Show patches with: Archived = No       |   1395 patches
« 1 2 3 413 14 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
[v12,3/3] selftest/interpreter: Add tests for trusted_for(2) policies Add trusted_for(2) (was O_MAYEXEC) - 1 - --- 2020-12-03 Mickaël Salaün New
[v12,2/3] arch: Wire up trusted_for(2) Add trusted_for(2) (was O_MAYEXEC) 1 1 - --- 2020-12-03 Mickaël Salaün New
[v12,1/3] fs: Add trusted_for(2) syscall implementation and related sysctl Add trusted_for(2) (was O_MAYEXEC) - - - --- 2020-12-03 Mickaël Salaün New
[v25,12/12] landlock: Add user and kernel documentation Landlock LSM - 2 - --- 2020-12-01 Mickaël Salaün New
[v25,11/12] samples/landlock: Add a sandbox manager example Landlock LSM - - - --- 2020-12-01 Mickaël Salaün New
[v25,10/12] selftests/landlock: Add user space tests Landlock LSM - 1 - --- 2020-12-01 Mickaël Salaün New
[v25,09/12] arch: Wire up Landlock syscalls Landlock LSM - - - --- 2020-12-01 Mickaël Salaün New
[v25,08/12] landlock: Add syscall implementations Landlock LSM - 1 - --- 2020-12-01 Mickaël Salaün New
[v25,07/12] landlock: Support filesystem access-control Landlock LSM - - - --- 2020-12-01 Mickaël Salaün New
[v25,06/12] fs,security: Add sb_delete hook Landlock LSM - 1 - --- 2020-12-01 Mickaël Salaün New
[v25,05/12] LSM: Infrastructure management of the superblock Landlock LSM - 1 - --- 2020-12-01 Mickaël Salaün New
[v25,04/12] landlock: Add ptrace restrictions Landlock LSM - 1 - --- 2020-12-01 Mickaël Salaün New
[v25,03/12] landlock: Set up the security framework and manage credentials Landlock LSM - 1 - --- 2020-12-01 Mickaël Salaün New
[v25,02/12] landlock: Add ruleset and domain management Landlock LSM - - - --- 2020-12-01 Mickaël Salaün New
[v25,01/12] landlock: Add object management Landlock LSM - 1 - --- 2020-12-01 Mickaël Salaün New
proc: Allow pid_revalidate() during LOOKUP_RCU proc: Allow pid_revalidate() during LOOKUP_RCU - - - --- 2020-11-30 Stephen Brennan New
[net-next,3/3] mptcp: emit tcp reset when a join request fails mptcp: reject invalid mp_join requests right away - 1 - --- 2020-11-30 Florian Westphal New
[net-next,2/3] tcp: merge 'init_req' and 'route_req' functions mptcp: reject invalid mp_join requests right away - - - --- 2020-11-30 Florian Westphal New
[net-next,1/3] security: add const qualifier to struct sock in various places mptcp: reject invalid mp_join requests right away 1 - - --- 2020-11-30 Florian Westphal New
[v3,37/38] tests: extend mount_setattr tests idmapped mounts - - - --- 2020-11-28 Christian Brauner New
[v3,36/38] fs: introduce MOUNT_ATTR_IDMAP idmapped mounts - - - --- 2020-11-28 Christian Brauner New
[v3,35/38] overlayfs: do not mount on top of idmapped mounts idmapped mounts - - - --- 2020-11-28 Christian Brauner New
[v3,34/38] ecryptfs: do not mount on top of idmapped mounts idmapped mounts - - - --- 2020-11-28 Christian Brauner New
[v3,33/38] ext4: support idmapped mounts idmapped mounts - - - --- 2020-11-28 Christian Brauner New
[v3,32/38] fat: handle idmapped mounts idmapped mounts - - - --- 2020-11-28 Christian Brauner New
[v3,31/38] ima: handle idmapped mounts idmapped mounts - - - --- 2020-11-28 Christian Brauner New
[v3,30/38] apparmor: handle idmapped mounts idmapped mounts - - - --- 2020-11-28 Christian Brauner New
[v3,28/38] exec: handle idmapped mounts idmapped mounts - - - --- 2020-11-28 Christian Brauner New
[v3,27/38] would_dump: handle idmapped mounts idmapped mounts - - - --- 2020-11-28 Christian Brauner New
[v3,26/38] ioctl: handle idmapped mounts idmapped mounts - - - --- 2020-11-28 Christian Brauner New
[v3,25/38] init: handle idmapped mounts idmapped mounts - - - --- 2020-11-28 Christian Brauner New
[v3,24/38] notify: handle idmapped mounts idmapped mounts - - - --- 2020-11-28 Christian Brauner New
[v3,23/38] fcntl: handle idmapped mounts idmapped mounts - - - --- 2020-11-28 Christian Brauner New
[v3,22/38] utimes: handle idmapped mounts idmapped mounts - - - --- 2020-11-28 Christian Brauner New
[v3,21/38] af_unix: handle idmapped mounts idmapped mounts - - - --- 2020-11-28 Christian Brauner New
[v3,20/38] open: handle idmapped mounts idmapped mounts - - - --- 2020-11-28 Christian Brauner New
[v3,19/38] open: handle idmapped mounts in do_truncate() idmapped mounts - - - --- 2020-11-28 Christian Brauner New
[v3,18/38] namei: prepare for idmapped mounts idmapped mounts - - - --- 2020-11-28 Christian Brauner New
[v3,17/38] namei: introduce struct renamedata idmapped mounts - - - --- 2020-11-28 Christian Brauner New
[v3,16/38] namei: handle idmapped mounts in may_*() helpers idmapped mounts - - - --- 2020-11-28 Christian Brauner New
[v3,15/38] stat: handle idmapped mounts idmapped mounts - - - --- 2020-11-28 Christian Brauner New
[v3,14/38] commoncap: handle idmapped mounts idmapped mounts - - - --- 2020-11-28 Christian Brauner New
[v3,13/38] xattr: handle idmapped mounts idmapped mounts - - - --- 2020-11-28 Christian Brauner New
[v3,12/38] acl: handle idmapped mounts idmapped mounts - - - --- 2020-11-28 Christian Brauner New
[v3,11/38] attr: handle idmapped mounts idmapped mounts - - - --- 2020-11-28 Christian Brauner New
[v3,10/38] inode: add idmapped mount aware init and permission helpers idmapped mounts - - - --- 2020-11-28 Christian Brauner New
[v3,09/38] namei: add idmapped mount aware permission helpers idmapped mounts 1 - - --- 2020-11-28 Christian Brauner New
[v3,08/38] capability: handle idmapped mounts idmapped mounts 1 - - --- 2020-11-28 Christian Brauner New
[v3,07/38] mount: attach mappings to mounts idmapped mounts - - - --- 2020-11-28 Christian Brauner New
[v3,06/38] fs: add id translation helpers idmapped mounts - 1 - --- 2020-11-28 Christian Brauner New
[v3,05/38] tests: add mount_setattr() selftests idmapped mounts - - - --- 2020-11-28 Christian Brauner New
[v3,04/38] fs: add mount_setattr() idmapped mounts - - - --- 2020-11-28 Christian Brauner New
[v3,03/38] namespace: only take read lock in do_reconfigure_mnt() idmapped mounts - 1 - --- 2020-11-28 Christian Brauner New
[v3,02/38] mount: make {lock,unlock}_mount_hash() static idmapped mounts - 1 - --- 2020-11-28 Christian Brauner New
[v3,01/38] namespace: take lock_mount_hash() directly when changing flags idmapped mounts - 1 - --- 2020-11-28 Christian Brauner New
[6/9] security: keys: delete repeated words in comments keys: Miscellaneous fixes - 1 - --- 2020-11-27 David Howells New
tomoyo: Fix null pointer check tomoyo: Fix null pointer check - - - --- 2020-11-26 Zheng Zengkai New
ima: Don't modify file descriptor mode on the fly ima: Don't modify file descriptor mode on the fly - 1 - --- 2020-11-26 Roberto Sassu New
tomoyo: Avoid potential null pointer access tomoyo: Avoid potential null pointer access - - - --- 2020-11-25 Zheng Zengkai New
[bpf-next,v3,3/3] bpf: Add a selftest for bpf_ima_inode_hash Implement bpf_ima_inode_hash 1 - - --- 2020-11-24 KP Singh New
[bpf-next,v3,2/3] bpf: Add a BPF helper for getting the IMA hash of an inode Implement bpf_ima_inode_hash 1 - - --- 2020-11-24 KP Singh New
[bpf-next,v3,1/3] ima: Implement ima_inode_hash Implement bpf_ima_inode_hash 2 - - --- 2020-11-24 KP Singh New
[bpf-next,v2,3/3] bpf: Update LSM selftests for bpf_ima_inode_hash [bpf-next,v2,1/3] ima: Implement ima_inode_hash 1 - - --- 2020-11-21 KP Singh New
[bpf-next,v2,2/3] bpf: Add a BPF helper for getting the IMA hash of an inode [bpf-next,v2,1/3] ima: Implement ima_inode_hash 1 - - --- 2020-11-21 KP Singh New
[bpf-next,v2,1/3] ima: Implement ima_inode_hash [bpf-next,v2,1/3] ima: Implement ima_inode_hash 1 - - --- 2020-11-21 KP Singh New
[v23,23/23] AppArmor: Remove the exclusive flag [v23,01/23] LSM: Infrastructure management of the sock security 2 1 - --- 2020-11-20 Casey Schaufler New
[v23,22/23] LSM: Add /proc attr entry for full LSM context [v23,01/23] LSM: Infrastructure management of the sock security - 1 - --- 2020-11-20 Casey Schaufler New
[v23,21/23] Audit: Add a new record for multiple object LSM attributes [v23,01/23] LSM: Infrastructure management of the sock security - - - --- 2020-11-20 Casey Schaufler New
[v23,20/23] Audit: Add new record for multiple process LSM attributes [v23,01/23] LSM: Infrastructure management of the sock security - - - --- 2020-11-20 Casey Schaufler New
[v23,19/23] audit: add support for non-syscall auxiliary records [v23,01/23] LSM: Infrastructure management of the sock security - - - --- 2020-11-20 Casey Schaufler New
[v23,18/23] LSM: Verify LSM display sanity in binder [v23,01/23] LSM: Infrastructure management of the sock security 2 2 - --- 2020-11-20 Casey Schaufler New
[v23,17/23] NET: Store LSM netlabel data in a lsmblob [v23,01/23] LSM: Infrastructure management of the sock security 2 2 - --- 2020-11-20 Casey Schaufler New
[v23,16/23] LSM: security_secid_to_secctx in netlink netfilter [v23,01/23] LSM: Infrastructure management of the sock security 2 2 - --- 2020-11-20 Casey Schaufler New
[v23,15/23] LSM: Use lsmcontext in security_inode_getsecctx [v23,01/23] LSM: Infrastructure management of the sock security 2 1 - --- 2020-11-20 Casey Schaufler New
[v23,14/23] LSM: Use lsmcontext in security_secid_to_secctx [v23,01/23] LSM: Infrastructure management of the sock security 2 1 - --- 2020-11-20 Casey Schaufler New
[v23,13/23] LSM: Ensure the correct LSM context releaser [v23,01/23] LSM: Infrastructure management of the sock security 1 2 - --- 2020-11-20 Casey Schaufler New
[v23,12/23] LSM: Specify which LSM to display [v23,01/23] LSM: Infrastructure management of the sock security - - - --- 2020-11-20 Casey Schaufler New
[v23,11/23] IMA: Change internal interfaces to use lsmblobs [v23,01/23] LSM: Infrastructure management of the sock security 1 2 - --- 2020-11-20 Casey Schaufler New
[v23,10/23] LSM: Use lsmblob in security_cred_getsecid [v23,01/23] LSM: Infrastructure management of the sock security 2 2 - --- 2020-11-20 Casey Schaufler New
[v23,09/23] LSM: Use lsmblob in security_inode_getsecid [v23,01/23] LSM: Infrastructure management of the sock security 2 2 - --- 2020-11-20 Casey Schaufler New
[v23,08/23] LSM: Use lsmblob in security_task_getsecid [v23,01/23] LSM: Infrastructure management of the sock security 2 2 - --- 2020-11-20 Casey Schaufler New
[v23,07/23] LSM: Use lsmblob in security_ipc_getsecid [v23,01/23] LSM: Infrastructure management of the sock security 2 2 - --- 2020-11-20 Casey Schaufler New
[v23,06/23] LSM: Use lsmblob in security_secid_to_secctx [v23,01/23] LSM: Infrastructure management of the sock security - - - --- 2020-11-20 Casey Schaufler New
[v23,05/23] LSM: Use lsmblob in security_secctx_to_secid [v23,01/23] LSM: Infrastructure management of the sock security - - - --- 2020-11-20 Casey Schaufler New
[v23,04/23] LSM: Use lsmblob in security_kernel_act_as [v23,01/23] LSM: Infrastructure management of the sock security 2 2 - --- 2020-11-20 Casey Schaufler New
[v23,03/23] LSM: Use lsmblob in security_audit_rule_match [v23,01/23] LSM: Infrastructure management of the sock security 2 2 - --- 2020-11-20 Casey Schaufler New
[v23,02/23] LSM: Create and manage the lsmblob data structure. [v23,01/23] LSM: Infrastructure management of the sock security 3 - - --- 2020-11-20 Casey Schaufler New
[v23,01/23] LSM: Infrastructure management of the sock security [v23,01/23] LSM: Infrastructure management of the sock security 2 2 - --- 2020-11-20 Casey Schaufler New
[052/141] security: keys: Fix fall-through warnings for Clang Fix fall-through warnings for Clang - 1 - --- 2020-11-20 Gustavo A. R. Silva New
[010/141] ima: Fix fall-through warnings for Clang Fix fall-through warnings for Clang - - - --- 2020-11-20 Gustavo A. R. Silva New
[v1,9/9] tools/certs: Add print-cert-tbs-hash.sh Enable root to update the blacklist keyring - - - --- 2020-11-20 Mickaël Salaün New
[v1,8/9] certs: Replace K{U,G}IDT_INIT() with GLOBAL_ROOT_{U,G}ID Enable root to update the blacklist keyring - - - --- 2020-11-20 Mickaël Salaün New
[v1,7/9] certs: Allow root user to append signed hashes to the blacklist keyring Enable root to update the blacklist keyring - - - --- 2020-11-20 Mickaël Salaün New
[v1,6/9] certs: Fix blacklist flag type confusion Enable root to update the blacklist keyring - - - --- 2020-11-20 Mickaël Salaün New
[v1,5/9] PKCS#7: Fix missing include Enable root to update the blacklist keyring - - - --- 2020-11-20 Mickaël Salaün New
[v1,4/9] certs: Check that builtin blacklist hashes are valid Enable root to update the blacklist keyring - - - --- 2020-11-20 Mickaël Salaün New
[v1,3/9] certs: Factor out the blacklist hash creation Enable root to update the blacklist keyring - - - --- 2020-11-20 Mickaël Salaün New
[v1,2/9] certs: Make blacklist_vet_description() more strict Enable root to update the blacklist keyring - - - --- 2020-11-20 Mickaël Salaün New
[v1,1/9] certs: Fix blacklisted hexadecimal hash string check Enable root to update the blacklist keyring - - - --- 2020-11-20 Mickaël Salaün New
[bpf-next,3/3] bpf: Update LSM selftests for bpf_ima_inode_hash [bpf-next,1/3] ima: Implement ima_inode_hash 1 - - --- 2020-11-20 KP Singh New
« 1 2 3 413 14 »