Show patches with: Archived = No       |   3647 patches
« 1 2 ... 12 13 1436 37 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
[RFC,3/3] lsm: consolidate buffer size handling into lsm_fill_user_ctx() LSM syscall tweaks - - - --- 2023-10-24 Paul Moore pcmoore Accepted
[RFC,2/3] lsm: correct error codes in security_getselfattr() LSM syscall tweaks 1 1 - --- 2023-10-24 Paul Moore pcmoore Accepted
[RFC,1/3] lsm: cleanup the size counters in security_getselfattr() LSM syscall tweaks 1 1 - --- 2023-10-24 Paul Moore pcmoore Accepted
[v4,5/5] docs: trusted-encrypted: add DCP as new trust source DCP as trusted keys backend - - - --- 2023-10-24 David Gstir Handled Elsewhere
[v4,4/5] docs: document DCP-backed trusted keys kernel params DCP as trusted keys backend - - - --- 2023-10-24 David Gstir Handled Elsewhere
[v4,3/5] MAINTAINERS: add entry for DCP-based trusted keys DCP as trusted keys backend - - - --- 2023-10-24 David Gstir Handled Elsewhere
[v4,2/5] KEYS: trusted: Introduce NXP DCP-backed trusted keys DCP as trusted keys backend - - - --- 2023-10-24 David Gstir Handled Elsewhere
[v4,1/5] crypto: mxs-dcp: Add support for hardware-bound keys DCP as trusted keys backend 1 - - --- 2023-10-24 David Gstir Handled Elsewhere
[v3,6/6] KEYS: trusted: tpm2: Use struct tpm_buf for sized buffers Untitled series #795872 - - - --- 2023-10-24 Jarkko Sakkinen Handled Elsewhere
[v3,4/6] tpm: Support TPM2 sized buffers (TPM2B) Untitled series #795872 - - - --- 2023-10-24 Jarkko Sakkinen Handled Elsewhere
[v3,3/6] tpm: Detach tpm_buf_reset() from tpm_buf_init() Untitled series #795872 - 1 - --- 2023-10-24 Jarkko Sakkinen Handled Elsewhere
[v3,2/6] tpm: Store TPM buffer length Untitled series #795872 - 1 - --- 2023-10-24 Jarkko Sakkinen Handled Elsewhere
[-next,2/2] apparmor: Fix some kernel-doc comments [-next,1/2] apparmor: Fix one kernel-doc comment - - - --- 2023-10-23 Yang Li Handled Elsewhere
[-next,1/2] apparmor: Fix one kernel-doc comment [-next,1/2] apparmor: Fix one kernel-doc comment - - - --- 2023-10-23 Yang Li Handled Elsewhere
[-next] apparmor: Fix some kernel-doc comments [-next] apparmor: Fix some kernel-doc comments - - - --- 2023-10-23 Yang Li Handled Elsewhere
apparmor: switch SECURITY_APPARMOR_HASH from sha1 to sha256 apparmor: switch SECURITY_APPARMOR_HASH from sha1 to sha256 1 - - --- 2023-10-22 Dimitri John Ledkov Handled Elsewhere
[v4,4/4] vduse: Add LSM hooks to check Virtio device type vduse: add support for networking devices - - - --- 2023-10-20 Maxime Coquelin pcmoore Changes Requested
[v4,3/4] vduse: Temporarily disable control queue features vduse: add support for networking devices - - - --- 2023-10-20 Maxime Coquelin pcmoore Changes Requested
[v4,2/4] vduse: enable Virtio-net device type vduse: add support for networking devices 1 1 - --- 2023-10-20 Maxime Coquelin pcmoore Changes Requested
[v4,1/4] vduse: validate block features only with block devices vduse: add support for networking devices 1 1 - --- 2023-10-20 Maxime Coquelin pcmoore Changes Requested
apparmor: mark new functions static apparmor: mark new functions static 1 - - --- 2023-10-20 Arnd Bergmann Handled Elsewhere
lsm: drop LSM_ID_IMA lsm: drop LSM_ID_IMA - 1 - --- 2023-10-18 Paul Moore pcmoore Accepted
capabilities: add a option PR_SET_CAPS for sys_prctl capabilities: add a option PR_SET_CAPS for sys_prctl - - - --- 2023-10-18 yunhui cui pcmoore Rejected
landlock: fix typo in landlock_append_net_rule() stub function landlock: fix typo in landlock_append_net_rule() stub function - - - --- 2023-10-17 Arnd Bergmann Handled Elsewhere
[v8,bpf-next,18/18] bpf,selinux: allocate bpf_security_struct per BPF token BPF token and BPF FS-based delegation - - - --- 2023-10-16 Andrii Nakryiko pcmoore Superseded
[v8,bpf-next,17/18] selftests/bpf: add BPF token-enabled tests BPF token and BPF FS-based delegation - - - --- 2023-10-16 Andrii Nakryiko pcmoore Superseded
[v8,bpf-next,16/18] libbpf: add BPF token support to bpf_prog_load() API BPF token and BPF FS-based delegation - - - --- 2023-10-16 Andrii Nakryiko pcmoore Superseded
[v8,bpf-next,15/18] libbpf: add BPF token support to bpf_btf_load() API BPF token and BPF FS-based delegation - - - --- 2023-10-16 Andrii Nakryiko pcmoore Superseded
[v8,bpf-next,14/18] libbpf: add BPF token support to bpf_map_create() API BPF token and BPF FS-based delegation - - - --- 2023-10-16 Andrii Nakryiko pcmoore Superseded
[v8,bpf-next,13/18] selftests/bpf: fix test_maps' use of bpf_map_create_opts BPF token and BPF FS-based delegation - - - --- 2023-10-16 Andrii Nakryiko pcmoore Superseded
[v8,bpf-next,12/18] libbpf: add bpf_token_create() API BPF token and BPF FS-based delegation - - - --- 2023-10-16 Andrii Nakryiko pcmoore Superseded
[v8,bpf-next,11/18] bpf,lsm: add BPF token LSM hooks BPF token and BPF FS-based delegation - - - --- 2023-10-16 Andrii Nakryiko pcmoore Superseded
[v8,bpf-next,10/18] bpf,lsm: refactor bpf_map_alloc/bpf_map_free LSM hooks BPF token and BPF FS-based delegation - - - --- 2023-10-16 Andrii Nakryiko pcmoore Superseded
[v8,bpf-next,09/18] bpf,lsm: refactor bpf_prog_alloc/bpf_prog_free LSM hooks BPF token and BPF FS-based delegation - - - --- 2023-10-16 Andrii Nakryiko pcmoore Superseded
[v8,bpf-next,08/18] bpf: consistenly use BPF token throughout BPF verifier logic BPF token and BPF FS-based delegation - - - --- 2023-10-16 Andrii Nakryiko pcmoore Superseded
[v8,bpf-next,07/18] bpf: take into account BPF token when fetching helper protos BPF token and BPF FS-based delegation - - - --- 2023-10-16 Andrii Nakryiko pcmoore Superseded
[v8,bpf-next,06/18] bpf: add BPF token support to BPF_PROG_LOAD command BPF token and BPF FS-based delegation - - - --- 2023-10-16 Andrii Nakryiko pcmoore Superseded
[v8,bpf-next,05/18] bpf: add BPF token support to BPF_BTF_LOAD command BPF token and BPF FS-based delegation - - - --- 2023-10-16 Andrii Nakryiko pcmoore Superseded
[v8,bpf-next,04/18] bpf: add BPF token support to BPF_MAP_CREATE command BPF token and BPF FS-based delegation - - - --- 2023-10-16 Andrii Nakryiko pcmoore Superseded
[v8,bpf-next,03/18] bpf: introduce BPF token object BPF token and BPF FS-based delegation - - - --- 2023-10-16 Andrii Nakryiko pcmoore Superseded
[v8,bpf-next,02/18] bpf: add BPF token delegation mount options to BPF FS BPF token and BPF FS-based delegation - - - --- 2023-10-16 Andrii Nakryiko pcmoore Superseded
[v8,bpf-next,01/18] bpf: align CAP_NET_ADMIN checks with bpf_capable() approach BPF token and BPF FS-based delegation - - - --- 2023-10-16 Andrii Nakryiko pcmoore Superseded
[v13,12/12] landlock: Document Landlock's network support Network support for Landlock - - - --- 2023-10-16 Konstantin Meskhidze (A) pcmoore Handled Elsewhere
[v13,11/12] samples/landlock: Add network demo Network support for Landlock - - - --- 2023-10-16 Konstantin Meskhidze (A) pcmoore Handled Elsewhere
[v13,10/12] selftests/landlock: Add 7 new test variants dedicated to network Network support for Landlock - - - --- 2023-10-16 Konstantin Meskhidze (A) pcmoore Handled Elsewhere
[v13,09/12] selftests/landlock: Share enforce_ruleset() Network support for Landlock - - - --- 2023-10-16 Konstantin Meskhidze (A) pcmoore Handled Elsewhere
[v13,08/12] landlock: Add network rules and TCP hooks support Network support for Landlock - - - --- 2023-10-16 Konstantin Meskhidze (A) pcmoore Handled Elsewhere
[v13,07/12] landlock: Refactor landlock_add_rule() syscall Network support for Landlock - - - --- 2023-10-16 Konstantin Meskhidze (A) pcmoore Handled Elsewhere
[v13,06/12] landlock: Refactor layer helpers Network support for Landlock - - - --- 2023-10-16 Konstantin Meskhidze (A) pcmoore Handled Elsewhere
[v13,05/12] landlock: Move and rename layer helpers Network support for Landlock - - - --- 2023-10-16 Konstantin Meskhidze (A) pcmoore Handled Elsewhere
[v13,04/12] landlock: Refactor merge/inherit_ruleset functions Network support for Landlock - - - --- 2023-10-16 Konstantin Meskhidze (A) pcmoore Handled Elsewhere
[v13,03/12] landlock: Refactor landlock_find_rule/insert_rule Network support for Landlock - - - --- 2023-10-16 Konstantin Meskhidze (A) pcmoore Handled Elsewhere
[v13,02/12] landlock: Allow FS topology changes for domains without such rule type Network support for Landlock - - - --- 2023-10-16 Konstantin Meskhidze (A) pcmoore Handled Elsewhere
[v13,01/12] landlock: Make ruleset's access masks more generic Network support for Landlock - - - --- 2023-10-16 Konstantin Meskhidze (A) pcmoore Handled Elsewhere
[v7,bpf-next,18/18] bpf,selinux: allocate bpf_security_struct per BPF token BPF token and BPF FS-based delegation - - - --- 2023-10-12 Andrii Nakryiko pcmoore Changes Requested
[v7,bpf-next,17/18] selftests/bpf: add BPF token-enabled tests BPF token and BPF FS-based delegation - - - --- 2023-10-12 Andrii Nakryiko pcmoore Changes Requested
[v7,bpf-next,16/18] libbpf: add BPF token support to bpf_prog_load() API BPF token and BPF FS-based delegation - - - --- 2023-10-12 Andrii Nakryiko pcmoore Changes Requested
[v7,bpf-next,15/18] libbpf: add BPF token support to bpf_btf_load() API BPF token and BPF FS-based delegation - - - --- 2023-10-12 Andrii Nakryiko pcmoore Changes Requested
[v7,bpf-next,14/18] libbpf: add BPF token support to bpf_map_create() API BPF token and BPF FS-based delegation - - - --- 2023-10-12 Andrii Nakryiko pcmoore Changes Requested
[v7,bpf-next,13/18] selftests/bpf: fix test_maps' use of bpf_map_create_opts BPF token and BPF FS-based delegation - - - --- 2023-10-12 Andrii Nakryiko pcmoore Changes Requested
[v7,bpf-next,12/18] libbpf: add bpf_token_create() API BPF token and BPF FS-based delegation - - - --- 2023-10-12 Andrii Nakryiko pcmoore Changes Requested
[v7,bpf-next,11/18] bpf,lsm: add bpf_token_create and bpf_token_free LSM hooks BPF token and BPF FS-based delegation - - - --- 2023-10-12 Andrii Nakryiko pcmoore Changes Requested
[v7,bpf-next,10/18] bpf,lsm: refactor bpf_map_alloc/bpf_map_free LSM hooks BPF token and BPF FS-based delegation - - - --- 2023-10-12 Andrii Nakryiko pcmoore Changes Requested
[v7,bpf-next,09/18] bpf,lsm: refactor bpf_prog_alloc/bpf_prog_free LSM hooks BPF token and BPF FS-based delegation - - - --- 2023-10-12 Andrii Nakryiko pcmoore Changes Requested
[v7,bpf-next,08/18] bpf: consistenly use BPF token throughout BPF verifier logic BPF token and BPF FS-based delegation - - - --- 2023-10-12 Andrii Nakryiko pcmoore Changes Requested
[v7,bpf-next,07/18] bpf: take into account BPF token when fetching helper protos BPF token and BPF FS-based delegation - - - --- 2023-10-12 Andrii Nakryiko pcmoore Changes Requested
[v7,bpf-next,06/18] bpf: add BPF token support to BPF_PROG_LOAD command BPF token and BPF FS-based delegation - - - --- 2023-10-12 Andrii Nakryiko pcmoore Changes Requested
[v7,bpf-next,05/18] bpf: add BPF token support to BPF_BTF_LOAD command BPF token and BPF FS-based delegation - - - --- 2023-10-12 Andrii Nakryiko pcmoore Changes Requested
[v7,bpf-next,04/18] bpf: add BPF token support to BPF_MAP_CREATE command BPF token and BPF FS-based delegation - - - --- 2023-10-12 Andrii Nakryiko pcmoore Changes Requested
[v7,bpf-next,03/18] bpf: introduce BPF token object BPF token and BPF FS-based delegation - - - --- 2023-10-12 Andrii Nakryiko pcmoore Changes Requested
[v7,bpf-next,02/18] bpf: add BPF token delegation mount options to BPF FS BPF token and BPF FS-based delegation - - - --- 2023-10-12 Andrii Nakryiko pcmoore Changes Requested
[v7,bpf-next,01/18] bpf: align CAP_NET_ADMIN checks with bpf_capable() approach BPF token and BPF FS-based delegation - - - --- 2023-10-12 Andrii Nakryiko pcmoore Changes Requested
KEYS: trusted: Rollback init_trusted() consistently KEYS: trusted: Rollback init_trusted() consistently - - - --- 2023-10-10 Jarkko Sakkinen Handled Elsewhere
ima: Add __counted_by for struct modsig and use struct_size() ima: Add __counted_by for struct modsig and use struct_size() - 2 - --- 2023-10-09 Gustavo A. R. Silva Handled Elsewhere
[v3,3/3] fs: store real path instead of fake path in backing file f_path Reduce impact of overlayfs backing files fake path - - - --- 2023-10-09 Amir Goldstein pcmoore Handled Elsewhere
[v3,2/3] fs: create helper file_user_path() for user displayed mapped file path Reduce impact of overlayfs backing files fake path - - - --- 2023-10-09 Amir Goldstein pcmoore Handled Elsewhere
[v3,1/3] fs: get mnt_writers count for an open backing file's real path Reduce impact of overlayfs backing files fake path - - - --- 2023-10-09 Amir Goldstein pcmoore Handled Elsewhere
[v2,3/3] fs: store real path instead of fake path in backing file f_path Reduce impact of overlayfs backing files fake path - - - --- 2023-10-07 Amir Goldstein pcmoore Handled Elsewhere
[v2,2/3] fs: create helper file_user_path() for user displayed mapped file path Reduce impact of overlayfs backing files fake path - - - --- 2023-10-07 Amir Goldstein pcmoore Handled Elsewhere
[v2,1/3] fs: get mnt_writers count for an open backing file's real path Reduce impact of overlayfs backing files fake path - - - --- 2023-10-07 Amir Goldstein pcmoore Handled Elsewhere
[v6,5/5] security: Add CONFIG_SECURITY_HOOK_LIKELY Reduce overhead of LSMs with static calls 1 1 - --- 2023-10-06 KP Singh pcmoore Superseded
[v6,4/5] bpf: Only enable BPF LSM hooks when an LSM program is attached Reduce overhead of LSMs with static calls 2 2 - --- 2023-10-06 KP Singh pcmoore Superseded
[v6,3/5] security: Replace indirect LSM hook calls with static calls Reduce overhead of LSMs with static calls 1 2 - --- 2023-10-06 KP Singh pcmoore Superseded
[v6,2/5] security: Count the LSMs enabled at compile time Reduce overhead of LSMs with static calls 1 1 - --- 2023-10-06 KP Singh pcmoore Superseded
[v6,1/5] kernel: Add helper macros for loop unrolling Reduce overhead of LSMs with static calls 1 2 - --- 2023-10-06 KP Singh pcmoore Superseded
[RFC,v11,19/19] documentation: add ipe documentation Integrity Policy Enforcement LSM (IPE) - - - --- 2023-10-04 Fan Wu pcmoore Changes Requested
[RFC,v11,18/19] ipe: kunit test for parser Integrity Policy Enforcement LSM (IPE) - - - --- 2023-10-04 Fan Wu pcmoore Changes Requested
[RFC,v11,17/19] scripts: add boot policy generation program Integrity Policy Enforcement LSM (IPE) - - - --- 2023-10-04 Fan Wu pcmoore Changes Requested
[RFC,v11,16/19] ipe: enable support for fs-verity as a trust provider Integrity Policy Enforcement LSM (IPE) - - - --- 2023-10-04 Fan Wu pcmoore Changes Requested
[RFC,v11,15/19] fsverity: consume builtin signature via LSM hook Integrity Policy Enforcement LSM (IPE) - - - --- 2023-10-04 Fan Wu pcmoore Changes Requested
[RFC,v11,14/19] ipe: add support for dm-verity as a trust provider Integrity Policy Enforcement LSM (IPE) - - - --- 2023-10-04 Fan Wu pcmoore Changes Requested
[RFC,v11,13/19] dm verity: consume root hash digest and signature data via LSM hook Integrity Policy Enforcement LSM (IPE) - - - --- 2023-10-04 Fan Wu pcmoore Changes Requested
[RFC,v11,12/19] dm: add finalize hook to target_type Integrity Policy Enforcement LSM (IPE) - - - --- 2023-10-04 Fan Wu pcmoore Changes Requested
[RFC,v11,11/19] dm verity: set DM_TARGET_SINGLETON feature flag Integrity Policy Enforcement LSM (IPE) - - - --- 2023-10-04 Fan Wu pcmoore Changes Requested
[RFC,v11,10/19] block|security: add LSM blob to block_device Integrity Policy Enforcement LSM (IPE) - 1 - --- 2023-10-04 Fan Wu pcmoore Changes Requested
[RFC,v11,09/19] ipe: add permissive toggle Integrity Policy Enforcement LSM (IPE) - - - --- 2023-10-04 Fan Wu pcmoore Changes Requested
[RFC,v11,08/19] uapi|audit|ipe: add ipe auditing support Integrity Policy Enforcement LSM (IPE) - - - --- 2023-10-04 Fan Wu pcmoore Changes Requested
[RFC,v11,07/19] ipe: add userspace interface Integrity Policy Enforcement LSM (IPE) - - - --- 2023-10-04 Fan Wu pcmoore Changes Requested
[RFC,v11,06/19] security: add new securityfs delete function Integrity Policy Enforcement LSM (IPE) - - - --- 2023-10-04 Fan Wu pcmoore Changes Requested
[RFC,v11,05/19] ipe: introduce 'boot_verified' as a trust provider Integrity Policy Enforcement LSM (IPE) - - - --- 2023-10-04 Fan Wu pcmoore Changes Requested
« 1 2 ... 12 13 1436 37 »