesystem access rights Landlock: file linking and renaming support - 1 - --- 2022-05-06 Mickaël Salaün New
[v3,11/12] landlock: Document good practices about filesystem policies Landlock: file linking and renaming support - 1 - --- 2022-05-06 Mickaël Salaün New
« 1 2 3 4135 136 »