Show patches with: Submitter = Mimi Zohar       |    State = Action Required       |   198 patches
« 1 2 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
[1/2] vfs: constify path argument to kernel_read_file_from_path - - - --- 2017-09-13 Mimi Zohar New
[1/3] ima: based on the "secure_boot" policy limit syscalls - - - --- 2018-05-11 Mimi Zohar New
[1/3] ima: based on the "secure_boot" policy limit syscalls - - - --- 2018-04-12 Mimi Zohar New
[1/3] ima: measure other types of data - - - --- 2016-06-22 Mimi Zohar New
[1/4] ima: extend the "ima_policy" boot command line to support multiple policies - - - --- 2017-05-02 Mimi Zohar New
[1/4] ima: use fs method to read integrity data - - - --- 2017-06-09 Mimi Zohar New
[1/6] firmware: permit LSMs and IMA to fail firmware sysfs fallback loading - - - --- 2018-05-01 Mimi Zohar New
[1/7] ima: on soft reboot, restore the measurement list - - - --- 2016-08-04 Mimi Zohar New
[2/2] integrity: replace call to integrity_read_file with kernel version - - - --- 2017-09-13 Mimi Zohar New
[2/3] kexec: call LSM hook for kexec_load syscall - - - --- 2018-05-11 Mimi Zohar New
[2/3] kexec: call LSM hook for kexec_load syscall - - - --- 2018-04-12 Mimi Zohar New
[2/3] kexec: measure boot command line - - - --- 2016-06-22 Mimi Zohar New
[2/4] ima: define a set of appraisal rules requiring file signatures - - - --- 2017-05-02 Mimi Zohar New
[2/4] tmpfs: define integrity_read file operation method - - - --- 2017-06-09 Mimi Zohar New
[2/6] ima: prevent sysfs fallback firmware loading - - - --- 2018-05-01 Mimi Zohar New
[2/7] ima: permit duplicate measurement list entries - - - --- 2016-08-04 Mimi Zohar New
[3/3] ima: add pre-calculated measurements (experimental) - - - --- 2016-06-22 Mimi Zohar New
[3/3] ima: based on policy require signed kexec kernel images - - - --- 2018-05-11 Mimi Zohar New
[3/3] ima: based on policy require signed kexec kernel images - - - --- 2018-04-12 Mimi Zohar New
[3/4] ima: define Kconfig IMA_APPRAISE_BOOTPARAM option - - - --- 2017-05-02 Mimi Zohar New
[3/4] ima: use existing read file operation method to calculate file hash - - - --- 2017-06-09 Mimi Zohar New
[3/6] firmware: differentiate between signed regulatory.db and other firmware - - - --- 2018-05-01 Mimi Zohar New
[3/7] ima: maintain memory size needed for serializing the measurement list - - - --- 2016-08-04 Mimi Zohar New
[4/4] ima: define is_ima_appraise_enabled() - - - --- 2017-05-02 Mimi Zohar New
[4/4] ima: use read_iter (generic_file_read_iter) to calculate file hash - - - --- 2017-06-09 Mimi Zohar New
[4/6] ima: coordinate with signed regulatory.db - - - --- 2018-05-01 Mimi Zohar New
[4/7] ima: serialize the binary_runtime_measurements - - - --- 2016-08-04 Mimi Zohar New
[5/6] ima: verify kernel firmware signatures when using a preallocated buffer - - - --- 2018-05-01 Mimi Zohar New
[5/7] ima: on soft reboot, save the measurement list - - - --- 2016-08-04 Mimi Zohar New
[6/7] ima: store the builtin/custom template definitions in a list - - - --- 2016-08-04 Mimi Zohar New
[7/7] ima: support restoring multiple template formats - - - --- 2016-08-04 Mimi Zohar New
[PATCHC,v7,01/10] powerpc: ima: Get the kexec buffer passed by the previous kernel 1 - - --- 2016-11-10 Mimi Zohar New
[PATCHC,v7,02/10] ima: on soft reboot, restore the measurement list - - - --- 2016-11-10 Mimi Zohar New
[PATCHC,v7,03/10] ima: permit duplicate measurement list entries - - - --- 2016-11-10 Mimi Zohar New
[PATCHC,v7,04/10] ima: maintain memory size needed for serializing the measurement list - - - --- 2016-11-10 Mimi Zohar New
[PATCHC,v7,05/10] powerpc: ima: Send the kexec buffer to the next kernel 1 - - --- 2016-11-10 Mimi Zohar New
[PATCHC,v7,06/10] ima: on soft reboot, save the measurement list 1 - - --- 2016-11-10 Mimi Zohar New
[PATCHC,v7,07/10] ima: store the builtin/custom template definitions in a list - - - --- 2016-11-10 Mimi Zohar New
[PATCHC,v7,08/10] ima: support restoring multiple template formats - - - --- 2016-11-10 Mimi Zohar New
[PATCHC,v7,09/10] ima: define a canonical binary_runtime_measurements list format - - - --- 2016-11-10 Mimi Zohar New
[PATCHC,v7,10/10] ima: platform-independent hash value - - - --- 2016-11-10 Mimi Zohar New
[PATHC,v2,1/9] ima: on soft reboot, restore the measurement list - - - --- 2016-08-30 Mimi Zohar New
[PATHC,v2,2/9] ima: permit duplicate measurement list entries - - - --- 2016-08-30 Mimi Zohar New
[PATHC,v2,3/9] ima: maintain memory size needed for serializing the measurement list - - - --- 2016-08-30 Mimi Zohar New
[PATHC,v2,4/9] ima: serialize the binary_runtime_measurements - - - --- 2016-08-30 Mimi Zohar New
[PATHC,v2,5/9] ima: on soft reboot, save the measurement list - - - --- 2016-08-30 Mimi Zohar New
[PATHC,v2,6/9] ima: store the builtin/custom template definitions in a list - - - --- 2016-08-30 Mimi Zohar New
[PATHC,v2,7/9] ima: support restoring multiple template formats - - - --- 2016-08-30 Mimi Zohar New
[PATHC,v2,8/9] ima: define a canonical binary_runtime_measurements list format - - - --- 2016-08-30 Mimi Zohar New
[PATHC,v2,9/9] ima: platform-independent hash value - - - --- 2016-08-30 Mimi Zohar New
[RFC,1/3] fs: define new read_iter rwf flag - - - --- 2017-09-28 Mimi Zohar New
[RFC,1/4] ima: define a new policy condition based on the filesystem name - - - --- 2018-02-14 Mimi Zohar New
[RFC,1/4] security: define new LSM sb_post_new_mount hook - - - --- 2017-08-16 Mimi Zohar New
[RFC,2/3] integrity: use call_read_iter to calculate the file hash - - - --- 2017-09-28 Mimi Zohar New
[RFC,2/4] ima: define new ima_sb_post_new_mount hook - 1 - --- 2017-08-16 Mimi Zohar New
[RFC,2/4] ima: fail signature verification on unprivileged & untrusted filesystems 1 - - --- 2018-02-14 Mimi Zohar New
[RFC,3/3] fs: detect that the i_rwsem has already been taken exclusively - - - --- 2017-09-28 Mimi Zohar New
[RFC,3/4] ima: define a new policy option named "fail" - - - --- 2018-02-14 Mimi Zohar New
[RFC,3/4] security: define a new LSM sb_post_remount hook - - - --- 2017-08-16 Mimi Zohar New
[RFC,4/4] fuse: define the filesystem as untrusted - - - --- 2018-02-14 Mimi Zohar New
[RFC,4/4] ima: define a new ima_sb_post_remount hook - - - --- 2017-08-16 Mimi Zohar New
[RFC,6/6] ima: prevent loading firmware into a pre-allocated buffer - - - --- 2018-05-01 Mimi Zohar New
[RFC,v1] efivarfs: define integrity_read method - - - --- 2017-07-06 Mimi Zohar New
[RFC,v1] fw_lockdown: new micro LSM module to prevent loading unsigned firmware - - - --- 2017-11-10 Mimi Zohar New
[RFC,v3,7/7] ima: based on policy prevent loading firmware (pre-allocated buffer) - - - --- 2018-05-24 Mimi Zohar New
[RFC,v4,7/8] ima: based on policy prevent loading firmware (pre-allocated buffer) - - - --- 2018-05-29 Mimi Zohar New
[RFC] efivarfs: define integrity_read method - - - --- 2017-07-06 Mimi Zohar New
[RFC] fw_lockdown: new micro LSM module to prevent loading unsigned firmware - - - --- 2017-11-10 Mimi Zohar New
[RFC] ima: force the re-evaluation of files on untrusted file systems - - - --- 2018-02-05 Mimi Zohar New
[RFC] ima: require secure_boot rules in lockdown mode - - - --- 2017-10-23 Mimi Zohar New
[RFC] rootfs: force mounting rootfs as tmpfs - - - --- 2018-01-30 Mimi Zohar New
[RFC] shebang: restrict python interactive prompt/interpreter - - - --- 2017-01-31 Mimi Zohar New
[RFC] tpm: msleep() delays - replace with usleep_range() in i2c nuvoton driver - - - --- 2017-03-07 Mimi Zohar New
[RFC] tpm: msleep() delays - replace with usleep_range() in i2c nuvoton driver - 2 - --- 2017-02-23 Mimi Zohar New
[v1,1/2] ima: fail signature verification on untrusted filesystems - - - --- 2018-02-19 Mimi Zohar New
[v1,2/2] fuse: define the filesystem as untrusted - - - --- 2018-02-19 Mimi Zohar New
[v1] shebang: restrict python interactive prompt/interpreter - - - --- 2017-06-09 Mimi Zohar New
[v2,01/10] ima: always measure and audit files in policy - - - --- 2017-06-21 Mimi Zohar New
[v2,02/10] ima: use fs method to read integrity data - - - --- 2017-06-21 Mimi Zohar New
[v2,03/10] ima: define "dont_failsafe" policy action rule - - - --- 2017-06-21 Mimi Zohar New
[v2,04/10] ima: define "fs_unsafe" builtin policy - - - --- 2017-06-21 Mimi Zohar New
[v2,05/10] tmpfs: define integrity_read method - - - --- 2017-06-21 Mimi Zohar New
[v2,06/10] fs: define integrity_read method for ext2, gfs2, f2fs, jfs, ramfs - - - --- 2017-06-21 Mimi Zohar New
[v2,07/10] ocfs2: define integrity_read method - - - --- 2017-06-21 Mimi Zohar New
[v2,08/10] jffs2: define integrity_read method - - - --- 2017-06-21 Mimi Zohar New
[v2,09/10] ubifs: define integrity_read method - - - --- 2017-06-21 Mimi Zohar New
[v2,1/4] ima: fail file signature verification on non-init mounted filesystems - - - --- 2018-02-22 Mimi Zohar New
[v2,1/9] ima: based on policy verify firmware signatures (pre-allocated buffer) - - - --- 2018-05-17 Mimi Zohar New
[v2,10/10] ima: use existing read file operation method to calculate file hash - - - --- 2017-06-21 Mimi Zohar New
[v2,2/4] ima: re-evaluate files on privileged mounted filesystems - - - --- 2018-02-22 Mimi Zohar New
[v2,2/9] ima: fix updating the ima_appraise flag - - - --- 2018-05-17 Mimi Zohar New
[v2,3/4] ima: fail signature verification based on policy - - - --- 2018-02-22 Mimi Zohar New
[v2,3/9] security: define security_kernel_read_blob() wrapper - - - --- 2018-05-17 Mimi Zohar New
[v2,4/4] fuse: define the filesystem as untrusted - - - --- 2018-02-22 Mimi Zohar New
[v2,4/9] kexec: add call to LSM hook in original kexec_load syscall - - - --- 2018-05-17 Mimi Zohar New
[v2,5/9] ima: based on policy require signed kexec kernel images - - - --- 2018-05-17 Mimi Zohar New
[v2,6/9] firmware: add call to LSM hook before firmware sysfs fallback - - - --- 2018-05-17 Mimi Zohar New
[v2,7/9] ima: based on policy require signed firmware (sysfs fallback) - - - --- 2018-05-17 Mimi Zohar New
[v2,8/9] ima: add build time policy - - - --- 2018-05-17 Mimi Zohar New
[v2,9/9] ima: based on policy prevent loading firmware (pre-allocated buffer) - - - --- 2018-05-17 Mimi Zohar New
« 1 2 »